Maximum of 25 job preferences reached.
Top Cybersecurity Jobs in San Francisco, CA
Information Technology • Cybersecurity
Lead complex incident response investigations involving active adversaries and serious intrusions. Reconstruct attacker activity across endpoint, identity, cloud, and network telemetry; develop timelines, root-cause narratives, and remediation guidance; communicate findings to technical and executive stakeholders; and support partner engagements. Create detections, playbooks, automations, technical notes, and threat intelligence while collaborating with Product, Engineering, and account-facing teams. Mentor responders and improve the scalability of Tactical Response operations.
Top Skills:
AzureBashChainsawEdrEqlEric Zimmerman ToolsEs|QlHayabusaJavaScriptKqlLinuxmacOSMicrosoft 365OsqueryPHPPowershellPythonRegripperRubySIEMSigmaSnortSplunk SplSuricataVelociraptorVpnWindowsYara
Information Technology • Cybersecurity
Lead internal security incident response as the primary SOC escalation point. Responsibilities include incident triage and validation, tabletop and purple-team exercises, telemetry optimization, threat coverage improvements, post-incident reviews, remediation tracking, stakeholder reporting, and maintaining response playbooks and standards. The role partners with engineering, product security, detection engineering, and offensive security teams to improve organizational resilience.
Top Skills:
AWSAzureConfluenceEdrElkJIRALucidchartMdrMicrosoft 365SIEMSoar
Information Technology • Cybersecurity
Own the vision, roadmap, and delivery of internal SOC tooling, including analyst UX, response workflows, investigation models, and automation. Partner with SOC leadership, engineering, design, and product teams to transform manual processes into scalable workflows. Define requirements, interfaces, operational metrics, and investment cases while improving analyst throughput, time-to-close, and delivery repeatability. The role requires deep SOC operations knowledge, cybersecurity product management experience, and expertise building operator-facing platforms and AI-enabled products.
Top Skills:
Artificial IntelligenceClaudeMdrSoarSoc Tooling
Information Technology • Cybersecurity
Provides partner-facing support for cybersecurity incidents through email, chat, and phone. Triages SOC queues, troubleshoots security and product questions, translates findings into practical guidance, coordinates escalations, supports high-severity incident calls, documents investigations, manages follow-ups, and contributes to knowledge-base and process improvements. The role includes scheduled live coverage and occasional weekend or on-call support.
Top Skills:
Microsoft 365Microsoft EntraSIEMVpnZendesk
Information Technology • Cybersecurity
Monitor and investigate cybersecurity alerts, analyze endpoint telemetry, logs, forensic artifacts, malware, and Microsoft 365 activity, then coordinate threat remediation. The analyst also supports escalations, contributes to detection engineering and tuning, and collaborates across the SOC. The role requires knowledge of operating systems, enterprise administration, networking, web security, attacker techniques, and malware analysis while working a remote weekend 4x10 shift after training.
Top Skills:
Active DirectoryAWSAzureBashCommand PromptEdrGCPGroup PolicyJavaScriptLinuxmacOSMicrosoft 365Mitre Att&CkOwasp Top 10PHPPowershellPythonRmm ToolsRubyWindowsWmic
New
Track Smarter, Apply Better.
Ditch the spreadsheets. Organize your job search with our freeApplication Tracker.
Use For Free
Information Technology • Cybersecurity
Monitor, triage, investigate, and respond to cybersecurity alerts and intrusions. Analyze EDR telemetry, logs, forensic artifacts, malware, and Microsoft 365 activity; determine root causes and recommend remediation. Support threat-related escalations, contribute to detection engineering and tuning, and collaborate across teams. The role requires familiarity with endpoint attack surfaces, threat actor techniques, Windows and domain administration, networking, web security, and basic malware analysis.
Top Skills:
Active DirectoryAWSAzureBashCommand PromptEdrGCPGroup PolicyJavaScriptLinuxmacOSMicrosoft 365Mitre Att&CkNatNetworkingOwasp Top 10PHPPowershellPythonRmmsRubyVlansWeb TechnologiesWindowsWindows Domain AdministrationWmic
Information Technology • Cybersecurity
Provides entry-level, partner-facing SOC support by triaging security queues, communicating incident guidance, troubleshooting cybersecurity and product questions, coordinating escalations, documenting investigations, and following up through resolution. The role supports incident calls, live phone or chat coverage, knowledge-base improvements, cross-functional collaboration, and occasional weekend or on-call coverage. It requires clear communication, sound judgment, foundational cybersecurity knowledge, and organized remote work.
Top Skills:
CybersecurityEndpoint SecurityEntraLog AnalysisMicrosoft 365SIEMVpnZendesk
Information Technology • Cybersecurity
Build and manage Huntress’s Security Quality Management System for agentic and human-led SOC investigations. Establish sampling methods, review cadences, quality standards, validation criteria, scorecards, and reporting. Independently assess investigation decisions, identify drift and recurring failures, lead root-cause analysis, validate corrective actions, and improve security operations in partnership with Analysis, Product, Engineering, and Security Operations. Initially hands-on, the role is expected to grow into leadership of the QMS function.
Top Skills:
Ai Tools
18 Days AgoSaved
Easy Apply
Easy Apply
Information Technology • Cybersecurity
Lead modernization of high-throughput cybersecurity detection engines and event pipelines in Go. Own distributed-system reliability, observability, liveness monitoring, load management, schema standards, drift detection, migration validation, and safe cutovers. Provide hands-on technical leadership across teams, set platform direction, write and review production code, and support Sigma-based detection capabilities. Collaborate across a broad stack including Kafka, Temporal, Redis, ClickHouse, Elasticsearch, Kubernetes, cloud platforms, and Ruby on Rails.
Top Skills:
AWSAzureClickhouseElasticsearchGoKafkaKubernetesRedisRuby On RailsSigmaTemporal
Information Technology • Cybersecurity
Manages global 24/7 Security Operations Center operations, including processes, playbooks, shift coverage, quality assurance, analyst development, incident response capabilities, and operational performance. Leads cybersecurity analysts, partners with Product and Support teams, reports on objectives and key results, operationalizes new services, and represents the organization in public speaking engagements.
Top Skills:
Data ScienceDetection EngineeringDigital ForensicsIncident ResponseMalware AnalysisSecurity OperationsSecurity Operations CenterThreat HuntingWindows Forensics
Let Your Resume Do The Work
Upload your resume to be matched with jobs you're a great fit for.
Success! We'll use this to further personalize your experience.
All Filters
Total selected ()
No Results
No Results

.jpg)
