Náplň práce
Turn raw logs into an automated defense powerhouse. We are looking for an engineer who lives for detection, analysis, and automated response. This position requires candidates to have full work eligibility and immediate access to the local labor market. Join us to build the systems that catch threats before they manifest.
? Your Key Responsibilities:
SIEM/SOAR Mastery: Develop detection use cases and implement SOAR playbooks for automated response.
Proactive Monitoring: Analyze security events across infrastructure and cloud environments.
Incident Response: Investigate incidents, coordinate remediation, and handle escalations.
Data Engineering: Integrate logging agents and optimize data normalization (Syslog, WinEvent).
Vulnerability Hunting: Manage scanning tools (Nessus, Qualys) and track remediation.
Požadavky
?️ What We Expect:
3–5 years of experience in SOC, monitoring, or incident response.
Technical Skills: Proficiency in Microsoft Sentinel, Splunk, or Elastic.
Coding: Ability to work with KQL, Python, and Regex.
Frameworks: Strong knowledge of MITRE ATT&CK and IR processes.
Eligibility: Candidates must be legally authorized to work in the region at the time of application.
Languages: Fluent English (essential for global team coordination).
Odpovědět na inzerát