Tech Stack
CloudCyber SecurityGoogle Cloud PlatformPythonSplunk
About the role
- Detect, investigate and prevent security issues across enterprise systems and employees.
- Perform digital forensics, incident response and threat hunting for malware and phishing incidents.
- Design, develop, test, and evaluate new corporate security controls.
- Perform incident response and hunt through log sources to identify new threats.
- Design and implement security alerts and workflows to support the incident response lifecycle.
- Secure corporate IT infrastructure and remediate issues across identity providers, endpoints, corporate networks and other platforms.
- Deploy, configure and operate security tooling with a focus on impact.
- Work on tool development and deployment to protect corporate IT platforms from endpoints to identity providers.
Requirements
- A passion for solving the complex challenges of high-growth startups.
- Self motivation and drive to learn new skills, or dive deeper into existing skills.
- Bachelor's degree in Computer Science, Cybersecurity or similar.
- 7+ years working in a security engineering or incident response role within a tech company.
- Strong experience with Crowdstrike, Splunk or other common security monitoring tools.
- In depth understanding of common attacker tools and techniques, how they can be detected and prevented, and ability to respond to incidents with high depth and quality of investigation.
- Experience with GCP, Alibaba Cloud or other cloud platforms (preferred).
- Experience with Okta, Google Workspace and cloud-based VPN services (preferred).
- Experience securing endpoints, including with MDM tooling such as Kandji, Intune.
- Strong communication skills with the ability to explain technical security and software concepts to a non-technical audience.
- Scripting experience such as with Python, Bash, Powershell.