Threat Detection & Response Engineer III
Tasks
- Administer and optimize EDR and SIEM platforms
- Build automation and orchestration workflows
- Contain, eradicate, and recover from incidents
- Create incident response playbooks and SOPs
- Design security detections for corporate and cloud environments
- Develop incident response plans
- Develop threat models
- Document incident findings and lessons learned
- Hunt for threats using threat intelligence
- Integrate log sources for visibility and correlation
- Monitor triage and respond to security alerts
- Perform incident investigation and analysis
- Tune detection rules and improve threat coverage
Perks/Benefits
- Collaborative culture
- On-call rotation
- Paid time off
- Parental leave
- Professional development and certification support
Skills/Tech-stack
Alert Tuning | Automation | Bash | Cyber Kill Chain | Detection engineering | EDR | Elastic | Endpoint Security | Incident Response | Kill Chain | Linux Security | Log Analysis | MITRE ATT&CK | MacOS security | Orchestration | Powershell | Python | SIEM | Security Tool Integration | Security operations | Splunk | Threat hunting | Threat modeling | Tool integration | Windows Security
Education
N/A
Regions
Countries
States
Related jobs
-
Senior-level Full TimeColumbus, GA, United States4h ago
-
Senior SIEM Engineer USD 130K-145KAlert Tuning | Automation | Compliance reporting | Correlation rules | DashboardingCleared positionSenior-level Full TimeWashington, DC, United States4h ago
-
Senior Information Systems Security Officer USD 130K-185K800-53 | 800-53A | Assessment and Authorization | Continuous Monitoring | Control EvidenceTop Secret clearance with SCI eligibility | U.S. CitizenshipSenior-level Full TimeWashington, DC, United States4h ago
-
Senior PKI Engineer USD 124K-179KActive Directory Certificate Services | Ansible | Bash | Certificate Authority | Certificate Lifecycle ManagementHybrid onsite/remote work | Secret clearance required | TS clearance requiredSenior-level Full TimeFAIRFAX, VA, United States4h ago
-
Ansible | Authentication | CentOS | Enterprise Linux | JBossSenior-level Full TimeAnnapolis Junction, MD7h ago
-
Adversarial Machine Learning | Anomaly Detection | Cloud Security | Machine Learning | PythonSecurity clearance premiumsMid-level Full TimeNaples, United States7h ago
-
Senior Cloud Software Engineer USD 135K-195KAPI Design | AWS | Alerting | Artifact governance | AzureSecurity clearance supportSenior-level Full TimeDayton, OH7h ago
-
Senior-level Full TimeDayton, OH7h ago
-
RRC - Database Administrator IV USD 96KAPI Integration | Autosys | Bash | Batch scheduling | CI/CDCareer development | Flexible work schedules | Health insurance | Paid time off | Retirement plan 401kMid-level Full TimeTexas-Austin8h ago
-
Senior-level Full TimeUSA-FL-Tampa, USA-FL-Fort Walton Beach8h ago
-
Mid-level Full TimeHuntsville, Alabama, United States8h ago
-
Archer | Automation | Correlation rules | CrowdStrike | Event CorrelationSenior-level Full TimeArlington/Rosslyn, Virginia, United States8h ago
-
Lead Security Engineer II, Splunk Security Content Visualization Expert (Secret Clearance) USD 102K-188KAlerts | Correlation | Dashboards | Data models | Indicators of compromiseSenior-level Full TimeArlington/Rosslyn, Virginia, United States8h ago
-
Security Engineer III, Cyber Threat Hunter USD 107K-188KAmazon Web Services | Analytic Rules | Cloud Security | Cloud security monitoring | Detection and ResponseSenior-level Full TimeArlington/Rosslyn, Virginia, United States; Baltimore, Maryland, …8h ago
-
Software Engineer, AI-Empowered Security USD 147K-211KAI Security | API Design | Automation | Backend Development | Cloud ComputingBenefits | Bonus | Equity | Health insurance | Paid time offMid-level Full TimeSunnyvale, CA, USA; Kirkland, WA, USA10h ago
-
800-53 | Alerting | Audit Logging | Audit tooling | Boundary ProtectionSenior-level Full TimeNew York, NY, USA; Cambridge, MA, …10h ago
-
AI/ML | AI/ML Infrastructure | Agent Orchestration | Automated Debugging | C++Senior-level Full TimeSunnyvale, CA, USA; Kirkland, WA, USA10h ago
-
AWS | Automation | Azure | Cloud Security | Cortex XSOAR401k program | Car discounts | Cruise discounts | Dental benefits | Employee assistance programSenior-level Full TimeFort Worth, TX, US13h ago
-
Network Security and Firewall Engineer - City USD 86K-132KACL | Access Control | Access Control Lists | Detection and prevention systems | Event managementSenior-level Full TimeOklahoma City, OK, United States16h ago
-
Security Engineer, Detection and Response USD 230K-260KAWS | Adversary Emulation | Azure | Blue Team | Cloud SecurityEquity | Flexible work options | Health benefits | On-call rotationSenior-level Full TimeSan Francisco, California17h ago
-
Application Security Engineer USD 210K-300KAPI Security Top 10 | AWS | Advanced Security | Application Security | AuthenticationSenior-level Full TimeMiami, FL19h ago
-
Application Security Engineer USD 195K-244KAI Agents | API Security Top 10 | AWS IAM | Advanced Security | Application SecuritySenior-level Full TimeSeattle, WA19h ago
-
BEV | Bayesian Methods | CUDA | Machine Learning | Metrics OptimizationSenior-level Full TimeFoster City, CA20h ago
-
Principal Software Engineer, Cryptography USD 254K-336KAppArmor | Architecture Review | C++ | Certificate Systems | Cryptographic agilitySenior-level Full TimeBoston, Massachusetts, United States; Costa Mesa, …20h ago
-
DevOps Engineer USD 129K-171KAir-gapped | Air-gapped networks | Ansible | Argo CD | Automated testingMid-level Full TimeReston, Virginia, United States20h ago