Hybrid Senior Security Incident Response Engineer

Posted 4 days ago

Apply now

About the role

  • Lead incident response efforts for a global fintech focusing on Microsoft E5 security capabilities and DLP. Drive detection, containment, and proactive security measures for the enterprise.

Responsibilities

  • The Senior Incident Response Engineer will lead advanced security incident response efforts
  • focusing on Microsoft E5 security capabilities and Data Loss Prevention (DLP)
  • Detect, analyze, and respond to security incidents detected by EDR, SIEM, and Cloud Security tooling as well as MDR service providers
  • Lead post-incident reviews and drive process improvements
  • Perform advanced threat hunting using Microsoft Defender and related tools
  • Integrate threat intelligence and adapt detection strategies based on real world threats observed by the organization
  • Conduct forensic data acquisition, log analysis, and root cause determination for endpoint incidents
  • Develop and maintain incident response playbooks and runbooks across the security operations toolset
  • Collaborate with analysts and other IR engineers to identify opportunities for improvement and tuning of detection rules
  • Collaborate with IT, legal, HR, communications, and other business units

Requirements

  • Minimum 5 years of progressive information security experience
  • At least 4 years focused on incident response, including investigations across different security domains (endpoint, application, DLP, and more)
  • Proficiency with Microsoft 365 Security Suite as well as other security tooling such as SentinelOne, Google SecOps, Abnormal Security, and others
  • Strong experience with incident response, digital forensics, and threat hunting across a hybrid environment
  • Knowledge of endpoint operating systems (Windows, macOS, and Linux)
  • Experience with cloud environments such as Azure, AWS, and GCP
  • Experience with scripting (PowerShell, Python, or Bash) for automation and log parsing desired
  • Relevant certifications (one or more preferred): GCFA, GCIH, CHFI, CySA+, MS SC-200, MS SC-400 or similar

Benefits

  • Comprehensive medical insurance, dental insurance, and vision insurance
  • life and disability insurance
  • fertility benefits
  • wellness resources
  • paid sick time
  • Generous paid time off and holidays
  • Employee Assistance Program (EAP)
  • complimentary Calm app subscription
  • Immediate vesting in a 401(k) plan
  • Health Savings Account (HSA) and Flexible Spending Account (FSA) options
  • commuter benefits
  • employee discount programs
  • Paid maternity leave and paid paternity leave (including for adoptive parents)
  • legal plan options
  • pet insurance coverage

Job title

Senior Security Incident Response Engineer

Job type

Experience level

Senior

Salary

Not specified

Degree requirement

Bachelor's Degree

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job