Security Engineer
Core
Hands-on Security Engineer operating the gShield security stack, leading Tier 3 incident response, and executing remediation across client IT infrastructure.
Role type
Senior IC Security Engineer (Incident Response & Tool Operations)
Builds
gShield security services for managed client environments
Domain
Cybersecurity, Managed Security Services, IT Infrastructure
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure
Required skills
Incident response leadership, log analysis, IOC hunting, endpoint isolation, credential management, SIEM operations, vulnerability assessment, identity security, cloud security, network troubleshooting, security hardening, remediation execution, SOP creation
Preferred skills
Experience with Huntress, Microsoft Defender for Endpoint, Cyrisma, DNSFilter, Active Directory, Microsoft Entra ID, Intune, ThreatLocker, RMM scripting
Technologies
Huntress, Microsoft Defender for Endpoint, Cyrisma, DNSFilter, SIEM, Active Directory, Microsoft Entra ID, Intune, ThreatLocker, RMM
Responsibilities
Lead technical analysis and containment during active security incidents; operate daily within the gShield toolstack for alert triage and investigation; troubleshoot complex issues spanning identity, endpoints, servers, and cloud; execute security hardening and remediation for clients; document incident timelines and technical findings; support internal security posture improvements.
Seniority
Mid-Senior, hands-on IC
