Taking identity security where it has never gone before.
Silverfort Logo

Silverfort

Senior SecOps & IR Engineer

Posted 16 Days Ago
Be an Early Applicant
Remote or Hybrid
Hiring Remotely in Tel Aviv
Senior level
Remote or Hybrid
Hiring Remotely in Tel Aviv
Senior level
Lead security operations and incident response, including monitoring, investigations, threat hunting, and automation. Drive continuous improvement across processes.
The summary above was generated by AI
Description

Silverfort is on a mission to bring identity security everywhere – to every human, machine, and AI agent, both on-prem and in the cloud. Our unique technology secures identities & access at runtime, in ways that weren’t possible before. With the broadest identity security platform in the market, trusted by more than 1,000 customers, including many Fortune 100 companies, Silverfort is uniquely positioned to lead the fast-growing identity security category.

Joining Silverfort means becoming part of a fast-moving team with a culture of innovation and collaboration, that goes above and beyond to help our customers and each other, on a journey to reshape the future of identity security.

We are looking for a Senior Security Operations & Incident Response Engineer to lead day-to-day security operations and incident response, and to own our detection and response stack end-to-end. You will play a key role in advancing our Security Operations roadmap, including implementing and operationalizing a SIEM solution and strengthening our security posture across modern SaaS and cloud environments with an identity-first, practical approach.

Responsibilities
  • Lead day-to-day security operations, including monitoring, triage, investigations, incident response, and DFIR activities
  • Lead forensic investigations across logs, endpoint telemetry, identity and cloud activity, and network signals; drive post-incident reviews and lessons learned
  • Own SIEM, SOAR, and EDR end-to-end: onboard data sources, tune detections, operationalize response playbooks, and drive tool effectiveness
  • Make threat hunting a core practice: execute hunts, validate hypotheses, and translate findings into detections and response playbooks
  • Design, build, and maintain SOAR workflows and response actions to automate triage and containment, reduce MTTR, and standardize repeatable response outcomes
  • Build and maintain clear operational documentation and incident artifacts (runbooks, incident reports, postmortems) to enable repeatable execution and continuous improvement
  • Drive continuous improvement across detection quality, alert fidelity, documentation standards, and operational metrics
  • Partner with IT, DevOps, and R&D on investigations and remediation to reduce recurrence, close gaps, and strengthen identity and cloud security controls
Requirements
  • 4+ years of experience in SecOps, Incident Response, SOC, or DFIR in cloud-native or SaaS environments
  • Hands-on experience owning and operating SIEM, SOAR, and EDR end-to-end, including detection tuning, correlation, and the alert lifecycle from event to response
  • Proven experience leading incident response investigations, including forensics and structured DFIR methodologies
  • Hands-on threat hunting experience, including turning findings into repeatable detections and operational playbooks
  • Strong understanding of identity security concepts such as IdP, SSO, MFA, and RBAC
  • Working knowledge of cloud security fundamentals and common cloud attack patterns across AWS and Azure environments
  • Ability to build security automation using Python/Bash and APIs; comfortable with REST APIs and Regex
  • Experience operating the Palo Alto Cortex ecosystem (XDR and/or XSOAR) in production, or equivalent enterprise-grade platforms, with the ability to ramp quickly
  • Strong planning and problem-solving skills
  • Strong communication skills and ability to work effectively in a fast-paced environment
  • Team-first collaborator able to work effectively across IT, DevOps, and R&D

Advantages

  • Experience with cloud incident response across IaaS/PaaS/SaaS
  • Strong understanding of identity threat models and modern identity attack techniques
  • Experience designing or operating SIEM content and detection engineering at scale
  • Familiarity with offensive security techniques, exploit mechanics, and malware behavior

Top Skills

AWS
Azure
Bash
Edr
Python
Regex
Rest Apis
SIEM
Soar

Similar Jobs at Silverfort

2 Days Ago
Remote or Hybrid
Mid level
Mid level
Information Technology • Sales • Security • Cybersecurity • Automation
The Legal Counsel will manage corporate governance, compliance, HR matters, employment issues, equity plans, and drive legal initiatives for the company.
Top Skills: Ai Tools
14 Days Ago
Remote or Hybrid
Senior level
Senior level
Information Technology • Sales • Security • Cybersecurity • Automation
The Senior Data Engineer will design and develop scalable data infrastructure, maintain data models, and enhance data workflows while collaborating with cross-functional teams.
Top Skills: DatabricksDelta LakeEmrFlinkIcebergPysparkPythonSpark
16 Days Ago
Remote or Hybrid
Senior level
Senior level
Information Technology • Sales • Security • Cybersecurity • Automation
As a DevOps Engineer, you will design and implement CI/CD solutions using AWS and Azure, manage cloud infrastructure, and optimize service reliability while leveraging automation and collaboration with development teams.
Top Skills: AnsibleArgocdAWSAzureBashCi/CdGithub ActionsGitopsGoInfrastructure As CodeJenkinsKafkaKubernetesLinuxPythonRabbitMQTerraform

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account