Staff Security Engineer - Security Operations
Core
Strategic anchor for security operations, defining detection, response, and resilience at scale while ensuring EU regulatory compliance.
Role type
Staff Security Engineer (Security Operations)
Builds
Enterprise-grade SIEM/SOAR toolchain, threat detection libraries, incident response playbooks, and automation pipelines.
Domain
Cloud-native security (AWS/GCP), EU regulatory compliance (GDPR/NIS2), threat intelligence
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
SIEM/SOAR architecture, cloud security (AWS/GCP), MITRE ATT&CK tradecraft, incident response leadership, threat intelligence, Python/Bash scripting, vulnerability management, abuse monitoring, business continuity planning
Preferred skills
CISSP/CISM/GIAC/OSCP certifications, detection engineering program scaling, threat intelligence platforms, bug bounty operations, vendor management, Irish/EU regulatory environment experience
Technologies
Chronicle, Splunk, Elastic SIEM, Palo Alto XSOAR, Tines, GCP, AWS, MITRE ATT&CK, MITRE D3FEND, Recorded Future, Mandiant Advantage
Responsibilities
Define multi-year SecOps roadmap covering detection, response, and threat intelligence; Architect and own SecOps toolchain (SIEM, SOAR, EDR/XDR); Drive detection engineering with high-fidelity, low-noise detections mapped to MITRE ATT&CK; Lead end-to-end incident response including playbooks, war rooms, and post-incident reviews; Build and operate threat intelligence capability from internal telemetry and commercial feeds; Architect automation for alert triage, enrichment, and response using SOAR and scripting; Serve as SME for GDPR, NIS2, and Irish regulatory obligations; Define vulnerability triage and remediation SLAs; Own technical strategy for abuse monitoring and fraud prevention; Lead business continuity and disaster recovery planning; Translate operational risk to executive leadership; Mentor engineers and embed security thinking across teams
Seniority
Staff, strategic anchor with hands-on technical execution and cross-functional leadership
