
Staff Cyber Defense Engineer
Posted 16 hours ago

Posted 16 hours ago
This is a fully remote position, open to applicants in United States.
• Design, develop, and sustain enterprise detection content throughout its complete lifecycle.
• Create and execute cyber defense capabilities, encompassing telemetry integrations, SOAR workflows, response playbooks, and agentic response patterns with human oversight.
• Perform proactive threat hunting utilizing threat intelligence, adversary behaviors, and security telemetry.
• Convert threat-hunting insights into enhanced detections and controls.
• Lead intricate security investigations, escalations, and emerging or unconventional risk scenarios.
• Propel containment, recovery, risk mitigation, root-cause analysis, and sustainable enhancements.
• Assist in red and purple team exercises, adversary emulation, detection validation, and simulations.
• Create scripts, API integrations, and automation to minimize manual efforts and enhance response consistency.
• Assess security telemetry, detection coverage, and cyber defense tools.
• Resolve visibility gaps and implement enhancements.
• Conduct cyber readiness activities, including technical exercises, playbook validation, escalation testing, and readiness evaluations.
• Collaborate across Information Security and IT to bolster defensive controls.
• Maintain technical documentation and engineering procedures.
• Guide junior engineers and analysts.
• Bachelor’s degree in a technical field and 8–12 years of relevant experience, or a Master’s degree with 5–7 years of equivalent industry experience, or a PhD with 2–4 years of experience.
• Proven success in independently managing cyber defense solutions and complex technical projects.
• Extensive experience with SIEM, SOAR, XDR/EDR, NDR, identity and email telemetry, cloud security technologies, and fundamental enterprise networking.
• Strong engineering background in detection logic, automation, telemetry pipelines, API integrations, or security tools.
• Proficiency in Python, PowerShell, SPL, KQL, SQL, or similar technologies.
• Deep understanding of adversary behaviors, threat hunting, incident response, digital forensics fundamentals, detection engineering, cyber threat intelligence, and MITRE ATT&CK.
• Experience implementing automation, AI, or machine-learning capabilities for detection, investigation, or automated response with suitable human oversight.
• Capability to independently lead complex investigations, collaborate across teams, mentor practitioners, and convey technical findings and risks.
• Relevant certifications such as CISSP, CCSP, GIAC, or equivalent security certifications may be applicable.
• Travel required: 0–5%.
• Medical, dental, and vision coverage.
• Wellness programs.
• Performance incentives.
• Opportunities for advancement.
• Flexible work arrangements.
• Unlimited paid time off.
• In-house training and development programs.
• Career mentorship.
• Opportunities to attend security conferences.
• Inclusive and diverse work environment.
• Home office workplace.
• Flex workplace option may be available for employees within commuting distance of a Dexcom site.
Ulteig
Ulteig
AECOM
Dexcom
Get handpicked remote jobs straight to your inbox weekly.