
Senior Security Response Engineer
Posted Sep 23

Posted Sep 23
This is a fully remote position, open to applicants in India.
• Actively monitor and respond to security alerts and incidents from SIEM, Cloud Security Platforms, EDR, and other technologies.
• Engage in detection engineering by refining existing alerts and creating new high-fidelity alerts based on patterns, threat intelligence, and previous investigations.
• Execute thorough security incident analyses to identify root causes and impacts, and propose mitigation strategies.
• Collaborate with Enterprise Security, Cloud Security, Product Security, and various internal teams on comprehensive incident response and cross-departmental security enhancement projects.
• Create and sustain incident response playbooks, processes, standards, procedures, and SOAR workflows.
• Take part in threat hunting initiatives to uncover advanced threats and vulnerabilities.
• Identify, document, and investigate threat intelligence findings and reports.
• Spearhead projects and strategic initiatives to bolster the company's overall security posture and resilience.
• Offer mentorship and support to junior analysts and engineers.
• Assist in the assessment and implementation of security tools and technologies.
• Keep abreast of emerging threats, vulnerabilities, and industry best practices.
• Seek innovative and forward-thinking solutions to security challenges.
• Operate within a 24/7 framework and adjust to varying shift schedules.
• Relevant Educational Degree (Information Security / Information Assurance / Cybersecurity) or Equivalent Cybersecurity Work Experience (3-5 Years).
• At least three years of technical experience in Large Enterprise Incident Response, Threat Hunting, or Cloud Security.
• Expertise in security technologies, including SIEM, EDR, and Cloud Security systems.
• Comprehensive understanding of cyber threats, attack methodologies, and incident response techniques.
• Capability to independently analyze and react to alerts and security incidents, including triage, root cause analysis, and response coordination.
• Advanced proficiency in Incident Response within Cloud Environments, particularly with AWS; Azure and GCP experience is a plus.
• Significant experience securing and responding to incidents within Kubernetes environments.
• Proficiency in analyzing and responding to threats across macOS, Windows, and Linux platforms.
• Outstanding problem-solving and communication skills.
• Ability to work efficiently both independently and collaboratively within a team.
• Supporting certifications such as GIAC (GCFA/GCIH/GCFR/GCLD), AWS Certified Security - Specialty, Google Professional Cloud Security Engineer, Microsoft SC-200, or CompTIA CASP/CySA+ are considered an additional qualification.
• Experience in Automation and/or Orchestration.
• Experience with Data Analytics utilizing Machine and/or Deep Learning.
• Knowledge of Threat Intelligence Methodologies.
• Experience in Cloud/Endpoint Digital Forensics.
• Willingness to work shifts including days, nights, on-call, weekends, and holidays, with potential extended hours during high-priority incidents.
• Generous PTO Policy.
• Unplugged Days promoting work-life balance.
• Flexible Work From Home Policy.
• Mental & Physical Wellness programs.
• Phone and Internet Reimbursement program.
• Access to Ongoing Career Development.
• Comprehensive Benefits and Competitive Packages.
• Paid Volunteer Time.
• Employee Resource Groups.
Campbell's
VALCE Talent Solutions
The Hello Team
Anduril Industries
Get handpicked remote jobs straight to your inbox weekly.