高级网络安全分析师 - 欧洲、中东和非洲
Senior Cyber Security Analyst - EMEA
Intuition Machines 使用 AI/ML 构建企业安全产品。我们将研究成果应用于服务数亿人的系统,团队分布在全球各地。您可能已经了解我们最知名的产品——hCaptcha 安全套件。我们的方法简单:低开销、小团队和快速迭代。
作为高级网络安全分析师,您将利用在机器人检测、网络流量分析和深度行为分析方面的专业知识,识别并调查 hCaptcha SaaS 安全平台内的异常活动。
您的主要职责包括对潜在的自动化和人为威胁进行高级调查,分析复杂模式和行为,并开发可操作的见解以增强我们的安全态势。与其它团队紧密合作,您将有助于持续改进我们的 AI/ML 检测和响应能力,确保我们的平台能够抵御不断演变的网络安全挑战。
使用 AI:编码代理无疑是很有用的工具。我们提供对前三大模型的访问,并是最早采用评估优先开发流程的公司之一。熟悉使用代理进行编码是所有面试的一部分。然而,可靠性与正确性对我们至关重要。您需要阅读并理解每行带有您名字的代码,并且代码将由人和机器共同审查。
您将负责:
- 从多种来源监控、识别和分析事件,以发现威胁并以紧迫感响应此类事件。
- 与全球分布式团队协作完成任务。
- 协助收集指标以衡量安全运营功能的效率。
- 审计安全措施的有效性,检查系统是否符合安全合规标准。
- 协助实施安全策略和流程。
- 优化流程并最终更新团队的标准操作程序。
- 参与各种阶段的事件调查和威胁狩猎工作。
- 与内部公司团队如产品、客户成功等密切合作。
我们寻找:
- 了解 Web 和 API 安全、编码标准、WAF、高级持续威胁行为者、僵尸网络(现成和定制)及攻击缓解。
- 必须具备实际的 SQL 技能。
- 了解管理、保护和准备生产环境的 Web 环境。
查看英文原文
Intuition Machines uses AI/ML to build enterprise security products. We apply our research to systems that serve hundreds of millions of people, with a team distributed around the world. You are probably familiar with our best-known product, the hCaptcha security suite. Our approach is simple: low overhead, small teams, and rapid iteration.
As a Senior Cyber Security Analyst, you will leverage your expertise in bot detection, web traffic analysis, and deep behavioral analytics to identify and investigate anomalous activities within our hCaptcha SaaS security platform.
Your primary responsibilities will include conducting advanced investigations of potential automated and human threats, analyzing complex patterns and behaviors, and developing actionable insights to enhance our security posture. Working closely with other teams, you will contribute to the continuous improvement of our AI/ML detection and response capabilities, ensuring that our platform remains resilient against evolving cybersecurity challenges.
Using AI: Coding agents are indisputably useful tools. We provide access to the top 3 models, and were early adopters of evals-first development flows. Familiarity with coding using agents is part of all interviews. However, reliability and correctness are critical for us. You will need to read and understand every line of code with your name on it, and it will be reviewed by both people and machines.
What will you do:
- Monitor, identify and analyze events from a range of sources to spot threats and respond to such incidents with a sense of urgency.
- Collaborate with globally distributed teams to accomplish tasks.
- Assist in the collection of metrics to measure the efficiency of Security Operations functions.
- Audit the effectiveness of security measures to check if the systems meet the Security compliance norms.
- Assist in implementation of security policies and procedures.
- Fine-tune of the process and eventually update standard operating procedures for the team.
- Participate in various stages of incident investigations and threat hunting engagements.
- Work closely with internal company teams such as Product, Customer Success, etc.
What we are looking for:
- Exposure to web and API security, coding standards, WAFs, advanced persistent threat actors, botnets (off the shelf and custom) and attack mitigation.
- Hands-on SQL proficiency is a must-have.
- Knowledge of managing, securing and preparing production web environments with tools like Kubernetes.
- Familiar with Threat Hunting - Web/API, web hacking, web data analysis or WAF hands-on experience.
- In-depth knowledge of the web technology and web application security field.
- Deep understanding of the cybersecurity threat landscape, and the attacker mindset.
- Experience in scripting and programming (JavaScript, Python, etc.).
- Interest in keeping up with industry trends and market demands to recommend product enhancements and new sources of intelligence.
- Demonstrated interest in working with data and metrics as applied to security.
- A great collaborator and communicator who stays curious and enjoys innovating. Nothing stands still in security.
Nice to Have:
- Familiarity with open source analytics and visualization tools like Grafana, Redash, etc.
- Experience red-teaming, especially developing bot-nets and whitehat hacking.
- Hands on knowledge on Web security modules and secure configuration.
- Hands-on experience and proficiency in API test automation and standardization.
- Experience and solid knowledge on computer and network security.
- Integrating security into build automation, deployment automation, test automation, SDLC orchestration, environment management, monitoring, and production.
- Mentor development teams, review pull requests, and guide evolution of the development pipeline.
- Experience with modern application packaging, deployment, containerisation, bug tracking tools and other supporting tools (Jenkins, Docker, Kubernetes, etc.).
- Familiar with ISMS (ISO/IEC 27001), SOC2, NIST Cybersecurity Framework, CIS Controls and Open Web Application Security Project.
What we offer:
- Fully remote position with flexible working hours.
- An inspiring team of colleagues spread all over the world.
- Pleasant, modern development and deployment workflows: ship early, ship often.
- High impact: lots of users, happy customers, high growth, and cutting edge R&D.
- Flat organization, direct interaction with customer teams.
We celebrate equality of opportunity and are committed to creating an inclusive environment for all team members. Join us as we transform cybersecurity, user privacy, and machine learning online!
Please note that all positions require pre-employment screening, including third-party verification of work history, education, and identity, as well as a final in-person interview and identity verification step, which will be conducted in your country of residence.
Originally posted on Himalayas