Threat Response Engineer

Incident Response AnalystSecurity AnalystPart TimeRemote

Location

United States

Posted

67 days ago

Salary

$101.5K - $125K / year

Endpoint Detection AND ResponseEDRCrowd StrikeMicrosoft DefenderSentinel OnePalo Alto CortexWindowsMac OSIdentity SecurityThreat AnalysisThreat HuntingBehavioral AnalysisSecurity Incident ResponseSecurity RemediationTechnical Documentation

Job Description

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more.

Role Description

The Red Canary Threat Response Engineering team is on the front lines, acting as the virtual boots on the ground for our customers to respond to and remediate threats. You will drive investigations using Endpoint Detection and Response (EDR) and Identity telemetry to perform behavioral analysis and threat hunting while leveraging the Red Canary platform to take immediate action. We aim to maximize efficiency and minimize customer vulnerability by finding innovative uses for existing tools and developing new ones. Our team provides customers with the confidence that any compromises will be fully remediated, allowing them to remain focused on their core business operations.

We are looking for an experienced Threat Response Engineer to join our Active Remediation team. This is a remote role, reporting to the Senior Manager, Threat Response Engineering. You will perform investigations into detected threats, using customer security products to analyze, contain, and remediate issues while providing thorough reports. This role requires the ability to work a Wednesday – Saturday 10pm – 8am Mountain Time shift and participate in a 24x7 on-call rotation to ensure our customers remain protected.

Qualifications

  • Strong analytical and problem-solving skills demonstrated through direct experience responding to security events and threats
  • Experience with Endpoint Detection and Response (EDR) products such as CrowdStrike, Microsoft Defender for Endpoint, SentinelOne, or Palo Alto Cortex
  • Foundational understanding of internal system functionality for Windows and MacOS operating systems
  • Experience with or professional familiarity with Identity security products
  • Professional and articulate communication skills with the ability to provide clear technical documentation

Requirements

  • Perform investigations into detected threats and leverage security products to analyze, contain, and remediate threats in customer environments
  • Provide customers with thorough reports of actions taken to ensure clarity on environment cleanup and protection strategies
  • Identify and implement effective response strategies to further enhance the security posture of the customer base
  • Collaborate with Detection Engineering, Threat Hunting, Intel, and Product teams to develop innovative methods for timely threat remediation
  • Prioritize and execute tasks effectively in a fast-paced operational environment while maintaining a 24x7 on-call rotation

Benefits

  • Various health plans
  • Time off plans for vacation and sick time
  • Parental leave options
  • Retirement options
  • Education reimbursement
  • In-office perks, and more!

Job Requirements

  • Strong analytical and problem-solving skills demonstrated through direct experience responding to security events and threats
  • Experience with Endpoint Detection and Response (EDR) products such as CrowdStrike, Microsoft Defender for Endpoint, SentinelOne, or Palo Alto Cortex
  • Foundational understanding of internal system functionality for Windows and MacOS operating systems
  • Experience with or professional familiarity with Identity security products
  • Professional and articulate communication skills with the ability to provide clear technical documentation
  • Perform investigations into detected threats and leverage security products to analyze, contain, and remediate threats in customer environments
  • Provide customers with thorough reports of actions taken to ensure clarity on environment cleanup and protection strategies
  • Identify and implement effective response strategies to further enhance the security posture of the customer base
  • Collaborate with Detection Engineering, Threat Hunting, Intel, and Product teams to develop innovative methods for timely threat remediation
  • Prioritize and execute tasks effectively in a fast-paced operational environment while maintaining a 24x7 on-call rotation

Benefits

  • Various health plans
  • Time off plans for vacation and sick time
  • Parental leave options
  • Retirement options
  • Education reimbursement
  • In-office perks, and more!

Related Job Pages