Remotery

Cybersecurity Engineer II – SIEM, EDR

Posted Aug 14

This is a fully remote position, open to applicants in United States.

📋 Description

• Oversee the daily operational integrity of EDR and SIEM systems.

• Analyze standard activity baselines and reduce alerting noise.

• Refine security use cases to ensure high-fidelity alerts.

• Create tailored security use cases, log correlations, and detection rules.

• Utilize event data to enhance current security use cases and models.

• Design and set up dashboards for monitoring event trends and alerts.

• Configure reports for essential metrics and trends.

• Work in conjunction with external teams to integrate new SIEM data sources.

• Confirm the extraction, parsing, and formatting of event data.

• Develop custom field extractions utilizing RegEx.

• Diagnose and address issues during service interruptions.

• Set up antivirus exceptions and blocks.

• Keep service documentation updated.

• Configure and incorporate cybersecurity systems to mitigate risks.

• Address escalated incidents.

• Design, establish, configure, maintain, and monitor cybersecurity threat defense capabilities as well as user access management.

• Manage integration with managed security service providers.

• Investigate incidents and propose corrective measures.


⛳️ Requirements

• Minimum of 2 years of experience in cybersecurity.

• At least 1 year of experience specifically with SIEM or EDR platforms like Cortex XSIAM, Splunk, or CrowdStrike.

• Familiarity with networking infrastructure concepts, technologies, and protocols.

• Capability to identify gaps in logging, monitoring, and endpoint protection while recommending solutions.

• Ability to connect with both technical and non-technical stakeholders.

• Excellent interpersonal, teamwork, and communication skills.

• Security+ certification along with SIEM vendor certification, and EDR vendor certification, or equivalent credentials (preferred).

• Experience in Incident Response / SOC (preferred).

• Familiarity with cloud-based platforms such as Azure or GCP (preferred).

• Experience with Linux/Unix administration (preferred).

• Proficient in writing formal reports (preferred).

• Must be at least 18 years old.

• Must have legal authorization to work in the United States.

• Bachelor's degree or equivalent in a related field, or equivalent acquired knowledge, skills, and abilities.

• Capability to troubleshoot and resolve cybersecurity incidents.

• Ability to design, configure, maintain, monitor, and integrate cybersecurity systems.


🏝️ Benefits

• Remote/Virtual work arrangement.

• No travel required.

People also viewed

ASG Technologies6 hours ago

IT Security Director

US flagCalifornia OnlyFull-timeCybersecurity / Security Engineer$165k – $190k/year
ApplyView job
CrowdStrike6 hours ago

Associate Security Engineer

US flagTexas OnlyFull-timeCybersecurity / Security Engineer$70k – $95k/year
ApplyView job
Culmen International7 hours ago

Border Security Trainer

US flagUnited States OnlyFreelanceCybersecurity / Security Engineer
ApplyView job
Threatscape7 hours ago

Security Consultant – Purview

GB flagUnited Kingdom, +1 more countryFull-timeCybersecurity / Security Engineer£35k – £47k/year
ApplyView job
Unity8 hours ago

Staff Security Architect

US flagTexas OnlyFull-timeCybersecurity / Security Engineer$160.3k – $305.4k/year
ApplyView job
Truist10 hours ago

Cybersecurity Group Manager

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers