Threat Response Engineer (TRE) - Early Shift (6am-2pm MT)
Core
Responding to confirmed compromises on customer endpoints subscribed to the Active Remediation MDR service by investigating threats, analyzing, containing, and remediating them.
Role type
Threat Response Engineer
Builds
Customer endpoint security posture and remediation reports
Domain
Cybersecurity / Cloud Security
Deliverable
client delivery
Required skills
Endpoint Detection and Response (EDR) product experience, Windows and MacOS internal system functionality, security event response, AI tool integration
Preferred skills
Security operations and network controls experience, AI-augmented development platform utilization, adversary tactics knowledge
Technologies
CrowdStrike, Microsoft Defender for Endpoint, SentinelOne, CarbonBlack
Responsibilities
Perform investigations into detected threats and leverage security products to analyze, contain, and remediate threats; Provide customers with thorough reports of actions taken; Identify and implement effective response strategies; Collaborate with Detection Engineering, Threat Hunting, Intel, and Product teams; Prioritize and execute tasks in a fast-paced operational environment with on-call rotation