Description
- Own Cyber Defense execution across SOC, detection engineering, incident response, and exposure remediation
- Lead alert triage quality, escalation standards, incident command, and response coordination
- Prioritize critical vulnerabilities and exposures using asset criticality, exploitability, and business impact
- Manage Cyber Defense dashboards, runbooks, remediation follow-up, and operational metrics
- Coordinate with IT, Platform, IAM, Product, GRC, Legal, and business owners during incidents and remediation
- Build and develop the Cyber Defense team, including hiring, onboarding, mentoring, and retaining security talent
- Drive continuous improvement of detection coverage, response playbooks, and security controls based on lessons learned and threat intelligence
- Report on Cyber Defense performance, incidents, and risk posture to security leadership and stakeholders
- 10+ years of experience in Information Security
- 3+ years in a security management or team lead role with direct people management experience
- Hands-on experience managing SOC operations, leading incident command, and driving MTTD/MTTR improvement
- Ability to design, validate, and maintain detection logic across SIEM, EDR, and cloud platforms, with a deep understanding of runbook development and false-positive reduction
- Knowledge of top attack scenarios (ATO, credential theft, privilege escalation, data exfiltration) and ability to map detections to threat models like MITRE ATT&CK
- Experience prioritizing vulnerabilities using CVSS and asset criticality to reduce exposure aging
- Hands-on experience with at least one enterprise SIEM (Splunk, Microsoft Sentinel, Chronicle, Elastic) and SOAR tooling
- Understanding of cloud-native security controls and monitoring in AWS, GCP, or Azure
- Understanding of IAM, PAM, SSO, and identity-related attack vectors relevant to detection and response
- Ability to define, track, and communicate security KPIs and operational dashboards to technical and executive audiences
- English - Upper-Intermediate or higher
- Ukrainian - Fluent
Will be a plus
- Experience in fintech, e-commerce, or other high-risk industries with complex threat landscapes
- Hands-on background as a SOC analyst, incident responder, or detection engineer prior to moving into management
- Experience building a SOC or Cyber Defense function from scratch or significantly maturing an existing one
- Familiarity with threat intelligence platforms and threat-informed defense methodologies
- Relevant certifications: CISSP, CISM, GIAC (GSOM, GCED, GCIH) or equivalent
We offer
- 20 paid vacation days per year
- 10 paid sick leave days per year
- Public holidays as per the company’s approved Public holiday list
- Medical budget
- Opportunity to work remotely
- Professional education budget
- Language learning budget
- Wellness budget (gym membership, sports gear and related expenses)
Similar jobs
Est. 80,000 EUR
We are looking for a Security Operation Manager to lead, mature, and operate our resilient security operations capability. In this role, you will own the defense of our environment, ensuring fast and precise threat detec…
Est. 120,000 EUR
We are looking for a Head of Security Operations Center (Head of SOC) to lead, mature, and operate our resilient security operations capability. In this role, you will own the defense of our environment, ensuring fast an…
Est. 120,000 EUR
We are looking for a Detection Engineering & Automation Lead to improve detection quality and automation so high-risk attacker behavior is identified with less noise and faster investigation. This is a unique opportu…
Est. 120,000 EUR
We are inviting you, a highly motivated and results-oriented Enterprise & Cloud Security Manager to join our team on a full-time basis. Our team has unique expertise in research, analysis, and product development. By…
Est. 80,000 EUR
We are looking for an Endpoint Security Engineer to join our Security team. In this role, you will be responsible for implementing, operating, and improving endpoint security controls across corporate workstations, produ…
Est. 120,000 EUR
We are looking for a DevSecOps and Application Security Lead to join our team and build our application security from scratch. In this role, you will lead the security direction within our department, focusing on integra…
Est. 80,000 EUR
We are looking for a technical Head of Corporate IT who is ready to take full ownership of the corporate infrastructure strategy, budget management, and the transformation of access and security processes. In this role,…
Est. 48,000 EUR
Our Purpose At SentinelOne, we are driven by a clear purpose: to give the advantage to those who secure our future. As AI reshapes how organizations build, operate, and innovate, the responsibility to protect them become…
Our Helpdesk team is the foundation of the company’s internal IT infrastructure. We ensure secure access to resources, manage the device fleet, maintain network reliability, and support core corporate services, enabling…
Est. 80,000 PLN
Location: Poland We Are: RTB House is a next-generation performance demand-side platform (DSP) that uses proprietary Deep Learning AI algorithms to help brands grow. The company is the market leader in driving performanc…
Our Purpose At SentinelOne, we are driven by a clear purpose: to give the advantage to those who secure our future. As AI reshapes how organizations build, operate, and innovate, the responsibility to protect them become…
Our Purpose At SentinelOne, we are driven by a clear purpose: to give the advantage to those who secure our future. As AI reshapes how organizations build, operate, and innovate, the responsibility to protect them become…
Our Purpose At SentinelOne, we are driven by a clear purpose: to give the advantage to those who secure our future. As AI reshapes how organizations build, operate, and innovate, the responsibility to protect them become…
Est. 165,000 USD
At Beyond Finance, we've made it our mission to help everyday Americans escape the endless cycle of crippling debt and step into a brighter financial future. Through compassionate, individualized care, a culture focused…
Company Mission Payhawk is a leading global spend management solution for scaling businesses. Headquartered in London and combining company cards, reimbursable expenses and accounts payable into a single product; its fut…
Our Purpose At SentinelOne, we are driven by a clear purpose: to give the advantage to those who secure our future. As AI reshapes how organizations build, operate, and innovate, the responsibility to protect them become…
Est. 90,000 GBP
Who we are Since 1843, The Economist Group has championed independence, excellence and openness, helping people understand and tackle the critical challenges shaping the world. Today, we are building on that legacy as a…
Est. 112,000 USD
SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with…
Est. 120,000 PLN
CAPCO POLAND *We are looking for Poland based candidate. Capco is a fully independent, global management and technology consultancy. For 25 years we have combined innovative thinking with deep industry knowledge to deliv…
Est. 140,000 USD
CYBERSECURITY ASSESSMENT AND AUTHORIZATION SUBJECT MATTER EXPERT (SME) Job Type: Proposal Future Job Opportunity Location: Fully Remote Who we are: Horizon Industries Limited (Horizon) is a dynamic IT and Management Cons…
Est. 110,000 USD
SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with…
Est. 120,000 USD
About Keyfactor Our mission is to securely connect the world: humans, machines, and AI. Keyfactor is the leader in trust infrastructure for AI and machines, helping the world's largest enterprises and government agencies…
Est. 195,000 USD
Our Purpose At SentinelOne, we are driven by a clear purpose: to give the advantage to those who secure our future. As AI reshapes how organizations build, operate, and innovate, the responsibility to protect them become…
Est. 124,000 USD
Position Overview: The Senior Information Security Engineer is tasked with overseeing the development and deployment of advanced security solutions across an organization’s technology stack. They lead complex projects, s…
Est. 55,000 USD
Our Purpose At SentinelOne, we are driven by a clear purpose: to give the advantage to those who secure our future. As AI reshapes how organizations build, operate, and innovate, the responsibility to protect them become…
Our Purpose At SentinelOne, we are driven by a clear purpose: to give the advantage to those who secure our future. As AI reshapes how organizations build, operate, and innovate, the responsibility to protect them become…
Est. 110,000 USD
SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with…
About Zscaler Zscaler accelerates digital transformation to ensure our customers can be more agile, efficient, resilient, and secure. As an AI-forward enterprise, we are constantly pushing the envelope, leveraging the wo…
Est. 80,000 EUR
Join Us as a Cybersecurity Consultant – Transforming the Future of Financial Services What Makes Capco Unique? Capco is a global technology and management consultancy specializing in driving digital transformation across…
Est. 60,000 EUR
We invite you, a highly motivated and results-oriented Windows Site Reliability Engineer, to join our team full-time and ensure the reliability and stability of the company's infrastructure. Our team has unique expertise…