Назад
Company hidden
9 дней назад

Senior Incident Response Analyst (AI)

132 480 - 336 960$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
UK/US/Australia
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Incident Response Analyst (AI): Leading monitoring, investigation, containment, eradication, and recovery from sophisticated security incidents across TikTok's US operations with an accent on cloud forensics, multi-cloud infrastructure, and AI-driven threats. Focus on reconstructing adversary activity, performing root-cause analysis, coordinating cross-functional response, and strengthening critical infrastructure resilience.

Location: Washington, D.C.; fully in-person schedule up to 5 days a week

Salary: $132,480–$336,960 annually, plus potential discretionary bonuses, incentives, and restricted stock units.

Company

hirify.global operates a data privacy and cybersecurity program focused on protecting U.S. user data, infrastructure, applications, algorithms, and the content ecosystem.

What you will do

  • Monitor TikTok US infrastructure and networks for anomalies, breaches, and unauthorized access.
  • Lead technical identification, investigation, containment, eradication, remediation, and recovery during high-severity security incidents.
  • Develop and tune alerts to detect anomalous and malicious activity.
  • Use AI-driven and agentic tools to accelerate investigations and root-cause analysis.
  • Coordinate response efforts with threat hunting, cyber threat intelligence, digital forensics, legal, and infrastructure teams.
  • Maintain response plans, playbooks, and procedures and drive post-incident lessons learned.

Requirements

  • 5+ years of experience triaging, managing, investigating, and remediating high-severity security incidents.
  • Experience leading complex global investigations across multiple teams, regions, and disparate data sources.
  • Advanced hands-on Linux/Unix command-line experience for system interrogation, log analysis, and artifact collection.
  • Hands-on cloud forensics and incident response across multi-cloud environments, including Docker, Kubernetes, and container-runtime forensics.
  • Experience with network analysis using PCAP captures and Zeek logs, as well as investigations involving APTs and threat-actor TTPs.
  • Ability to operate autonomously during active breaches, lead incident response, communicate technical findings to executive and non-technical audiences, and analyze large-scale datasets.

Nice to have

  • Knowledge of NIST SP 800-61, ISO/IEC 27035, and MITRE ATT&CK.
  • Experience querying, parsing, and analyzing data across large data warehouses and distributed data architectures.
  • Strong cross-functional expertise across IT operations, networking, cloud, and security.

Culture & Benefits

  • Day-one access to medical, dental, and vision insurance.
  • 401(k) savings plan with company match, paid parental leave, disability coverage, and life insurance.
  • 10 paid holidays, 10 paid sick days, and 17 days of paid personal time.
  • Work in a global follow-the-sun SOC model with counterparts in London and Sydney.
  • Inclusive workplace with reasonable accommodations available during recruitment.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →