Sr. Cybersecurity Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+25 more
Job description
Experience securing AWS/Azure environments Familiarity with: o CI/CD security (GitHub, GitLab, Jenkins) o IaC security (Terraform, CloudFormation) o Policy-as-code (OPA, Checkov) Threat Detection & Incident Response Lead end-to-end investigation of complex security incidents (malware, phishing, lateral movement, cloud compromise) Perform advanced threat hunting using SIEM, EDR, and cloud telemetry Conduct deep forensic analysis (endpoint, network, logs, email headers) Detection Engineering & SOC Optimization Design and implement high-fidelity detection rules and use cases Develop and enhance SOC playbooks aligned with MITRE ATT&CK Security Tooling & Platforms Lead implementation and optimization of: o SIEM: Microsoft Sentinel / Splunk / QRadar o EDR/XDR: Defender, CrowdStrike, SentinelOne o Email Security: Proofpoint, Mimecast, Defender for Office o WAF & Network Security tools Manage integrations across multi-vendor security stack Automation & SOAR Develop automation playbooks (SOAR) for triage, enrichment, and response Cloud Security & DevSecOps Monitor and secure cloud environments (AWS/Azure) Implement logging and detection using: o CloudTrail, VPC Flow Logs, Defender, Sentinel Drive DevSecOps practices (SAST, DAST, IaC scanning, policy-as-code) Risk, Compliance & Governance Perform vulnerability assessments and risk analysis Ensure alignment with frameworks: o NIST, CIS Benchmarks, GDPR, PCI-DSS
Requirements
8 12+ years in cybersecurity / SOC / threat detection roles Experience in L2/L3 SOC or Security Operations leadership. Technical Skills: Strong hands-on expertise in: o SIEM: Sentinel / Splunk / QRadar o EDR/XDR tools o Threat hunting & incident response Deep understanding of: o MITRE ATT&CK o Threat vectors, malware behavior, attack techniques Experience with: o Log analysis, detection engineering, and correlation rules o Security automation (SOAR), o Email security platforms (Proofpoint, Mimecast) o WAF/CDN (Akamai, Cloudflare) o Threat intelligence platforms Certifications (Preferred) CISM / CISSP CEH / CHFI Vendor certifications (Microsoft Sentinel, QRadar, Splunk)
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 134 - Where pixels sing?
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Walking Into The Era of Supply Chain Risks
Understanding and Mitigating Common Web Vulnerabilities