Threat Detection and Response Engineer
New
W
WhatnotLive commerce marketplace
Anchored in hubs across the US, UK, Ireland, Poland, Germany, and AustraliaFull-TimeSenior
Salary$175K - $260K
Apply NowOpens the employer's application page
Job Details
- Experience
- 5+ years
- Required Skills
- AWSGCP
Requirements
- Bachelor’s degree in Computer Science, Information Security, a related field, or equivalent work experience.
- 5+ years of experience in cyber incident response, or a similar cyber field.
- Strong understanding of security principles and defense-in-depth techniques.
- Experience with SOAR technologies (specifically Tines).
- Experience with EDR and NDR technologies.
- Experience with SIEM platforms (specifically Chronicle).
- Experience with multiple Cloud Service Providers such as AWS and GCP.
- Excellent written communication skills with the ability to document and report on security incidents.
- Must be able to perform on-call duties.
Responsibilities
- Collaborate across Information Security and business partners to ensure effective, precise, and rapid response.
- Act as the point of escalation from within the Incident Response team to drive all cyber incidents.
- Identify new detection opportunities, create playbooks, and support new technology implementations to defend against evolving threats.
- Analyze threat intelligence with the aim to mitigate potential risks.
- Report the overall health of the SOC via metrics, OKRs, and risk indicators to leadership.
- Provide Incident Response (IR) support when analysis suspects security incidents to help contain and eradicate threats.
- Perform incident triage, incident response, and forensic investigations across endpoints and cloud environments.
- Conduct technical examinations of computer-based evidence including logs, packet captures, SIEM & IDS events, disk forensics, and malware analysis.
- Document incidents from initial detection through final resolution and present findings.
View Full Description & ApplyYou'll be redirected to the employer's site