Taking identity security where it has never gone before.
Silverfort Logo

Silverfort

Senior SecOps & IR Engineer

Posted 15 Days Ago
Be an Early Applicant
Remote or Hybrid
Hiring Remotely in Tel Aviv
Senior level
Remote or Hybrid
Hiring Remotely in Tel Aviv
Senior level
Lead security operations and incident response, including monitoring, investigations, threat hunting, and automation. Drive continuous improvement across processes.
The summary above was generated by AI
Description

Silverfort is on a mission to bring identity security everywhere – to every human, machine, and AI agent, both on-prem and in the cloud. Our unique technology secures identities & access at runtime, in ways that weren’t possible before. With the broadest identity security platform in the market, trusted by more than 1,000 customers, including many Fortune 100 companies, Silverfort is uniquely positioned to lead the fast-growing identity security category.

Joining Silverfort means becoming part of a fast-moving team with a culture of innovation and collaboration, that goes above and beyond to help our customers and each other, on a journey to reshape the future of identity security.

We are looking for a Senior Security Operations & Incident Response Engineer to lead day-to-day security operations and incident response, and to own our detection and response stack end-to-end. You will play a key role in advancing our Security Operations roadmap, including implementing and operationalizing a SIEM solution and strengthening our security posture across modern SaaS and cloud environments with an identity-first, practical approach.

Responsibilities
  • Lead day-to-day security operations, including monitoring, triage, investigations, incident response, and DFIR activities
  • Lead forensic investigations across logs, endpoint telemetry, identity and cloud activity, and network signals; drive post-incident reviews and lessons learned
  • Own SIEM, SOAR, and EDR end-to-end: onboard data sources, tune detections, operationalize response playbooks, and drive tool effectiveness
  • Make threat hunting a core practice: execute hunts, validate hypotheses, and translate findings into detections and response playbooks
  • Design, build, and maintain SOAR workflows and response actions to automate triage and containment, reduce MTTR, and standardize repeatable response outcomes
  • Build and maintain clear operational documentation and incident artifacts (runbooks, incident reports, postmortems) to enable repeatable execution and continuous improvement
  • Drive continuous improvement across detection quality, alert fidelity, documentation standards, and operational metrics
  • Partner with IT, DevOps, and R&D on investigations and remediation to reduce recurrence, close gaps, and strengthen identity and cloud security controls
Requirements
  • 4+ years of experience in SecOps, Incident Response, SOC, or DFIR in cloud-native or SaaS environments
  • Hands-on experience owning and operating SIEM, SOAR, and EDR end-to-end, including detection tuning, correlation, and the alert lifecycle from event to response
  • Proven experience leading incident response investigations, including forensics and structured DFIR methodologies
  • Hands-on threat hunting experience, including turning findings into repeatable detections and operational playbooks
  • Strong understanding of identity security concepts such as IdP, SSO, MFA, and RBAC
  • Working knowledge of cloud security fundamentals and common cloud attack patterns across AWS and Azure environments
  • Ability to build security automation using Python/Bash and APIs; comfortable with REST APIs and Regex
  • Experience operating the Palo Alto Cortex ecosystem (XDR and/or XSOAR) in production, or equivalent enterprise-grade platforms, with the ability to ramp quickly
  • Strong planning and problem-solving skills
  • Strong communication skills and ability to work effectively in a fast-paced environment
  • Team-first collaborator able to work effectively across IT, DevOps, and R&D

Advantages

  • Experience with cloud incident response across IaaS/PaaS/SaaS
  • Strong understanding of identity threat models and modern identity attack techniques
  • Experience designing or operating SIEM content and detection engineering at scale
  • Familiarity with offensive security techniques, exploit mechanics, and malware behavior

Top Skills

AWS
Azure
Bash
Edr
Python
Regex
Rest Apis
SIEM
Soar

Similar Jobs at Silverfort

Yesterday
Remote or Hybrid
Mid level
Mid level
Information Technology • Sales • Security • Cybersecurity • Automation
The Legal Counsel will manage corporate governance, compliance, HR matters, employment issues, equity plans, and drive legal initiatives for the company.
Top Skills: Ai Tools
13 Days Ago
Remote or Hybrid
Senior level
Senior level
Information Technology • Sales • Security • Cybersecurity • Automation
The Senior Data Engineer will design and develop scalable data infrastructure, maintain data models, and enhance data workflows while collaborating with cross-functional teams.
Top Skills: DatabricksDelta LakeEmrFlinkIcebergPysparkPythonSpark
15 Days Ago
Remote or Hybrid
Senior level
Senior level
Information Technology • Sales • Security • Cybersecurity • Automation
As a DevOps Engineer, you will design and implement CI/CD solutions using AWS and Azure, manage cloud infrastructure, and optimize service reliability while leveraging automation and collaboration with development teams.
Top Skills: AnsibleArgocdAWSAzureBashCi/CdGithub ActionsGitopsGoInfrastructure As CodeJenkinsKafkaKubernetesLinuxPythonRabbitMQTerraform

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account