Чтобы адаптировать резюме под вакансию или составить сопроводительное письмо, загрузи резюме
описание
The interview process will include a hands-on practical exercise conducted through screen sharing, where candidates will be asked to demonstrate relevant technical skills.
Cision provides PR, marketing, and social media management technology and intelligence that helps brands and organizations identify, connect with, and engage customers and stakeholders. Its solutions include PR Newswire, monitoring and analytics services, and the Brandwatch and Falcon.io social media platforms.
задачи
Monitor and investigate security alerts across cloud, identity, endpoint, and network environments
Review logs and activity from AWS, GCP, Active Directory, Linux and Windows systems, and security tools
Support incident response by gathering evidence, validating suspicious activity, and documenting findings
Write scripts to automate repetitive security tasks, log analysis, reporting, and enrichment
Assist with security reviews covering IAM, storage exposure, compute workloads, and network configurations
Investigate authentication activity, user behavior, privilege changes, and potential account compromise
Work with internal teams to understand systems, identify risks, and support remediation, compliance, and audit activities
Be available for after-hours incident response when urgent security events require investigation or support
требования
Experience with cloud security concepts, services, logs, and IAM
Strong scripting ability, preferably with Python, Bash, or PowerShell
Experience with SIEM platforms such as Splunk, Chronicle, Sentinel, or similar tools
Working knowledge of Linux and Windows systems, command-line usage, permissions, processes, and logs
Basic to intermediate understanding of Active Directory, including users, groups, authentication, and privilege changes
Ability to read and interpret logs from cloud platforms, operating systems, and security tools
Understanding of common security concepts, including phishing, credential compromise, privilege escalation, lateral movement, and exposed services
Strong analytical, documentation, and communication skills
3–5 Years of experience in security operations, incident response, systems administration, cloud operations, or a similar technical role
Hands-on experience using scripts to solve operational or security problems
Comfortable working in cloud and Linux command-line environments
Будет плюсом: Google Cloud Platform security experience, including IAM, Cloud Logging, Compute Engine, Cloud Storage, VPCs, and service accounts; exposure to Kubernetes, containers, or cloud-native workloads; experience creating automation for security monitoring or response; experience with Github/Gitlab
условия
Candidates must be available for after-hours incident response when urgent security events require investigation or support