Security Engineer GIOC
Vultr is an active independent cloud-infrastructure company providing global compute, GPU, bare-metal, storage, Kubernetes, and serverless AI inference services.
Maintainer signals as of 9/25/2026
About Vultr
Vultr provides globally available cloud infrastructure for developers, enterprises, and AI innovators, including Cloud Compute, Cloud GPU, Bare Metal, Cloud Storage, managed Kubernetes, and serverless inference.
Skills
Candidate Availability
Required and preferred rules are kept separate and reflect the wording in the original posting.
About the Role
You will provide first-line security operations coverage from the GIOC. You will monitor SIEM, threat, identity, access, and endpoint signals; validate and triage alerts; execute Tier 1 investigation and containment runbooks; and preserve evidence. You will maintain chain-of-custody documentation, escalate unresolved alerts, support major incidents, communicate status, and improve detections, runbooks, and alert quality on a rotational 24x7 schedule.
Requirements
- 3–5 years of SOC, security operations, or IT operations experience
- Hands-on security monitoring and alert-triage experience
- Knowledge of authentication, access, attack types, logging, and endpoint or network telemetry
- Familiarity with SIEM, log analysis, and basic threat investigation
- Incident-management and severity-based triage knowledge
- Exposure to monitoring, observability, alerting, and ITSM tools
- Written English communication skills
- Ability to work rotational 24x7 shifts including nights, weekends, and holidays
Responsibilities
- Monitor SIEM detections, authentication and access anomalies, threat-intelligence, and endpoint alerts
- Acknowledge alerts and incidents within first-response SLA targets
- Validate detections, rule out false positives, review changes, and check the CMDB
- Classify alerts by severity and potential impact
- Route tickets to the correct tower or escalation path
- Execute Tier 1 investigation and containment actions
- Preserve evidence and document actions with timestamps
- Escalate unresolved alerts with complete handoffs
- Maintain shift logs, incident timelines, and chain-of-custody records
- Communicate status according to disclosure and confidentiality protocols
- Support major-incident bridges and confirm threats are contained or ruled out
- Improve runbooks, detection logic, knowledge-base articles, and alert tuning
Benefits
- Annual medical-insurance stipend
- 9 company-paid holidays
- Generous leave policy
- One month paid sabbatical every 5 years
- Annual anniversary bonus
- Professional-development reimbursement
- Internet reimbursement
- Fitness membership reimbursement
- Company-paid Wellable subscription
