MEDR Threat Engineer US work hours

4 weeks ago
Full-time
Mid Level
DevOps and Infrastructure
Proficio

Proficio

Proficio specializes in providing managed detection and response services, utilizing advanced technology and 24/7 security monitoring to protect medium to large organizations from cyber threats while ensuring compliance and bridging security gaps.

Professional Services
51-250
Founded 2010
$13M raised

Description

  • Act as the subject matter expert for initiatives that improve EDR visibility, detection, and prevention across Windows, macOS, and Linux.
  • Develop and enhance SOAR workflows and playbooks integrated with EDR systems for incident response and threat management.
  • Design and implement automated orchestration solutions to address complex security challenges.
  • Define and maintain the strategy and roadmap for Carbon Black, CrowdStrike, and SentinelOne detection capabilities.
  • Collaborate with SOC and Managed/Hosted SIEM teams to analyze threat patterns and attack trends.
  • Identify unmet customer needs, define use cases, and improve the functional capabilities of the Managed EDR offering.
  • Maintain and administer endpoint security management tools such as antivirus, DLP, and web/spam filtering solutions.
  • Assist customers with viruses, system vulnerabilities, and other security threats.
  • Improve detection and response efficiency for cyber incidents, alerts, and detections.
  • Escalate detections, incidents, and alerts to customers using ITSM/ITIL tools.

Requirements

  • 4+ years of professional IT experience.
  • 3+ years of experience deploying, configuring, or maintaining enterprise EDR solutions such as CrowdStrike Falcon, Microsoft Defender, or SentinelOne.
  • Additional experience with Cisco Secure Endpoint and Sophos is a plus.
  • 3+ years of experience in EDR and/or antivirus, with malware analysis, research, investigation, and response highly desirable.
  • 1+ years of systems administration experience, including troubleshooting, installation, performance monitoring, and security upgrades.
  • Knowledge of network security architecture concepts, including topology, protocols, components, and principles.
  • Knowledge of enterprise operating system configurations and management tools used for EDR deployment and administration.
  • Experience working in a SOC environment, including incident response, vulnerability scanning, threat hunting, network monitoring/log management, or compliance management, is preferred.
  • Experience with SIEM, threat intelligence platforms, or network monitoring tools is preferred.
  • Experience triaging security events in a SOC using data from enterprise security solutions.
  • Knowledge of intrusion detection methodologies for host- and network-based intrusions.
  • Ability to integrate cybersecurity data using enterprise or custom aggregation and analysis tools such as Splunk and Elastic.

Benefits

  • Structured training and a roadmap for success.
  • Meal, gym, internet, and other reimbursement programs.
  • Opportunity to work in a progressive organization.
  • Experience in one of the hottest IT industries today.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Staff Security Engineer

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is hiring a Security Engineer to secure its OT and ICS environments and help design foundational defenses for advanced defense technology and factory systems.

Go Linux Python Rust
2 hours, 17 minutes ago

Senior Purple Operations Engineer

Sporty Group 51-250 Media

Sporty is hiring a Purple Operations Engineer to improve the quality and reliability of security detections across its security monitoring environment and turn threat findings into actionable defensive controls.

Azure Bash Cloudflare Confluence GitHub GitLab JIRA Kubernetes Lucene PowerShell Python SIEM SOC
2 hours, 51 minutes ago

Senior Software Engineer | Python | GoLang | Containerization | Cloud

Ivanti 1K-5K Internet Software & Services

Ivanti is seeking a Senior Software Engineer on its U.S. Threat Operations team to build security automation and internal applications that strengthen the company’s cloud and endpoint security posture.

Angular AWS Azure Docker Go JavaScript Kubernetes Linux Microservices OAuth Python REST API SAML TypeScript
3 hours, 6 minutes ago

DevSecOps Engineer

Blueprint Technologies 251-1K Internet Software & Services

Blueprint is hiring a DevSecOps Engineer to support secure cloud infrastructure, deployment automation, and operational reliability for enterprise analytics platforms and applications.

Argo CD AWS CI/CD DevSecOps Docker GitHub Actions Jenkins Kubernetes OpenShift Terraform
3 hours, 6 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers