
Threat Detection and Response Engineer
Posted Aug 18

Posted Aug 18
This is a fully remote position, open to applicants in California, +2 more states.
• Utilize extensive knowledge of Incident Response concepts, principles, and technical capabilities.
• Collaborate with Information Security and business partners to ensure efficient, accurate, and swift responses.
• Serve as the escalation point within the Incident Response team to manage all cyber incidents effectively.
• Identify new detection opportunities, develop playbooks, and assist in implementing new technologies to combat evolving threats.
• Stay informed about the current threat landscape and analyze threat intelligence to minimize potential risks.
• Report on the overall health of the SOC using metrics, OKRs, and risk indicators to leadership.
• Provide Incident Response support to contain and eliminate suspected security threats.
• Conduct incident triage, response, and forensic investigations across endpoints and cloud environments.
• Perform technical examinations of computer-based evidence, including logs, packet captures, SIEM and IDS events, disk forensics, and malware analysis.
• Document incidents from initial detection to final resolution and present findings accordingly.
• Investigate, document, and report on cybersecurity issues as they arise.
• Develop and continuously enhance standard processes, operating procedures, and incident response playbooks.
• A minimum of 5+ years of relevant experience in security, ideally within a large enterprise setting.
• Bachelor's degree in Computer Science, Information Security, a related field, or equivalent professional experience.
• Over 5 years of experience in cyber incident response or a related cyber domain.
• Familiarity with security principles and defense-in-depth strategies.
• Proficient in SOAR (Tines), EDR, NDR, and SIEM (Chronicle) technologies.
• Experience with various Cloud Service Providers, including AWS and GCP.
• Exceptional written communication skills for documenting, communicating, and reporting security incidents and the status of cybersecurity controls to product and business leaders.
• Availability to perform on-call duties as needed.
• Flexible Time Off Policy and Company-wide Holidays (including a spring and winter break).
• Health Insurance options including Medical, Dental, and Vision coverage.
• Support for working from home.
• Home office setup allowance.
• Monthly stipend for cell phone and internet expenses.
• Care benefits available.
• Monthly wellness allowance.
• Annual childcare allowance.
• Lifetime benefits for family planning, including adoption or fertility expenses.
• Retirement options; 401k offerings for Traditional and Roth accounts in the US (with employer matching up to 4% of base salary) and pension plans internationally.
• Monthly allowance for testing the app.
• Parental Leave policy.
• 16 weeks of paid parental leave plus one month of gradual return to work.
Alten México
Globaldev Group
Shermco Industries
Get handpicked remote jobs straight to your inbox weekly.