See all roles

Specialist, Cloud Security Detection & Response

Work from home Full-time role Hiring

We are looking for an intermediate level security specialist to join our Global Cybersecurity Services Team. As part of our modern cybersecurity operating model, the role will be engaged in enhancing our security technology stack, building AI driven security automation workflows and contributing to security operations.

We are building a modern, multi-cloud, intelligence driven security operations capability that will heavily involve AI and automation; and will require engineering and operational skills at all levels.

Responsibilities

  • Threat Monitoring Investigations - deep dive into Tier 1 & Tier 2 security operations escalations, performing incident triage and root cause analysis. Proficient in performing investigations using open source and proprietary tools, including but not limited to - EPP/EDR/XDR software, Digital Forensics tools/software, SIEM platforms, etc.
  • Security Engineering - Build, maintain and enhance our security operations technology stack, which includes next generation SIEM and SOAR solutions. Familiar with security logging and detection engineering practices, manage the detection use case life cycle. Relentlessly automate and creatively incorporate AI into workflows.
  • Incident Response - Proficient in end-to-end Incident Response. Able to take the lead and provide guidance during investigations and incidents to pivot the investigation, drive containment, mitigation and other security outcomes.
  • Cloud & Container Security - Develop, deploy and maintain advanced cloud security controls to enable the prevention, detection and response to security threats in cloud environments. Configure and deploy cloud-native security controls (eg. AWS GuardDuty, Google SCC, Azure Security Centre, CNAPP solutions etc.)
  • Security Projects - Lead projects and initiatives that may involve - Cloud Security Posture Management (CSPM), Container Security, Native Cloud Security Enhancements (AWS, Azure, GCP), Runtime Vulnerability Management, Endpoint Security enhancements, Threat Hunting, Compromise Assessments, Network/Endpoint/Cloud security reviews, etc.
  • Leadership - Be comfortable with cross-functional leadership and stakeholder management. Be willing to lead and nurture a small team of junior security specialists.
  • Requirements

  • 5-7 years of experience in Information Security, with technical hands-on experience in Security Operations, Security Engineering, Digital Forensics, Incident Response, Endpoint Security or Cloud Security.
  • Working Experience with SIEM, EPP/EDR/XDR, SOAR, Cloud Security (CSPM, Container Security, etc), Digital Forensics software & tools.
  • Working experience with Cloud environments like AWS, Azure and GCP.
  • Experience in Amazon EKS and Azure AKS for deploying, managing, and securing container orchestration platforms.
  • Experience in applying AI/ML in cybersecurity use cases.
  • Experience in using scripting languages to automate tasks and manipulate data or programming experience.
  • Highly self-motivated, attention to detail and outcome driven.
  • Proficiency in verbal and written English.
  • On-call is required.
  • apply to this job

    You might like

    Specialist, Cloud Security & Vulnerability Management

    Work from home Full-time role

    Specialist, Cloud Security & Vulnerability Management

    Work from home Full-time role

    Senior Program Manager, Global Workplace

    Work from home Full-time role

    Graphic Designer

    Work from home Full-time role

    Manager - International Tax

    Work from home Full-time role

    Manager, End User Engineering

    Work from home Full-time role

    Account Executive, Majors - Michigan

    Work from home Full-time role

    Facility Manager

    Work from home Full-time role

    Account Executive

    Work from home Full-time role

    Territory Account Manager - Minnesota

    Work from home Full-time role

    Experienced Full-Time Part-Time Statistics Analyst I - Remote Data Entry Opportunity with blithequark

    Work from home Full-time role

    Trade Compliance Country of Origin Analyst (Maplewood, MN)

    Work from home Full-time role

    Experienced Data Entry Clerk – Accurate Database Management and Operations Support

    Work from home Full-time role

    Experienced IT Applications Intern – Remote Work Opportunity in Business Applications Support and Development

    Work from home Full-time role

    Experienced Data Entry Specialist – Part-Time Remote Opportunity with blithequark

    Work from home Full-time role

    Experienced Remote Customer Service Representative – Delivering Exceptional Support and Service Excellence in a Dynamic and Fast-Paced Environment at arenaflex

    Work from home Full-time role

    Join Today: Require Tutoring Specialist in Lancaster, CA

    Work from home Full-time role

    Experienced Customer Support Specialist (Remote) - Deliver Exceptional Online Shopping Experiences at arenaflex

    Work from home Full-time role

    Manager Policy Management and Provider Strategy

    Work from home Full-time role

    Experienced Entry-Level Data Entry Specialist – Remote Opportunity for Career Growth and Flexibility

    Work from home Full-time role