Remote job
Security Operations Engineer – Remote-First
Job details
About this role
Role overview Help protect payment infrastructure by investigating security alerts, responding to incidents and strengthening detection across cloud, identity, endpoint and application environments. The role combines hands-on security operations with proactive threat hunting and detection engineering, in close partnership with security, engineering, DevOps, IT and operations teams.
Responsibilities - Triage alerts and investigate security events across the organization’s environments. - Coordinate incident response through preparation, identification, containment, eradication, recovery and lessons learned. - Conduct hypothesis-driven threat hunts informed by attacker behavior, threat intelligence and MITRE ATT&CK. - Improve detection coverage and tooling, including queries and rules for ambiguous or evolving signals. - Communicate findings and response actions clearly to technical and non-technical colleagues. - Contribute to operational incident response, including on-call responsibilities.
Benefits and work setup Remote-first, with quarterly and annual in-person team gatherings. Employees may work from another EU country for up to three months per year. The package includes salary, performance-based bonus, benefits and a €5,000 annual learning budget.