948,494open jobs
57,447companies
152,910added this week
Browse all
Salary
≈ $67k – $152k per year (Estimated)
Location
In office (Prague)
Seniority
Senior · 6+ years exp

Confirmed on the employer's own hiring board on Sep 30, 2026. First seen by Alion on Sep 29, 2026. Everpure scores A on the Alion truth index.

Overview
Company
Impact
Profile match
Everpure is an enterprise data management and storage platform company - formerly known as Pure Storage - headquartered in Santa Clara, California. The company specializes in all-flash data storage, cloud-native storage management, and AI infrastructure designed to help organizations consolidate, protect, and scale their data operations across hybrid and multi-cloud environments.

Everpure (NYSE: P) has evolved from storage pioneer to data platform, closing fiscal 2026 with $3.7 billion in revenue, its first billion-dollar quarter, and accelerating growth into FY27. Our strategic agenda spans the companies defining the next era of technology - hyperscalers, AI labs, the AI hardware supply chain, data platform providers, and the broader AI ecosystem.

This type of work-work that changes the world-is what the tech industry was founded on. So, if you're ready to seize the endless opportunities and leave your mark, come join us.

THE ROLE

Everpure is seeking a hands-on Senior Security Engineer to drive security operations from our Prague, Czech Republic location. In this role, you will contribute to operational excellence across incident response, threat hunting, threat intelligence integration, detection engineering, and security automation, bringing real-time visibility and rapid response to our 24/7 global security operations environment.

This is a technical delivery and execution role, not a traditional monitoring position. You will work closely with detection engineers, threat intelligence analysts, incident response leadership, and our global Security Operations teams to build and refine detections, improve signal quality, execute threat hunts, automate workflows, and respond to complex security incidents with speed and precision.

Success in this role is measured not by alert volume, but by signal quality, real threat detection, incident containment speed, automation maturity, and the effectiveness of response workflows.

WHAT YOU'LL DO

  • Detection Engineering: Design, implement, and maintain detections in Splunk and related security platforms. Develop detection-as-code content using formats such as YAML/JSON, incorporate unit and regression testing, map coverage to MITRE ATT&CK, and contribute to Sigma/YARA-L coverage expansion.
  • Incident Response & Triage: Investigate suspicious activity and participate in incident triage, scoping, containment, eradication, recovery, and post-incident reviews. Use lessons from investigations to continuously improve detection and response processes.
  • Threat Hunting: Execute hypothesis-driven threat hunts using MITRE ATT&CK, the Diamond Model, kill chains, threat intelligence, behavioral baselines, and anomaly detection. Correlate signals across endpoint, cloud, identity, SaaS, network, and other security telemetry to identify real threats and operational blind spots.
  • Detection Quality: Continuously tune detections to improve true-positive rates and reduce alert fatigue. Identify which signals provide meaningful security value and refine detection logic based on investigation outcomes and changes in the threat landscape.
  • Threat Intelligence Integration: Operationalize cyber threat intelligence (CTI) by mapping adversary tools, techniques, TTPs, and indicators to the Everpure environment and translating relevant intelligence into detection and hunting strategies.
  • Automation & Orchestration: Build Python scripts, API integrations, enrichment workflows, and SOAR automation using platforms such as Tines, XSOAR, or equivalent. Develop workflows that reduce manual effort and accelerate investigation and containment while maintaining appropriate guardrails and logging.
  • Cloud & Container Security Monitoring: Monitor and investigate security signals across AWS, GCP, and Azure, including CloudTrail, GuardDuty, and cloud audit logs. Identify container and Kubernetes runtime anomalies and contribute to monitoring cloud-native attack surfaces.
  • Agentic & AI-Assisted Workflows: Evaluate and implement AI-assisted security workflows, including LLM-based investigation and autonomous triage capabilities. Assess AI-generated detection logic while maintaining appropriate human oversight and guardrails.
  • Playbooks & Documentation: Develop and refine detection playbooks, investigation procedures, automated security playbooks, and operational runbooks to improve consistency, investigation rigor, and response effectiveness.
  • Security Operations Development: Help build detection content addressing threats such as credential abuse, privilege escalation, lateral movement, cloud misuse, insider risk, sensitive data movement, and unauthorized access.
  • Detection-as-Code & Automation Infrastructure: Contribute to Git-backed detection repositories, CI/CD processes, testing frameworks, enrichment pipelines, remediation workflows, and response automation designed to reduce analyst toil and improve response times.
  • Global Collaboration: Partner with global Security Operations teams and contribute to a SOC culture focused on operational excellence, collaboration, knowledge sharing, and continuous improvement.
  • We are primarily an in-office environment and therefore, you will be expected to work from the Prague, Czech Republic office in compliance with Everpure's policies, unless you are on PTO, work travel, or other approved leave.

WHAT YOU BRING

  • 6+ years of experience in cybersecurity, incident response, detection engineering, security operations, or a related security discipline.
  • 3+ years of hands-on experience executing threat hunts, complex incident investigations, or detection engineering within a SOC or SIEM environment.
  • Deep hands-on experience with Splunk, including search, dashboards, alerts, correlation searches, saved searches, deployment server, and forwarder management.
  • Strong understanding of the complete incident response lifecycle, including triage, scoping, containment, eradication, recovery, and post-incident learning.
  • Strong knowledge of networking, operating systems, cloud environments, and security architecture across identity, endpoint, network, and cloud.
  • Experience developing Python scripts for data processing, API integrations, security tooling, and automation.
  • Strong understanding of threat intelligence and attacker frameworks, including MITRE ATT&CK, the Diamond Model, kill chains, and TTPs.
  • Hands-on experience with threat hunting methodologies, including hypothesis-driven hunting, behavioral baselines, and anomaly detection.
  • Excellent written and verbal communication skills in English.
  • Bachelor's degree in Computer Science, Information Security, Engineering, or a related technical field, or equivalent practical experience.

Strongly Preferred:

  • Detection-as-code experience, including Sigma, ECMA/JSON detection formats, Git-backed detection repositories, unit testing, MITRE ATT&CK coverage mapping, Splunk Security Content, or similar detection frameworks.
  • Hands-on experience with security automation and SOAR platforms such as Tines, XSOAR, Splunk SOAR, or equivalent, including API-driven enrichment and response workflows.
  • Cloud security operations experience across AWS, GCP, and/or Azure, including CloudTrail, GuardDuty, cloud audit logs, and cloud-native attack surfaces.
  • Container and Kubernetes security experience, including Falco, container runtime monitoring, image scanning, vulnerability management, or software supply chain security.
  • Experience evaluating or implementing agentic or AI-assisted security workflows, including LLM-assisted investigations, autonomous triage, or AI-generated detections, with an understanding of appropriate guardrails and human oversight.
  • Experience operationalizing threat intelligence, including PIRs, CTI-to-detection pipelines, and intelligence-driven threat hunting.
  • Experience with Python, Bash, Go, or similar languages and exposure to infrastructure-as-code technologies such as Terraform or CloudFormation.
  • Experience working within follow-the-sun security operations models and with security operations metrics such as MTTD, MTTA, and MTTC.
  • Experience with Attack Surface Management, including secret hygiene, identity attack surface, and Shadow AI.
  • Relevant certifications such as GCIH, GCIA, AWS Security Specialty, CKS, or equivalent.

WHAT YOU CAN EXPECT FROM US:

  • Innovation: We celebrate those who think critically, like a challenge, and aspire to be trailblazers.
  • Growth: We give you the space and support to grow along with us and to contribute to something meaningful. We have been named Fortune's Best Workplaces in Technology™, Fortune's Best Workplaces in the Bay Area™, and certified as a Great Place to Work®!
  • Team: We build each other up and set aside ego for the greater good.

And because we understand the value of bringing your full and best self to work, we offer a variety of perks to manage a healthy balance, including flexible time off, wellness resources, and company-sponsored team events. Check out http://benefits.everpuredata.com/ for more information.

ACCOMMODATIONS AND ACCESSIBILITY:

Candidates with disabilities may request accommodations for all aspects of our hiring process. For more on this, contact us at [email protected] if you’re invited to an interview.

OUR COMMITMENT TO A STRONG AND INCLUSIVE TEAM:

We’re forging a future where everyone finds their rightful place and where every voice matters. Where uniqueness isn’t just accepted but embraced. That’s why we are committed to fostering the growth and development of every person, cultivating a sense of community through our Employee Resource Groups and advocating for inclusive leadership.

Everpure is proud to be an equal opportunity employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or any other characteristic legally protected by the laws of the jurisdiction in which you are being considered for hire.

Join us and bring your best.

Bring your bold.

Pure and simple.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
948,494 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Prague
$112k – $179k per year • In office • TS/SCI • 15+ years exp • Bachelor's Degree • United States
Management
Microsoft Office
Apply
≈ $57k – $133k per year (Estimated) • In office • Full-Time • 6+ years exp • Bachelor's Degree • Singapore
JavaScript
Databases
MS SQL
DevOps
IAM
Windows
Cybersecurity
Okta
CyberArk
Zero Trust
Apply
≈ $74k – $168k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • Cairo
DevOps
Terraform
GCP
Azure DevOps
Azure
CI/CD
AWS
GitHub
IAM
Cybersecurity
Okta
CyberArk
Microsoft Entra ID
Active Directory
Apply
≈ $38k – $86k per year (Estimated) • In office • Full-Time • 2+ years exp • Bachelor's Degree • Karachi
DevOps
Azure
AWS
TCP/IP
VPN
Cybersecurity
ISO 27001
SIEM
Analytics
Azure Data Factory
Management
Agile
Apply
≈ $38k – $85k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • Karachi
JavaScript
Java
PHP
Node JS
Bash
AI/ML
Red Teaming
DevOps
Kali Linux
Linux
Windows
Unix
TCP/IP
DNS
Cybersecurity
Metasploit
Nmap
Nessus
OWASP ZAP
OWASP Top 10
CVSS
Active Directory
Apply
≈ $18k – $39k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Bengaluru
Python
Java
C#
C++
Groovy
Java
Apache Tomcat
C#
.NET
Databases
MySQL
DevOps
Splunk
Terraform
Puppet
Ansible
Chef
CloudFormation
Datadog
Docker Swarm
Prometheus
Azure
CI/CD
Jenkins
AWS
Docker
Kubernetes
Grafana
Configuration Management
Amazon EKS
Azure AKS
Cortex
Incident Management
Linux
Unix
TCP/IP
DNS
Apache HTTP Server
Cybersecurity
ISO 27001
FedRAMP
LDAP
Apply
≈ $17k – $45k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Bengaluru
Python
JavaScript
TypeScript
Python
FastAPI
Databases
Snowflake
Frontend
React.js
DevOps
GCP
Analytics
Alteryx
Apply
≈ $17k – $39k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Bengaluru
Python
PowerShell
C#
C++
C#
.NET
DevOps
Terraform
GitHub Actions
Azure
CI/CD
Jenkins
Docker
Bamboo
Analytics
ETL/ELT
SSIS
Azure Data Factory
Apply
≈ $23k – $55k per year (Estimated) • Hybrid • Full-Time • 6+ years exp • Bengaluru • Hyderabad
Python
C++
DevOps
CI/CD
Git
Linux
Management
Agile
Scrum
QA
Robot Framework
Apply
≈ $23k – $55k per year (Estimated) • Hybrid • Full-Time • 10+ years exp • Bengaluru • Hyderabad
Python
C++
DevOps
CI/CD
Git
Linux
Management
Agile
Scrum
QA
Robot Framework
Apply
$82k – $123k per year • In office • Bachelor's Degree • Lehi
Python
DevOps
Splunk
GCP
Azure
AWS
Linux
TCP/IP
Cybersecurity
Least Privilege
Apply
$115k – $173k per year • In office • Bachelor's Degree • Santa Clara
Python
DevOps
Splunk
GCP
Azure
AWS
Linux
TCP/IP
Cybersecurity
Least Privilege
Apply
≈ $24k – $53k per year (Estimated) • In office • 7+ years exp • Bengaluru
Python
PowerShell
Assembly
DevOps
Rest API
Splunk
GCP
Azure
CI/CD
AWS
TCP/IP
DNS
Cybersecurity
Crowdstrike
Prisma Cloud
Qualys Cloud Platform
Zscaler
ISO 27001
Gitleaks
TruffleHog
Wiz
SOC 2
Zero Trust
GitGuardian
Tines
SIEM
Apply
≈ $25k – $54k per year (Estimated) • In office • Bengaluru
Assembly
DevOps
Splunk
Azure
CI/CD
AWS
Cybersecurity
Threat Modeling
SIEM
Apply
≈ $32k – $75k per year (Estimated) • In office • 8+ years exp • Bengaluru
DevOps
Rest API
Splunk
GCP
Azure
CI/CD
AWS
Cybersecurity
Crowdstrike
Prisma Cloud
Qualys Cloud Platform
Zscaler
Gitleaks
TruffleHog
Wiz
Zero Trust
GitGuardian
Tines
SIEM
Apply
$54k – $82k per year (gross) • Remote (Czech Republic) • Full-Time • 5+ years exp • Prague
Python
AI/ML
LLM
Machine Learning
DevOps
CI/CD
AWS
Kubernetes
IAM
Cybersecurity
ISO 27001
OWASP Top 10
SOC 2
GDPR
OWASP ASVS
SLSA
Apply
≈ $39k – $112k per year (Estimated) • Hybrid • Prague
Chips/EDA
Altium Designer
LTspice
Apply
Hybrid • Prague
Cybersecurity
GDPR
Apply
In office • Full-Time • 2+ years exp • Bachelor's Degree • Prague
Apply
In office • Full-Time • 4+ years exp • Bachelor's Degree • Prague
Marketing
Instagram
Apply
See all jobs
This is one of many
948,494 more open roles from verified company boards, updated every day.