Cyber Threat Engineer
Core
Bridge security engineering and incident response operations to safeguard payments infrastructure.
Role type
Cyber Threat Engineer (Incident Response & Security Operations)
Builds
Security tooling, detection rules, SOAR playbooks, and incident response capabilities.
Domain
Cybersecurity / Payments Infrastructure
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure
Required skills
Security Engineering, Incident Response, Threat Hunting, SIEM, SOAR, Python, Go, Infrastructure as Code (IaC), Cloud Security (GCP, AWS), Root Cause Analysis, Automation
Preferred skills
Google SecOps experience
Technologies
SIEM, SOAR, Python, Go, GCP, AWS
Responsibilities
Triage alerts and coordinate end-to-end security incident management; Conduct proactive threat hunting across network, endpoint, and cloud environments; Maintain and optimize critical security tooling (SIEM, EDR, SOAR); Maintain and update Infrastructure as Code (IaC) pipelines; Build high-fidelity detection rules and design SOAR playbooks; Identify visibility gaps and engineer solutions to advance security operations; Mentor team members in automation practices and produce metrics and reporting dashboards.
Seniority
Mid-Senior, hands-on IC
