Greystar: Provides global property management and real estate investment services.
6+ YOE6+ years in security operations/detection engineering/incident response; hands-on forensics and IR; proficiency with Python, PowerShell, KQL; EDR and SIEM experience; Microsoft Entra ID and cloud identity knowledge; on-call participation.
Python, PowerShell, KQL, Microsoft Sentinel, Microsoft Logic Apps, Microsoft Entra ID, Microsoft Purview, Microsoft Defender, Microsoft AD Connect, CrowdStrike Falcon, Saviynt, Claude, Copilot, EDR, SIEM
Vanguard: Global investment management and financial services provider.
7+ YOEBachelor's degree preferred; 7+ years in security operations, detection engineering, threat hunting, or incident response; people leadership, SIEM and SOAR experience, MITRE ATT&CK knowledge, and program-building expertise.
Vanguard: Global investment management and financial services provider.
5+ YOERequires 4+ years programming, 5+ years cloud platforms and SIEM exposure, 4+ years automation and security operations experience, plus AI/GenAI/LLM exposure and security telemetry familiarity.
Python, Java, Shell, AWS, Microsoft Azure, SOAR, GitHub, SIEM, LLM
Toyota Tsusho Systems: Provides global IT solutions and cybersecurity for the Toyota Group.
6+ YOE6–9 years cybersecurity engineering experience with 3–4 years in security automation/SOC/SIEM/SOAR, strong Python/PowerShell/API/cloud automation skills, SIEM/SOAR experience (Microsoft Sentinel preferred), and solid threat detection and incident response knowledge.
Solera: Integrated software and data for vehicle lifecycle management.
8+ YOE8+ years experience with Angular, Rails, Postgres, C#, MSSQL, K8s/Kubernetes and AI/ML/LLMs in production; strong data processing, algorithms, and problem-solving skills; experience with screen scraping and handling bot detection/CAPTCHA.
EricssonNasdaq: ERIC: Manufactures telecommunications equipment and provides networking services.
4+ YOEUS citizen required. 4+ years SOC experience in triage, response and detection engineering. Proficient with EDR/ITDR/SIEM, cloud (AWS/GCP/Azure), CrowdStrike Falcon, detection engineering, strong integrity; office-based with one weekend/month.
DTCC: Provides post-trade infrastructure for the global financial services industry
3+ YOE3+ years threat hunting/detection/IR experience, Bachelor's or equivalent, hands-on log analysis across endpoint/identity/network/cloud, experience with KQL/SPL/EQL, scripting (Python/PowerShell/Bash), familiarity with MITRE ATT&CK and detection engineering.
Microsoft Defender for Endpoint, CrowdStrike Falcon, SentinelOne, Microsoft Sentinel, Splunk, Splunk SPL, Elastic, EQL, KQL, Lucene, Chronicle/Google SecOps, Microsoft Azure, AWS, Microsoft Entra ID, Microsoft Azure AD, Okta, CloudTrail, Kubernetes, Sigma, YARA, ATT&CK, SOAR, Python, PowerShell, Bash, jq, osquery, CyberChef, EDR/XDR, SIEM
WelltowerNew York Stock Exchange: WELL: Invests in and manages healthcare and senior housing real estate.
7+ YOE7+ years in cybersecurity/security operations with experience leading security analytics, SOC functions, MSSP management, detection engineering, telemetry strategy, incident response, and executive communication.
Sumo Logic, DataDog Cloud SIEM, Rapid7 SIEM, CrowdStrike, Microsoft Defender
EricssonNasdaq Stockholm: ERIC B: Global provider of telecommunications equipment and services.
4+ YOEUS citizenship required; 4+ years SOC triage/response/detection engineering experience; expertise with EDR/ITDR/SIEM and cloud platforms (AWS/GCP/Azure); strong analytical, communication, and crisis-management skills; work onsite 10:30–18:30 CT with one weekend/month.