Назад
Company hidden
10 часов назад

Associate Principal, Cyber Defense (Cybersecurity)

112 700 - 186 900$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Associate Principal, Cyber Defense (SIEM/SOAR): Analyzing and responding to escalated cybersecurity incidents across logs, network traffic, endpoints, and security tools with an accent on threat detection, containment, eradication, and recovery. Focus on developing incident response and SOAR playbooks, improving SOC processes, integrating security monitoring systems through APIs, and supporting 24x7 on-call response.

Location: Chicago, United States; hybrid work with up to 2 days per week of remote work

Salary: $112,700–$186,900 per year; annual discretionary incentive target of 8%–15%

Company

hirify.global is a systemically important financial market utility providing clearing and settlement services for options, futures, and securities lending transactions.

What you will do

  • Monitor security alerts and perform advanced analysis of logs, network traffic, endpoint data, and other security events.
  • Investigate Tier 1 escalations, determine incident scope and impact, and implement containment, eradication, and recovery measures.
  • Document incident findings, response actions, lessons learned, and remediation activities.
  • Collaborate with threat intelligence, security, IT, vendors, consultants, and stakeholders to improve detection and response.
  • Guide Tier 1 analysts on complex security issues and contribute to SOC processes, procedures, and post-incident reviews.
  • Participate in shift work and provide 24x7 on-call incident response support.

Requirements

  • At least four years of information security experience, preferably in financial services.
  • Hands-on security operations experience across at least three areas, including threat analysis, incident response, application security, operating systems security, cloud engineering, networking, programming, or AI prompt engineering.
  • Proficiency with SIEM platforms such as Splunk, IBM QRadar, or LogRhythm; SOAR playbook development experience is beneficial.
  • Experience with endpoint detection and response, IDS/IPS, firewalls, proxy servers, vulnerability assessment, directory services, operating system hardening, web application firewalls, and cloud security tools.
  • Strong analytical, communication, consultation, teamwork, leadership, and project management skills.
  • This position is not eligible for visa sponsorship.

Nice to have

  • Knowledge of controls based on the NIST Cybersecurity Framework.
  • Certifications such as CISSP, GCIA, GCIH, CHFI, GCFA, or CASP+.
  • Experience with SOAR playbook development and previous project management experience.

Culture & Benefits

  • Collaborative and supportive work environment focused on work-life balance and employee wellness.
  • Tuition reimbursement and student loan repayment assistance.
  • Technology stipend for remote work.
  • Generous paid time off and parental leave.
  • 401(k) employer match and medical, dental, and vision benefits.

Hiring process

  • Submit an application and resume through the hirify.global careers site.
  • Receive email confirmation after the application is submitted.
  • If selected for an interview, an hirify.global representative will arrange the date, time, and location.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →