Vultr

Vultr

Senior CSIRT Engingeer

Remote - United States · Senior

Sponsorship not specified$110k-$130kDetected 11 days ago
PythonBashPowerShellCloud PlatformsLinuxCybersecuritySIEMKQLSOARSOC OperationsDetection EngineeringIncident ResponseComplianceEmbedded SystemsCISSP

About the role

  • In December 2024 Vultr announced an equity financing at a $3.5 billion valuation.

Responsibilities

  • Engineer, tune, and maintain detection rules and analytics in the SIEM and EDR platforms
  • Design and build SOAR playbooks and automated response workflows to streamline triage, enrichment, and containment.
  • Develop and maintain integrations between security tools (SIEM, EDR, SOAR, SEG, TIP, DLP, ticketing)
  • Identify and drive improvements to security visibility across the environment, including new log sources, enrichment opportunities, and telemetry gaps
  • Document detection logic, automation workflows, and operational procedures

Requirements

  • Minimum of 5 years experience in detection engineering, SIEM engineering, SOAR engineering, Security Operations, or a closely related role
  • Hands-on SIEM experience at an engineering level: rule authoring, parser development, log source integration, platform administration.
  • Experience with EDR platforms, including policy configuration, telemetry analysis, and live response.
  • Demonstrated proficiency in PowerShell, Bash, Python, common Query Languages (FQL, KQL, EQL, LEQL, MQL, etc) and YARA, SIGMA, and CAPA rules.
  • Experience conducting security investigations, threat hunting, and incident response
  • Proficiency with Linux, MacOS, and Windows.

Nice to have

  • Experience with cloud infrastructure environments
  • Familiarity with data loss prevention concepts and insider threat detection patterns
  • Certifications such as BTL1, BTL2, CCD, CCSP, CKA, CKS, CJDE, CISSP, GCDA, GCED, GCFA, GCIH, GCIA, GCTD, GNFA, etc.
  • Experience in SOC2, ISO 27001, FedRAMP, or GDPR environments.
  • $110,000 - $130,000
  • Vultr will consider qualified applicants with arrest or conviction records in accordance with applicable laws and will not conduct a background check until after an offer of employment has been extended and accepted.
  • We also take your privacy seriously.
  • We handle personal information responsibly and follow applicable laws, including U.S. privacy rules and India's Digital Personal Data Protection Act, 2023.

Compensation

  • $110,000 - $130,000
  • Final compensation will vary depending on years of experience, background/skill set, location, and applicable laws.

Benefits

  • Excellent Medical Benefits w/ 100% company-paid premiums for employee only plan + 100% company-paid dental & vision premiums
  • 401(k) plan that matches 100% up to 4% with immediate vesting
  • Professional Development Reimbursement of $2,500 each year
  • 11 Holidays + Paid Time Off Accrual + Rollover Plan + take your birthday off
  • Increased PTO at 3 year & 10 year anniversary + 1 month paid sabbatical every 5 years + Anniversary Bonus each year
  • Internet reimbursement up to $75 per month
  • Gym membership reimbursement up to $50 per month
  • Administer SIEM platform health, parser configuration, log source onboarding, and data pipeline optimization.

Company info

  • Vultr is on a mission to make high-performance cloud infrastructure easy to use, affordable, and locally accessible for enterprises and AI innovators around the world. With 33 global cloud data center locations, Vultr is trusted by hundreds of thousands of active customers across 185 countries for its flexible, scalable, global Cloud Compute, Cloud GPU, Bare Metal, and Cloud Storage solutions. In December 2024 Vultr announced an equity financing at a $3.5 billion valuation. Founded by David Aninowsky and self-funded for over a decade, Vultr has grown to become the world's largest privately-held cloud infrastructure company.
  • Vultr is on a mission to make high-performance cloud infrastructure easy to use, affordable, and locally accessible for enterprises and AI innovators around the world.
  • With 33 global cloud data center locations, Vultr is trusted by hundreds of thousands of active customers across 185 countries for its flexible, scalable, global Cloud Compute, Cloud GPU, Bare Metal, and Cloud Storage solutions.
  • Founded by David Aninowsky and self-funded for over a decade, Vultr has grown to become the world's largest privately-held cloud infrastructure company.
  • Commitment matters to Vultr! Increased PTO at 3 year & 10 year anniversary + 1 month paid sabbatical every 5 years + Anniversary Bonus each year
  • $500 first year remote office setup + $400 each following year for new equipment
  • Company-paid Wellable subscription
  • The Vultr CSIRT (Computer Security Incident Response Team) is looking for a Senior CSIRT Engineer to join our team, reporting to the Senior Manager of Incident Response.
  • In this role, you will own the SIEM and EDR platforms by administering, optimizing, and building detection content.
  • You will design and implement automation workflows using SOAR and develop integrations across our security tooling stack.
  • You will also work alongside CSIRT Analysts to investigate security events, conduct threat hunts, and support incident response.

Equal opportunity

  • We are an equal opportunity employer and are committed to creating an inclusive environment for all employees.

Visa & Work Authorization

  • Where allowed by law, applicants may request details about the data we collect, access or delete their information, withdraw consent for its use, and opt out of nonessential communications.

This listing is sourced directly from Vultr's careers page and normalized into a canonical job model.