Cybersecurity

OpenKyber LLC
United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Shift work
Job source

Tech stack

JavaScript (Programming Language) .NET Framework Microsoft Windows Software System Penetration Testing Bash Shell C Sharp (Programming Language) Unix C++ (Programming Language) Cyber Security Computer Programming Computer Forensics Perl (Programming Language)
+25 more
Intrusion Detection and Prevention Intrusion Detection Systems OSI Models Python (Programming Language) Kali Linux Network Security Lua (Scripting Language) Packet Analyzer Nmap Windows PowerShell Security Information and Event Management Tcl (Programming Language) TCP/IP Snort (Software) Scripting QRadar Malware Firewalls (Computer Science) Falcon Platform Information Technology Metasploit SolarWinds (Software) Fortinet Splunk Cisco

Job description

Responsibilities: Lead advanced security event investigation and incident triage, including IOC validation, deep dive intrusion analysis, event correlation, forensic review, and determining when events meet incident thresholds to engage Incident Response Oversee and mentor Level 1 Analysts, ensuring quality, consistency, and timely execution of SOC processes, shift metrics, and event handling across SIEM portals. Collaborate closely with MDR Analysts on incident workflows, supporting detection, response, remediation activities, and cross team communication to drive proper incident resolution Optimize SOC technology by creating and tuning SIEM filters, dashboards, monitors, and collaborating with SIEM Engineers to refine alert logic and improve correlation performance Conduct proactive threat hunting, threat research, and leverage internal/external intelligence sources to enhance event enrichment, detection capability, and overall SOC maturity Troubleshoot and support IDS/IPS, firewalls, and security monitoring tools to resolve issues impacting detection quality, performance, or incident visibility Act with integrity, professionalism, and personal responsibility to uphold OpenKyber’s respectful and courteous work environment

Requirements

Qualifications: Minimum three years of recent technical experience in Information Security, System Administration, or Network Engineering, including experience in Information Security and MDR/SOC/Incident Response experience. Bachelor’s degree from an accredited college/university in Computer Science, Engineering, Information Technology, Cybersecurity, or a related field is required Strong knowledge of network security fundamentals, intrusion detection, incident detection/response, malware analysis, cyber forensics, SIEM concepts, and security best practices Proven hands on experience with scripting (PowerShell, Bash, Perl, Tcl, Lua), programming (C/C++, C#, Python, JavaScript, .NET), packet analysis tools, and common security platforms (Google SecOps, MS Sentinel, CrowdStrike, Splunk, Qradar, LogRhythm, SolarWinds) Demonstrated communication, analytical, client facing and problem solving skills, with the ability to operate effectively in fast paced environments, off hours (nights/weekends/holidays), and shifting priorities Experience with IDS/IPS, firewalls (Snort, Cisco, Fortigate, Sourcefire), Windows and Unix based systems, LAN/WAN technologies, TCP/IP, OSI model, penetration testing tools (Metasploit, Nmap, Kali), and incident response workflows Ability to travel as required

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:03 min

Microsoft integrating native Unix coreutils into Windows environments

Chris Heilmann +2 · LIVE

1:52 min

Refining the agent by automating physical hardware restarts

Marc Plogas Marc Plogas · WWC Europe 2026

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

2:04 min

Defining timestamps and the international standard format

Denny Biasiolli Denny Biasiolli · Europe 2026 Virtual

Videos

See all

Related articles

See all