JustMarkets

JustMarkets

JustMarkets is a leading online trading platform that offers a wide range of financial instruments including Forex, CFDs, Gold, and Oil. With low spreads, high leverage up to 1:3000, and fast execution, JustMarkets provides a next-level trading experie...

Capital Markets
1-10

Description

  • Own Cyber Defense execution across SOC, detection engineering, incident response, and exposure remediation.
  • Lead alert triage quality, escalation standards, incident command, and response coordination.
  • Prioritize critical vulnerabilities and exposures based on asset criticality, exploitability, and business impact.
  • Manage dashboards, runbooks, remediation follow-up, and operational metrics for Cyber Defense.
  • Coordinate with IT, Platform, Product, GRC, Legal, and business owners during incidents and remediation.
  • Build, onboard, mentor, and retain the Cyber Defense team.
  • Drive continuous improvement of detection coverage, response playbooks, and security controls using lessons learned and threat intelligence.
  • Report Cyber Defense performance, incidents, and risk posture to security leadership and stakeholders.

Requirements

  • 10+ years of experience in Information Security.
  • 3+ years in a security management or team lead role with direct people management experience.
  • Hands-on experience managing SOC operations, leading incident command, and improving MTTD/MTTR.
  • Ability to design, validate, and maintain detection logic across SIEM, EDR, and cloud platforms.
  • Deep understanding of runbook development and false-positive reduction.
  • Knowledge of top attack scenarios such as ATO, credential theft, privilege escalation, and data exfiltration.
  • Ability to map detections to threat models like MITRE ATT&CK.
  • Experience prioritizing vulnerabilities using CVSS and asset criticality to reduce exposure aging.
  • Hands-on experience with at least one enterprise SIEM (Splunk, Microsoft Sentinel, Chronicle, or Elastic) and SOAR tooling.
  • Understanding of cloud-native security controls and monitoring in AWS, GCP, or Azure.
  • Understanding of IAM, PAM, SSO, and identity-related attack vectors relevant to detection and response.
  • Ability to define, track, and communicate security KPIs and operational dashboards to technical and executive audiences.
  • English upper-intermediate or higher.
  • Ukrainian fluent.
  • Experience in fintech, e-commerce, or other high-risk industries with complex threat landscapes (preferred).
  • Hands-on background as a SOC analyst, incident responder, or detection engineer prior to management (preferred).
  • Experience building a SOC or Cyber Defense function from scratch or significantly maturing one (preferred).
  • Familiarity with threat intelligence platforms and threat-informed defense methodologies (preferred).
  • Relevant certifications such as CISSP, CISM, or GIAC (GSOM, GCED, GCIH) or equivalent (preferred).

Benefits

  • 20 paid vacation days per year.
  • 10 paid sick leave days per year.
  • Public holidays per the company-approved holiday list.
  • Medical budget.
  • Opportunity to work remotely.
  • Professional education budget.
  • Language learning budget.
  • Wellness budget for gym membership, sports gear, and related expenses.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Endpoint Consultant

Planet Technologies 251-1K Internet Software & Services

Planet Technologies is hiring a Senior Endpoint Consultant to lead Microsoft endpoint and cloud implementation projects for public sector customers, from assessment through delivery and migration.

Azure
1 hour, 42 minutes ago

Microsoft Security Engineer- Remote (Anywhere in the U.S.)

GuidePoint Security 251-1K Internet Software & Services

GuidePoint Security is seeking a Microsoft Cloud Security Engineer to deliver hands-on identity, data protection, and endpoint security engagements for clients across small businesses and large enterprises.

Active Directory Azure Network Security OpenID Connect Power BI PowerShell SAML SIEM
1 day, 1 hour ago

Cloud Security Software Engineer

First Due 51-250 Internet Software & Services

First Due is hiring a Cloud Security Software Engineer to build autonomous AI tools and agent-driven workflows for its cloud security plane supporting fire and EMS software operations.

Ansible AWS Go OWASP Python SIEM SOC Terraform TypeScript
1 day, 1 hour ago

Lead Traveling Security Technician

Unlimited Technology 51-250 Professional Services

Unlimited Technology is hiring a Traveling Security Technician for UT Government to install, service, test, and inspect access control and IP camera systems for customers across the U.S.

2 days, 1 hour ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers