DigitalOcean · 1 day ago
Senior SOC Engineer (DFIR & Hunt)
Maximize your interview chances
Cloud ComputingDevOps
Growth OpportunitiesH1B Sponsor Likely
Insider Connection @DigitalOcean
Get 3x more responses when you reach out via email instead of LinkedIn.
Responsibilities
Handling live intrusions and incident response cases with on-call rotations, in an internal-oriented and transparent manner, to minimize the impact of bad actors on assets.
Collect digital artifacts from cloud systems for analysis to reconstruct what may have transpired on a system leveraging digital forensics methodologies.
Analyzing network traffic to identify compromised systems, negate denial of service attacks, and pinpoint resource abuse.
Identifying trends in abusive activity, communicating with leadership to keep them apprised, and advocating for appropriate product changes to prevent future occurrences.
Acting as a point of escalation for security monitoring and related incidents: providing supporting data for critical issues, downtime events, and Post-Mortem reports.
Helping build tools to identify or automate response to harmful activity.
Establishing an understanding of DigitalOcean’s entire production environment, from applications to infrastructure, keeping up-to-date with material changes and future directions.
Building strong relationships with the other technical teams across our engineering and infrastructure functions to harden account, platform, and service structures to combat intrusions, compromises, and disruptive activities.
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
Experience performing live incident response activities transparently (sans picerl), in a team environment where accuracy of analysis determines business impact.
Hands-on dead-disk and live digital forensics experience, on Linux or Unix systems using open source tools (eg, volatility, sleuthkit) in production environments at scale.
Ability to differentiate between normal and unusual resource usage patterns in customer and employee network/system behaviors in order to hunt for subtle anomalous patterns.
Data analysis skills, including familiarity with relational databases, structured query languages (sql), logging infrastructures (syslog, elastic), and data visualization tools (looker, grafana, kentik).
Familiarity with basic static and dynamic malware analysis for triage, identification, prioritization, and remediation of new malware families and behaviors (e.g: x86 assembly, binary analysis).
A high degree of curiosity and aptitude, with a clear passion for security and the desire to keep our employees, customers, and the internet safe.
Clear written and verbal communication skills to include; technical writing, presenting, coaching, mentoring.
Consistently improving security as the platform scales, driving continuous improvement through data collection and correlation, being mindful that security should be an efficiency enabler for the business - not a detractor.
Preferred
Experience in one or more of the following: Vulnerability Analysis, Scoping, and Mitigation Planning
Threat Intelligence Collection / Analysis / Dissemination
Network Protocol Analysis
Coding, automation, or scripting skills for tool building
Detection Engineering
Benefits
Reimbursement for relevant conferences, training, and education
Access to LinkedIn Learning's 10,000+ courses
One-time work from home stipend
Wellness allowance
Flexible time off policy
Bonus in addition to base salary
Equity compensation to eligible employees
Equity grants upon hire
Option to participate in our Employee Stock Purchase Program
Company
DigitalOcean
DigitalOcean provides a cloud platform to deploy, manage, and scale applications of any size.
H1B Sponsorship
DigitalOcean has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2023 (3)
2022 (19)
2021 (19)
2020 (10)
Funding
Current Stage
Public CompanyTotal Funding
$491.28MKey Investors
Global Secure InvestAccess IndustriesKeyBanc Capital Markets
2021-09-13Post Ipo Equity· $34.91M
2021-03-23IPO· nyse:DOCN
2021-01-01Series Unknown· Undisclosed
Recent News
2024-11-15
2024-11-05
Morningstar, Inc.
2024-11-04
Company data provided by crunchbase