> Markdown version of [/jobs/ext/165092-cybersecurity](https://www.wearedevelopers.com/jobs/ext/165092-cybersecurity). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity - **Company:** OpenKyber LLC - **Location:** United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** JavaScript (Programming Language), .NET Framework, Microsoft Windows, Software System Penetration Testing, Bash Shell, C Sharp (Programming Language), Unix, C++ (Programming Language), Cyber Security, Computer Programming, Computer Forensics, Perl (Programming Language), Intrusion Detection and Prevention, Intrusion Detection Systems, OSI Models, Python (Programming Language), Kali Linux, Network Security, Lua (Scripting Language), Packet Analyzer, Nmap, Windows PowerShell, Security Information and Event Management, Tcl (Programming Language), TCP/IP, Snort (Software), Scripting, QRadar, Malware, Firewalls (Computer Science), Falcon Platform, Information Technology, Metasploit, SolarWinds (Software), Fortinet, Splunk, Cisco - **Published:** May 19, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=4f36117cf55aae6f ## About the Role Qualifications: Minimum three years of recent technical experience in Information Security, System Administration, or Network Engineering, including experience in Information Security and MDR/SOC/Incident Response experience. Bachelor's degree from an accredited college/university in Computer Science, Engineering, Information Technology, Cybersecurity, or a related field is required Strong knowledge of network security fundamentals, intrusion detection, incident detection/response, malware analysis, cyber forensics, SIEM concepts, and security best practices Proven hands on experience with scripting (PowerShell, Bash, Perl, Tcl, Lua), programming (C/C++, C#, Python, JavaScript, .NET), packet analysis tools, and common security platforms (Google SecOps, MS Sentinel, CrowdStrike, Splunk, Qradar, LogRhythm, SolarWinds) Demonstrated communication, analytical, client facing and problem solving skills, with the ability to operate effectively in fast paced environments, off hours (nights/weekends/holidays), and shifting priorities Experience with IDS/IPS, firewalls (Snort, Cisco, Fortigate, Sourcefire), Windows and Unix based systems, LAN/WAN technologies, TCP/IP, OSI model, penetration testing tools (Metasploit, Nmap, Kali), and incident response workflows Ability to travel as required ## Description Responsibilities: Lead advanced security event investigation and incident triage, including IOC validation, deep dive intrusion analysis, event correlation, forensic review, and determining when events meet incident thresholds to engage Incident Response Oversee and mentor Level 1 Analysts, ensuring quality, consistency, and timely execution of SOC processes, shift metrics, and event handling across SIEM portals. Collaborate closely with MDR Analysts on incident workflows, supporting detection, response, remediation activities, and cross team communication to drive proper incident resolution Optimize SOC technology by creating and tuning SIEM filters, dashboards, monitors, and collaborating with SIEM Engineers to refine alert logic and improve correlation performance Conduct proactive threat hunting, threat research, and leverage internal/external intelligence sources to enhance event enrichment, detection capability, and overall SOC maturity Troubleshoot and support IDS/IPS, firewalls, and security monitoring tools to resolve issues impacting detection quality, performance, or incident visibility Act with integrity, professionalism, and personal responsibility to uphold OpenKyber's respectful and courteous work environment ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [WeAreDevelopers LIVE - Node and Package Security](https://www.wearedevelopers.com/videos/2138-wearedevelopers-live-node-and-package-security) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Computer Vision from the Edge to the Cloud done easy](https://www.wearedevelopers.com/videos/263-computer-vision-from-the-edge-to-the-cloud-done-easy) - [The Time Paradox: Building Timezone-Safe Python/Django Applications](https://www.wearedevelopers.com/videos/1915-the-time-paradox-building-timezone-safe-python-django-applications) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)