Unlock Full Resume Report

New offer - be the first one to apply!

September 20, 2026

Senior Security Operations (SecOps) Engineer

Senior • Hybrid

Prague, CZ, Czechia

Quick Facts

  • Senior SecOps role focused on threat detection, incident response, and security automation for web, edge, and cloud-native environments
  • Emphasis on bot/scraper defense, CDN/edge protections, SIEM detection engineering, and AI-assisted triage

Description

Lead detection and incident response for web and edge threats across Pangea properties, from triage through resolution and post-incident analysis. Own bot and scraper defenses by analyzing automated attack campaigns, tuning bot management policies, and countering evasion. Develop and refine SIEM detection rules and response playbooks, integrate container telemetry, and build AI-assisted detection/response automations under human control.

Responsibilities

  • Lead end-to-end incident response for web and edge threats
  • Analyze bot/scraper campaigns; tune bot management and continuously adapt to evasion
  • Tune and operate CDN/edge protections and automate recurring responses via edge compute and orchestration
  • Build and continuously refine SIEM detections, alerts, and response playbooks
  • Monitor and respond to container security issues; integrate CI/CD and Kubernetes telemetry into detection pipelines
  • Create AI-assisted automations that enrich alerts, summarize incidents, and speed triage with human oversight
  • Convert threat-hunt and incident findings into durable detections
  • Collaborate with Vulnerability Ops, DevOps, and Network engineers on container/app and edge/gateway threat signals
  • Support FISMA compliance with focus on Incident Response (IR) and Audit (AU) controls
  • Stay aware of threats targeting independent media and prioritize detection work accordingly

Requirements

  • Bachelor’s degree in information technology or equivalent education/experience
  • Relevant security experience with security analysis, design, architecture, and development; 4–6 years desirable
  • Hands-on operation of CDN/edge security stack (Akamai or Cloudflare), including WAF tuning, rate limiting, and incident response during active attacks
  • Strong understanding of bot and scraper behavior, including headless browsers/automation frameworks and proxy networks
  • Experience tuning bot management systems to separate malicious automation from legitimate traffic and counter evasion
  • Traffic fingerprinting and log analysis at scale (e.g., ELK/Kibana)
  • Edge compute experience for security automation at the CDN layer (e.g., EdgeWorkers)
  • Detection engineering experience with SIEM rule tuning, false-positive reduction, and MITRE ATT&CK mapping
  • Practical container security monitoring and response with knowledge of CI/CD pipelines and Kubernetes
  • Coding proficiency (Python, Go, or similar) for detection automation/enrichment/response tooling; familiarity with SOAR playbooks
  • Practical AI/LLM tooling experience to accelerate detection/response with validated human-in-the-loop actions
  • English proficiency; working knowledge of a broadcast region language desirable

Benefits

  • Protect mission-critical digital platforms supporting independent journalism and trustworthy information worldwide
  • Work at the forefront of web security, bot mitigation, cloud-native defense, and AI-assisted security operations with international teams
  • Fast-evolving threat landscape with ownership of detections, automations, and incident response playbooks

Similar jobs you might like