Senior Threat Response Engineer
Remote
Full Time Senior-level / Expert USD 134K - 136K
Red Canary
Get actionable threat intelligence across cloud, identity, and endpoint. Anywhere you run your business, we got you.
Who We AreRed Canary was founded to create a world where every organization can make its greatest impact without fear of cyber threats. We’re a cyber security company who protects, supports and empowers organizations to make better security decisions so they can focus on their mission without fear of cyber threats.
The combination of our market-defining technology and expertise prevents breaches every day and sets a new standard for partnership in the industry. We’re united in our commitment to customers and grounded in our values, which earned us a place on Built In’s 2025 Best Places to Work list. If our mission resonates with you, let’s talk.
What We Believe In- Do what’s right for the customer- Be kind and authentic- Deliver great quality- Be relentless
Challenges You Will SolveThe Threat Response Engineering team is the virtual boots on the ground and responsible for remediating threats detected in Active Remediation customer environments. Being a Threat Response Engineer puts you in the driver’s seat and provides the satisfying opportunity to mitigate threats and be the defender against the adversary. We are our customers' trusted stewards who quickly respond to and remediate their security threats allowing them to focus on their business objectives.
The Active Remediation Team has extensive experience conducting investigations on endpoints and servers utilizing a range of techniques such as analyzing telemetry data from Endpoint Detection and Response (EDR) platforms, malware analysis, and threat hunting. Active Remediation takes advantage of the myriad of tools available in the Red Canary platform to perform immediate actions when threats are detected. As Threat Response Engineers, one of our goals is to identify opportunities to increase our efficiency and ensure our customer’s environments are vulnerable for the least amount of time. We do this by finding new and creative ways to use existing tooling to benefit our customers while also helping build and develop new tools to add into our arsenal.
**this position will be supporting a 10pm to 8am MT shift, Sunday - Wednesday.
Benefit Highlights:- 100% Paid Premiums- Red Canary pays 100% of your medical, dental and vision premiums for you and your dependents. No waiting period.- Fertility Benefits- All new hires are eligible for benefits as of their first day.- Flexible Time Off- Take the vacation and sick time you need.- Health Reimbursement Account- Fully funded by Red Canary to offset out of pocket expenses such as deductibles, coinsurance and copays.- Flexible Work Environment- With 60% remote workforce, Canaries can work from virtually almost anywhere.- Paid Parental Leave- Full base pay to bond/care for your new child.
Why Red Canary?Red Canary is where people embody our mission to improve security outcomes for all. People work hard to maintain a culture that encourages authenticity in order to do your best work. Our people are driven and committed to finding the best security outcomes, delivering real and actionable answers, and being transparent along the way.
At Red Canary, we offer a very rich benefits program to our full-time team members so they can focus on their families and improving our customers’ security. For a full list of benefits, please review our Benefits Summary:https://resource.redcanary.com/rs/003-YRU-314/images/RedCanary_2025BenefitsSummary.pdf?version=0
Individuals seeking employment at Red Canary are considered without regard to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, gender identity, or sexual orientation.
The combination of our market-defining technology and expertise prevents breaches every day and sets a new standard for partnership in the industry. We’re united in our commitment to customers and grounded in our values, which earned us a place on Built In’s 2025 Best Places to Work list. If our mission resonates with you, let’s talk.
What We Believe In- Do what’s right for the customer- Be kind and authentic- Deliver great quality- Be relentless
Challenges You Will SolveThe Threat Response Engineering team is the virtual boots on the ground and responsible for remediating threats detected in Active Remediation customer environments. Being a Threat Response Engineer puts you in the driver’s seat and provides the satisfying opportunity to mitigate threats and be the defender against the adversary. We are our customers' trusted stewards who quickly respond to and remediate their security threats allowing them to focus on their business objectives.
The Active Remediation Team has extensive experience conducting investigations on endpoints and servers utilizing a range of techniques such as analyzing telemetry data from Endpoint Detection and Response (EDR) platforms, malware analysis, and threat hunting. Active Remediation takes advantage of the myriad of tools available in the Red Canary platform to perform immediate actions when threats are detected. As Threat Response Engineers, one of our goals is to identify opportunities to increase our efficiency and ensure our customer’s environments are vulnerable for the least amount of time. We do this by finding new and creative ways to use existing tooling to benefit our customers while also helping build and develop new tools to add into our arsenal.
What You'll Do
- Use Red Canary’s detection platform, detected threat information, and our customers’ security products to analyze, contain, and remediate threats in the customers’ environments
- Provide customers with comprehensive reports of the investigation and actions taken to ensure they understand what you did to clean up their environment and protect them from further damage
- Identify effective response strategies to further enhance Red Canary’s customers’ security posture
- Actively engage and collaborate with the Detection Engineering, Threat Hunting, and Intel teams to develop new ways of performing timely remediation of identified threats
- Be directly involved with and support cross-functional teams during customer security incidents
- Engage with customers and cross-functional teams during the setup of Active Remediation and response activity
- Be a mentor to peers and other members of the team while also leading team projects
- Support product improvement through collaboration with team leadership by providing insights and recommendations
- Support management through operational day to day leadership and assembling information related to the product offering
What You'll Bring
- Experience responding to security events/threats
- Very strong analytical and problem-solving skills
- A mastery of Endpoint Detection and Response (EDR) products including CarbonBlack, CrowdStrike, Microsoft Defender for Endpoint, SentinelOne, and Palo Alto Cortex
- Strong experience with or familiarity with Identity security products
- Deep understanding of the internal system functionality of Windows and MacOS operating systems and network communication
- Strong understanding of enterprise technology, network controls, and security operations
- Experience and enjoyment of working in a fast-paced, operational environment and successfully prioritize important tasks
- Professional and articulate with excellent written and verbal communication skills
- Deep interest in understanding and staying current with the latest adversary tactics and techniques
- The ability to support an on-call rotation
**this position will be supporting a 10pm to 8am MT shift, Sunday - Wednesday.
Benefit Highlights:- 100% Paid Premiums- Red Canary pays 100% of your medical, dental and vision premiums for you and your dependents. No waiting period.- Fertility Benefits- All new hires are eligible for benefits as of their first day.- Flexible Time Off- Take the vacation and sick time you need.- Health Reimbursement Account- Fully funded by Red Canary to offset out of pocket expenses such as deductibles, coinsurance and copays.- Flexible Work Environment- With 60% remote workforce, Canaries can work from virtually almost anywhere.- Paid Parental Leave- Full base pay to bond/care for your new child.
Why Red Canary?Red Canary is where people embody our mission to improve security outcomes for all. People work hard to maintain a culture that encourages authenticity in order to do your best work. Our people are driven and committed to finding the best security outcomes, delivering real and actionable answers, and being transparent along the way.
At Red Canary, we offer a very rich benefits program to our full-time team members so they can focus on their families and improving our customers’ security. For a full list of benefits, please review our Benefits Summary:https://resource.redcanary.com/rs/003-YRU-314/images/RedCanary_2025BenefitsSummary.pdf?version=0
Individuals seeking employment at Red Canary are considered without regard to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, gender identity, or sexual orientation.
Job stats:
1
1
0
Categories:
Security Engineering Jobs
Threat Intel Jobs
Tags: CrowdStrike EDR MacOS Malware Windows
Perks/benefits: Equity / stock options Fertility benefits Flex hours Flex vacation Health care Medical leave Parental leave Salary bonus Team events
Region:
Remote/Anywhere
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Information System Security Officer jobsInformation Systems Security Officer jobsSenior Cloud Security Engineer jobsInformation Security Officer jobsInformation Security Manager jobsSenior Cybersecurity Engineer jobsSystems Engineer jobsCyber Security Specialist jobsSenior Network Security Engineer jobsSystems Administrator jobsIT Security Engineer jobsSenior Information Security Analyst jobsChief Information Security Officer jobsIT Security Analyst jobsSecurity Consultant jobsSenior Cyber Security Engineer jobsSecurity Specialist jobsInformation Systems Security Engineer jobsInformation System Security Officer (ISSO) jobsThreat Intelligence Analyst jobsCyber Threat Intelligence Analyst jobsSenior Information Security Engineer jobsSenior Product Security Engineer jobsSecurity Operations Analyst jobsSenior Penetration Tester jobs
Top Secret jobsEncryption jobsSaaS jobsSplunk jobsGDPR jobsMalware jobsRMF jobsEDR jobsBash jobsSDLC jobsSQL jobsDoDD 8570 jobsForensics jobsThreat detection jobsIDS jobsIPS jobsFinance jobsIntrusion detection jobsCompTIA jobsDocker jobsActive Directory jobsITIL jobsTerraform jobsCRISC jobsGIAC jobs
OWASP jobsSOC 2 jobsClearance Required jobsSAP jobsUNIX jobsAnsible jobsSANS jobsIndustrial jobsCCSP jobsTCP/IP jobsVPN jobsHIPAA jobsPolygraph jobsOSCP jobsJira jobsBanking jobsJavaScript jobsIT infrastructure jobsData Analytics jobsDNS jobsMachine Learning jobsSOX jobsVMware jobsNIST 800-53 jobsSOAR jobs