Назад
Company hidden
2 дня назад

Senior Security Operations Engineer (Cybersecurity)

136 000 - 155 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Security Operations Engineer (Cybersecurity): Maturing a Google SecOps and SentinelOne SOC across federal and commercial environments with an accent on log ingestion, detection engineering, SOAR automation, and incident response. Focus on building MITRE ATT&CK detections, expanding AWS and Azure coverage, optimizing MTTA/MTTR, and operationalizing vulnerability management for FedRAMP High readiness.

Location: Remote, United States. US Person status is required under ITAR/EAR regulations; the ability to obtain and maintain a security clearance is preferred.

Salary: $136,000–$155,000 base annually, plus equity and performance bonus eligibility, depending on experience and location.

Company

hirify.global is a cybersecurity company providing zero trust secure remote access and real-time data streaming for operational technology and industrial control systems.

What you will do

  • Own the Google SecOps log ingestion pipeline, close federal and commercial coverage gaps, and build operational dashboards.
  • Develop and maintain SOAR playbooks, integrations, RBAC, and bidirectional response actions for major incident types.
  • Build production detections mapped to MITRE ATT&CK, create AWS security-service parsers, and manage the detection lifecycle.
  • Operationalize SentinelOne across commercial and federal environments, including Cloud Funnel, correlation rules, RBAC, and endpoint health.
  • Lead incident response escalations, tabletop exercises, runbook improvements, and Jira Service Management workflows.
  • Manage vulnerability scanning and remediation SLAs, oversee the MSSP relationship, and provide technical direction to SOC analysts.

Requirements

  • 6+ years of experience in security operations, detection engineering, or SIEM/SOAR engineering.
  • Hands-on experience with Google SecOps or an enterprise SIEM, plus SentinelOne, CrowdStrike, or a comparable EDR platform.
  • Deep knowledge of AWS security services, including GuardDuty, Security Hub, Inspector, CloudTrail, WAF, and Config.
  • Experience developing SOAR playbooks and MITRE ATT&CK-mapped detection rules.
  • Strong incident response, executive reporting, written communication, and peer or junior analyst leadership skills.
  • Understanding of NIST 800-53 Audit, System Integrity, and Incident Response controls.

Nice to have

  • FedRAMP High or AWS GovCloud experience, Azure security expertise, or OT/ICS monitoring experience.
  • MSSP relationship management and vulnerability management experience.
  • Startup or high-growth environment experience building SOC capabilities.
  • GIAC, Google Chronicle, AWS Security Specialty, CISSP, CISM, or detection engineering certifications.

Culture & Benefits

  • Remote-first culture with flexible hours.
  • Full medical, vision, and dental insurance.
  • Generous paid time off.
  • Equity and performance bonus eligibility.
  • Opportunity to protect critical infrastructure using patented security technology.
  • Collaborative environment with military, federal, and private-sector expertise.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →