EDR Engineer / Senior EDR Engineer
Core
Technical administration, configuration, and maintenance of Endpoint Detection and Response (EDR) platforms to ensure telemetry integrity and detection logic effectiveness.
Role type
Senior EDR Security Engineer (Incident Response)
Builds
Enterprise EDR fleets, cloud workload protection policies, and incident response containment procedures.
Domain
Cybersecurity / Endpoint Security / Cloud Security
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
EDR platform administration, PowerShell/Python/Bash scripting, Windows/macOS/Linux internals, TCP/IP/DNS networking, Cloud security services (AWS/Azure/GCP), SIEM/SOAR integration, Digital forensics
Preferred skills
Threat hunting methodologies, Platform-specific EDR certifications (GCFA, GCIA)
Technologies
CrowdStrike, SentinelOne, Microsoft Defender for Endpoint, Splunk, Tines, Palo Alto XSOAR, Zscaler, AWS GuardDuty, Microsoft Defender for Cloud
Responsibilities
Oversee deployment and lifecycle management of enterprise EDR platforms; Develop and refine detection policies and indicators; Manage security deployments across multi-cloud environments; Maintain integrations between EDR consoles and SIEM/SOAR platforms; Assist IR analysts with endpoint containment and live response; Maintain technical documentation and SOPs
Seniority
Senior, hands-on IC
