обновлено 2 дня назад
Security Operations Engineer (AI)
91 200 - 118 600$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Operations Engineer (AI/SecOps): Strengthening security monitoring, incident response, detection engineering, and SecOps automation across endpoint, identity, network, cloud, SaaS, and application environments with an accent on threat investigation, detection logic, and responsible AI-assisted workflows. Focus on leading end-to-end incident response, building SIEM and EDR detections, developing Python and PowerShell automations, and improving coverage through MITRE ATT&CK-aligned threat hunting.
Location: Remote USA. The role participates in a rotating 24/7/365 coverage schedule, including nights, weekends, holidays, and extended hours as required.
Base salary: $91,200–$118,600 per year. The role may also be eligible for bonuses, commissions, and equity grants.
Company
provides software and technology solutions for business tax compliance.
What you will do
- Monitor, triage, investigate, and respond to security alerts across endpoint, identity, network, cloud, SaaS, and application environments.
- Lead incident response from detection through containment, eradication, recovery, root-cause analysis, and corrective action tracking.
- Build and tune SIEM, EDR, cloud, and network detection logic and conduct MITRE ATT&CK-aligned threat hunting.
- Develop SecOps tooling, scripts, API integrations, and workflow automations to accelerate investigations and response.
- Apply AI responsibly in security workflows by validating, testing, explaining, and maintaining AI-assisted outputs.
- Collaborate across functions to close telemetry gaps, improve detection coverage, and turn incident findings into lasting security improvements.
Requirements
- Hands-on experience in security operations, incident response, detection engineering, or threat hunting, including significant investigations.
- Strong knowledge of attacker tactics across endpoint, identity, network, cloud, and email environments, including MITRE ATT&CK mapping and IOC analysis.
- Experience with SIEM platforms such as Sentinel, Splunk, Chronicle, QRadar, or Elastic, and detection languages including KQL, SPL, Sigma, or YARA.
- Experience with EDR/XDR platforms such as Defender for Endpoint, CrowdStrike, SentinelOne, Cortex XDR, or Carbon Black.
- Scripting or automation experience with Python, PowerShell, or Bash, plus practical use of AI tools for security and development workflows.
- Experience with at least one cloud platform and knowledge of cloud logging, identity security, MFA, conditional access, privileged access, token abuse, and identity-based attacks.
Nice to have
- Bachelor’s degree in cybersecurity, information assurance, computer science, or a related field, or equivalent experience.
- Experience with threat intelligence, malware triage, digital forensics, reverse engineering, vulnerability management, or compliance-driven SecOps.
- Familiarity with detection-as-code, Git workflows, CI/CD pipelines, and code review practices.
- Relevant GIAC, OffSec, AWS, Google Cloud, Microsoft, or CompTIA certifications.
Culture & Benefits
- Collaborative, customer-focused environment built around teamwork, integrity, transparency, and continuous improvement.
- Emphasis on innovation and responsible use of AI to improve security and operational efficiency.
- Remote work arrangement for candidates in the United States.
- Compensation includes a competitive base salary range with potential bonus, commission, and equity eligibility.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
Notion
6 дней назад
Detection Engineer
75 000 - 142 000€
3 дня назад
Director of Security Operations and Engineering
7 дней назад
Security Analyst (AI/Cybersecurity)
4 дня назад
Security Analyst II: Gaurdian (Cybersecurity)
6 дней назад
Lead Engineer, Incident Response (AI)
295 000 - 347 000$
Anthropic
2 дня назад