Role summary
Almosafer seeks cybersecurity specialists combining engineering and programming skills to solve complex security problems. The role involves innovative security project work alongside operational duties including detection engineering and incident response.
Responsibilities
- Build, deploy and maintain large scale security systems across Almosafer's ecosystem
- Research, innovate and improve security capabilities through new and enhanced tooling
- Develop smart automation strategies to reduce manual alert triage requirements
- Conduct detection engineering to increase coverage and identify malicious activities across endpoints, infrastructure, networks, and cloud environments
- Investigate alerts and potential incidents end-to-end, including digital forensics, malware analysis and threat intelligence
- Lead incident response efforts and respond to intrusion attempts and suspicious activities collaborating with multiple teams
- Participate in red team exercises and threat simulations to identify gaps and expand team knowledge
Qualifications
- Bachelor of Science in Computer Science, Engineering, Information Systems, or equivalent technical field experience
- 3+ years of experience in incident response, detection engineering or related security disciplines
- Strong programming skills in Python, Rust, and/or Go
- Practical experience with BeyondCorp or Zero Trust security models
- Proven expertise in one or more detection and response areas including digital forensics, malware analysis, incident management, host/network intrusion detection, network telemetry, threat intelligence, and threat hunting
- Advanced OS knowledge across two or more of macOS, Windows, or Linux including file/disk structures, forensics, security controls, hardening, scripting, and binary analysis
- Advanced cloud knowledge to build, deploy, and investigate security events across two or more of AWS, Kubernetes, or GCP
Education
Bachelor of Science in Computer Science, Engineering, Information Systems, or equivalent technical field experience
Experience
3+ years
Skills
- Python
- Rust
- Go
- BeyondCorp
- Zero Trust
- digital forensics
- malware analysis
- IDA Pro
- Ghidra
- GRR
- Timesketch
- incident management
- host intrusion detection
- network intrusion detection
- Zeek
- threat intelligence
- threat hunting
- macOS
- Windows
- Linux
- AWS
- Kubernetes
- GCP
Benefits
- Purpose-led workplace where ideas create real impact
- Ongoing learning and development opportunities
- Recognition of wins and achievements
- Community built on trust, curiosity, and shared momentum
Education · Experience · Type
Bachelor'sRequires 3+ yearsSalary not stated