сегодня

security engineer in SOC

ориентир по рынку
вакансия зп не указана
в среднем 351 041 ₽
Загрузи резюме, чтобы видеть мэтчи с вакансией

подготовьтесь к отклику

ai-инструменты

Чтобы адаптировать резюме под вакансию или составить сопроводительное письмо, загрузите резюме

описание

HelloFresh is a food and beverage services company that provides weekly meal boxes and office meals.

задачи

  • Mature logging and monitoring of Cloud, IT, and Application workloads through automation and IaC;
  • Filter, ingest, and optimize security-specific events from large log streams;
  • Conduct threat hunts against fileless malware and APTs using EDR, OS, and network telemetry;
  • Use AI coding assistants to write scripts for security automation and data parsing;
  • Use LLMs such as Claude, ChatGPT, and Gemini to summarize high-volume JSON logs and investigate complex code snippets;
  • Develop advanced correlation and cross-correlation rules to detect sophisticated attacks and fraud cases;
  • Generate security metrics and incident reports;
  • Lead Incident Detection and Response in AWS cloud and enterprise IT environments;
  • Serve as the shift’s main communicator during active incidents;
  • Suggest detection rule tuning and SOP refinements;
  • Contribute to the team knowledge base to reduce false positives and improve workflows;
  • Mentor L1 SOC team members;
  • Conduct purple teaming workshops and participate in CTFs.

требования

  • Proven security monitoring and incident response experience in public cloud environments;
  • Experience with cloud SIEM and SOAR platforms, DDoS mitigation and prevention tools, and Layer-7 web-based perimeter security controls;
  • Excellent Python or Go programming skills for automation;
  • Ability to use AI coding assistants to write and debug Python scripts for security automation and data parsing;
  • Proficiency in writing detection rules using Sigma and KQL with AI tools;
  • Understanding of network intrusion methods, network containment, segregation techniques, Sandboxes, and Intrusion Detection/Prevention Systems;
  • Ability to analyze disparate log sources on demand and distinguish signal from noise;
  • Good communication and reporting skills;
  • Command of log analysis stacks such as ElasticSearch, Splunk/SumoLogic, and Graylog;
  • Ability to meet response time and incident closure metrics with thorough documentation and timely stakeholder updates;
  • Willingness to work on-call in rotational shifts;
  • Nice to have: diverse professional experience.

условия

  • Hybrid working model;
  • Competitive compensation package;
  • HelloFresh-subsidized Pension Scheme;
  • Discounts on HelloFresh boxes and office meals;
  • German language learning budget;
  • Access to the HelloFresh Academy;
  • Mental health support;
  • Transportation perks;
  • Working-parent-friendly benefits;
  • 24/7 Gym access;
  • Wellbeing platforms including Headspace and Spill;
  • Sabbatical leave options.

Если просят выйти из iCloud, прислать код из SMS, запустить или установить что-то, перевести деньги — не соглашайтесь: это мошенничество.

Про зарплаты

Анонимные данные по зарплатам и грейдам.
Можно сверить вилку с рынком.

Посмотреть зарплаты

Если просят выйти из iCloud, прислать код из SMS, запустить или установить что-то, перевести деньги — не соглашайтесь: это мошенничество.