21 час назад
Cybersecurity Engineer
80 000 - 100 000$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Cybersecurity Engineer (SIEM/SOAR): Building and tuning detections, onboarding telemetry, analyzing vulnerabilities, and producing defensible security findings for live client environments with an accent on detection engineering, evidence analysis, and scalable automation. Focus on writing detection logic, prioritizing remediation by exploitability and asset criticality, and turning complex security data into actionable client recommendations.
Location: Remote, United States
Salary: $80,000–$100,000 USD per year
Company
is an IT consulting firm that delivers technology solutions and cybersecurity services to business clients.
What you will do
- Onboard, parse, and validate log sources and telemetry in SIEM platforms.
- Analyze firewall configurations, device state, and log data across client environments.
- Write and tune detection logic, reduce false positives, and close coverage gaps.
- Analyze vulnerability scanner output, prioritize remediation, and track findings to closure.
- Assemble traceable evidence and draft findings, report sections, and status updates.
- Build scripts, playbooks, and tooling for engagement automation while conducting CVE and platform research.
Requirements
- Must be located in the United States for the remote role.
- 3–5 years of hands-on experience in cybersecurity, including SOC, detection engineering, security engineering, or MSSP delivery.
- Practical SIEM and SOAR experience, including building and tuning detections.
- Ability to write detection logic using KQL, SPL, EQL, Lucene, Sigma, or equivalent.
- Blue-team experience with alert triage, investigations, and applied MITRE ATT&CK knowledge.
- Network, enterprise IT, technical writing, and scripting skills using Python, Bash, PowerShell, or equivalent.
Nice to have
- SC-200, AZ-500, CySA+, GIAC, or other relevant certifications.
- Microsoft security stack experience, including Defender, Entra, or Azure security.
- Fortinet or equivalent enterprise firewall experience.
- Tenable, Rapid7, Qualys, threat hunting, SOAR, or automation development experience.
- Home labs, GitHub repositories, published detection content, open-source contributions, CTFs, or technical writeups.
Culture & Benefits
- Work across detection, assessment analysis, and vulnerability engagements for multiple clients.
- Receive review and guidance from the Director of Cybersecurity before leading engagement components.
- Operate according to customer-centric, innovation-focused, integrity-driven, and data-informed values.
- The posting is for a full-time, permanent position.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
3 дня назад
Oracle Cybersecurity Engineer
100 000 - 150 000$
5 часов назад
Cybersecurity Engineer (SIEM)
4 дня назад
Cloud Security Engineer (Oracle)
100 000 - 150 000$
18 часов назад
Security Engineer (Cloud Security)
155 000 - 190 000$
5 дней назад
Cybersecurity Engineer - US Federal
130 200 - 195 400$
5 дней назад
Staff Security Engineer (Cloud Detection & Response)
189 000 - 303 000$