Sr. Engineer, Cybersecurity - Threat Response
Core
Lead cybersecurity incident response, threat analysis, and mitigation to protect digital assets and maintain infrastructure integrity.
Role type
Senior Incident Response Engineer
Builds
Incident response playbooks, detection capabilities, and mitigation strategies for enterprise and telecommunications environments.
Domain
Cybersecurity, Telecommunications, Network Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Incident response lifecycle management, threat intelligence analysis, incident command coordination, security control validation, risk assessment, technical project management, network security design, security monitoring platform administration, digital forensics, security automation, scripting (Python, Perl, Shell), adversary TTP analysis, regulatory compliance documentation.
Preferred skills
Incident Commander experience, telecommunications infrastructure security, cloud security, SIEM/IDS/IPS/EDR expertise, SOAR platform development, MITRE ATT&CK and NIST frameworks, network protocols (TCP/IP, DNS, routing, switching), forensic tool proficiency (Axiom, EnCase, Cellebrite).
Technologies
SIEM, IDS/IPS, EDR, SOAR, Axiom, KAPE, EnCase, X-Ways, Cellebrite, Python, Perl, Shell, HTML, PHP, TCP/IP, DNS, Firewalls, SSL, NIST/SANS frameworks, MITRE ATT&CK.
Responsibilities
Analyze security alerts and threat intelligence to assess impact on systems and operations; lead incident response activities including detection, investigation, containment, eradication, and recovery; serve as Incident Commander coordinating multi-functional response efforts; conduct proactive investigations to identify emerging threats and validate controls; develop and implement response procedures and mitigation strategies; collaborate with network, cloud, and application teams to investigate security events; document findings, root cause analysis, and lessons learned; communicate incident status and remediation recommendations to leadership; provide technical guidance and mentoring to peers; participate in on-call rotation for SOC escalations.
Seniority
Senior, hands-on IC with leadership responsibilities