Senior Security Operations Engineer
Join a financial infrastructure company’s security team to detect, investigate, contain, and remediate threats across endpoints, cloud infrastructure, and network telemetry.
Обязанности
- Triage, investigate, and respond to security alerts
- Contain and remediate confirmed incidents using established runbooks
- Tune SIEM and EDR detections and address coverage gaps
- Automate repetitive security workflows and apply AI to improve investigations and response
- Use threat intelligence in investigations, threat hunting, and monitoring
- Participate in on-call operations and document incidents and post-incident reviews
- Improve security operations processes, tooling, standards, and team readiness
Требования
- At least 5 years of experience in security operations, detection and response, or security engineering
- Advanced hands-on experience with SIEM and EDR platforms
- Experience investigating and responding to incidents across endpoints, cloud environments, and network telemetry
- Experience building and tuning detections, reducing false positives, and improving signal quality
- Knowledge of threat intelligence, including IOCs, TTPs, and adversary tradecraft
- Ability to manage incidents from triage through containment, eradication, and recovery
- Strong analytical judgment and calm decision-making during high-severity incidents
- Willingness to participate in an on-call rotation
Будет плюсом
- Experience applying AI to security investigations and response
- Experience mentoring teammates and improving security operations standards