Build and manage a live-fire cyber range, design advanced data flows, automate infrastructure, and work across hybrid cloud environments. 3+ years of experience in security engineering or red/blue team roles. Proficiency in scripting and automation, RESTful API integrations, and experience with CrowdStrike Falcon and/or Microsoft Defender for Endpoint.
Key Highlights
Technical Skills Required
Benefits & Perks
Job Description
IMPORTANT NOTE: As part of our evaluation process, a video response is required. This helps us streamline interviews and assess communication and problem solving skills. Applications submitted without the video cannot be considered.
About AllShore Talent
AllShore Talent is a leading remote staffing company, offering top-tier professionals working 100% remote to businesses worldwide. Specializing in IT and software development, design, administrative support, digital marketing, and more. AllShore connects organizations with skilled talent to meet diverse business needs.
Client Description
Our client is an innovative cybersecurity company redefining how organizations defend themselves. Backed by top-tier investors, they’ve built an Autonomous Defense & Remediation platform powered by agentic AI, enabling companies to identify, contain, and neutralize threats in seconds. Their technology integrates seamlessly with existing security stacks and helps teams scale without additional headcount or reliance on MSPs.
About The Role
In this role, you will build and manage a live-fire cyber range, design advanced data flows across SIEM and security analytics platforms, automate infrastructure, and work across hybrid cloud environments.
Responsibilities:
- Build and manage Sevii’s live-fire cyber range, including CoLo clusters, security tooling, and breach/attack simulators
- Design data flows using Cribl Stream/Edge, Splunk, Chronicle (Google SecOps), Sentinel, and NG-SIEM
- Automate infrastructure and operations using Terraform, Python, CloudFormation
- Implement Zero Trust architectures (Tailscale, PrivateLink)
- Lead and manage integrations within complex hybrid cloud environments (AWS, Azure, GCP, Proxmox)
- 3+ years in security engineering or red/blue team roles supporting production environments
- 2+ years hands-on ownership of CrowdStrike Falcon and/or Microsoft Defender for Endpoint at enterprise scale
- Experience operating CrowdStrike NG-SIEM, Splunk (Enterprise/Cloud/ES/SOAR) or Google SecOps/Chronicle handling >100GB/day ingest
- Proficiency in scripting and automation (Python, PowerShell)
- Experience with RESTful API integrations
- Strong understanding of MITRE ATT&CK, NIST 800-53, CIS Controls
- Experience mapping detections to control frameworks
- Experience working in hybrid cloud environments (AWS, Azure, GCP, Proxmox)
- Advanced English