Senior Security Operations Engineer - 100% remote

Senior Security Operations Engineer - 100% remote

Apollo.io

Poland (Remote)
Security Operations
Incident Response
SIEM
Python
Automation
Cloud Security
Threat Hunting
Log Analysis
Detection Engineering

Hexjobs Insights

The Senior Security Operations Engineer at Apollo.io is responsible for detecting and responding to security threats in cloud environments, requiring strong technical skills and experience in security operations.

Słowa kluczowe

Security Operations
Incident Response
SIEM
Python
Automation
Cloud Security
Threat Hunting
Log Analysis
Detection Engineering

Role OverviewThe Security Operations Engineer is a senior individual contributor responsible for detecting, investigating, and responding to security threats across Apollo’s cloud-native and SaaS environments. This role requires strong technical depth, independent judgment, and ownership of complex security investigations from intake through resolution.This role operates in a fully remote environment and emphasizes clear written communication, operational rigor, and effective collaboration.Key ResponsibilitiesIncident Detection, Investigation & ResponseMonitor, triage, and investigate security alerts and events across cloud infrastructure, SaaS applications, and corporate systems.Conduct end-to-end security investigations, including scoping, containment, eradication, recovery, and documentation.Own investigations independently while collaborating effectively during high-severity incidents.SIEM, Detection & Workflow EngineeringConfigure and maintain SIEM detections in Panther, including use cases, correlation rules, alert logic, and tuning.Onboard, validate, and maintain log sources to ensure visibility, accuracy, and reliability.Design and improve investigation and response workflows to streamline triage, escalation, and resolution.Leverage AI-assisted tools to accelerate alert analysis, enrichment, and investigation efficiency.Threat Hunting & Proactive SecurityPerform proactive threat-hunting activities to identify malicious or anomalous behavior not surfaced by existing detections.Investigate abuse, fraud, account compromise, and automation misuse scenarios in close collaboration with Fraud teams.Identify detection gaps and propose, implement, and validate improvements.Automation, Coding & ToolingBuild scripts, automations, and tools to reduce manual work and improve response speed and consistency.Use Python extensively for analysis, automation, and internal tooling; Ruby experience is a plus.Contribute to internal detection frameworks, tooling, and shared libraries.Documentation & Continuous ImprovementProduce clear, high-quality documentation for incidents, investigations, and post-incident reviews.Contribute to runbooks, playbooks, and operational standards.Share knowledge, review peer work, and mentor other engineers.Required Skills & Experience4+ years of experience in Security Operations or Incident Response.Hands-on experience with SIEM platforms (experience with Panther is highly valued), log analysis, and detection engineering.Experience investigating security incidents in cloud-native environments (GCP preferred; AWS and Azure also relevant) and SaaS applications.Experience automating security workflows and investigations.Proficiency in Python; familiarity with Ruby preferred.Ability to operate independently, prioritize effectively, and make sound technical decisions under pressure.Preferred QualificationsExperience using AI or ML-powered security tools for detection, investigation, or response.Familiarity with vulnerability management concepts and remediation workflows.Relevant certifications such as GCIA, GCIH, GCED, AWS / GCP Security certifications, or Security+.Prior experience working in fully remote, distributed teams.Our tech stack: - Ruby/RoR, Python, React.js, Typescript, Redux, MongoDB, Elasticsearch, Ansible, Terraform, Grafana, Kibana, Docker, Kubernetes, GCP, GitHub Actions.What we offerBase salary + 10% yearly bonus + equityContract of employment (Polish UoP) + AKUP 50% tax deductible costs with 70% creativity factor for the Eng roles100% remote work (we don’t have offices and we don’t plan to have them) - no hybrid, no forcing people to get back to the officesAllianz Medical Package and Warta Life Insurance covered by Apollo1200 USD educational budget300 USD Work From Home Stipend4 additional PTO days for Engineering (Rest Days)100% remote work and flexible working hoursAI Learning BudgetWe are AI NativeApollo.io is an AI-native company built on a culture of continuous improvement. We’re on the front lines of driving productivity for our customers—and we expect the same mindset from our team. If you're energized by finding smarter, faster ways to get things done using AI and automation, you'll thrive here.Why You’ll Love Working at ApolloAt Apollo, we’re driven by a shared mission: to help our customers unlock their full revenue potential. That’s why we take extreme ownership of our work, move with focus and urgency, and learn voraciously to stay ahead.We invest deeply in your growth, ensuring you have the resources, support, and autonomy to own your role and make a real impact. Collaboration is at our core—we’re all for one, meaning you’ll have a team across departments ready to help you succeed. We encourage bold ideas and courageous action, giving you the freedom to experiment, take smart risks, and drive big wins.If you’re looking for a place where your work matters, where you can push boundaries, and where your career can thrive - Apollo is the place for you.

Wyświetlenia: 7
Opublikowana13 dni temu
Wygasaza 15 dni
Źródło
Logo

Podobne oferty, które mogą Cię zainteresować

Na podstawie "Senior Security Operations Engineer - 100% remote"

Nie znaleziono ofert, spróbuj zmienić kryteria wyszukiwania.