Advanced Security Engineer
Core
Investigate and analyze emerging cyber threats against network and infrastructure assets, identities, and clients; provide remediation guidance and drive incident investigations to completion.
Role type
Senior IC security engineer (incident response & detection)
Builds
Incident response capabilities, detection engineering, and security posture maturation for a global SaaS platform
Domain
Cybersecurity, incident response, digital forensics, cloud security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Network forensics, memory forensics, packet analysis, TCP/IP, cryptography, web application attack mitigation, alert triage, log correlation, threat intelligence analysis, incident escalation, scripting for security use cases, cloud environment management, malicious code analysis, infection mechanism understanding, exploitation technique mitigation
Preferred skills
GCFA, GCIA, GCIH, GNFA, GREM, OSCP, CEH certifications, SaaS environment experience, legal/e-discovery domain knowledge, Azure/GCP/AWS cloud experience
Technologies
SIEM, firewalls, intrusion detection systems, security audit tools, vulnerability management platforms, cloud platforms (Azure, GCP, AWS)
Responsibilities
Review, validate, and triage security alerts and log data; assess impact of security events using host, cloud, and network indicators; act as initial escalation point for cyber events; perform near real-time analysis of correlated logs to classify security incidents; proactively search telemetry to detect advanced threats; assist in developing incident handling policies; conduct continuous research on emerging threats; tune alerting mechanisms; support junior team members in detection engineering; maintain and update security infrastructure tooling
Seniority
Senior, hands-on IC