Назад
Company hidden
3 дня назад

EDR Engineer / Senior EDR Engineer (Cybersecurity)

78 500 - 117 500$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
EDR Engineer / Senior EDR Engineer (Cybersecurity): Administering enterprise EDR platforms and protecting endpoints and cloud workloads with an accent on detection engineering, telemetry health, and incident response. Focus on integrating EDR with SIEM/SOAR systems, automating large-scale security operations, conducting endpoint containment, and maintaining reliable multi-cloud protection.

Location: Remote - USA

Salary: $78,500–$117,500 per year

Company

hirify.global is a cybersecurity and threat intelligence company serving more than 1,900 clients worldwide.

What you will do

  • Deploy, configure, and maintain multiple enterprise EDR platforms, including CrowdStrike, SentinelOne, and Microsoft Defender for Endpoint.
  • Monitor endpoint agent health, troubleshoot failures, and maintain established service levels.
  • Develop detection policies and endpoint rules by translating threat intelligence into actionable indicators.
  • Manage endpoint protection and telemetry across AWS, Azure, or GCP virtual machines and containerized workloads.
  • Integrate EDR consoles with SIEM and SOAR platforms, and provide secondary support for Audit and DLP tools.
  • Support incident response through endpoint containment, live response scripts, remote data collection, system restoration, and post-incident hardening.

Requirements

  • At least 3 years of professional experience managing EDR solutions in an enterprise environment.
  • Proficiency in PowerShell, Python, or Bash for automation and large-scale data querying.
  • Strong knowledge of Windows, macOS, and Linux internals, including processes, configuration files, and logging mechanisms.
  • Understanding of TCP/IP, DNS, and proxy configuration for agent-to-console communication.
  • Technical familiarity with AWS, Azure, or GCP security services and tools such as Splunk, Tines, Palo Alto XSOAR, or Zscaler.
  • Familiarity with digital forensics, threat hunting, complex security-stack troubleshooting, and relevant professional certifications such as GCFA or GCIA.

Culture & Benefits

  • Remote work within the USA.
  • Occasional after-hours availability is required for urgent incident containment and system restoration.
  • Eligibility for incentive compensation and equity may apply.
  • Benefits may include medical, dental, vision, life insurance, and a 401(k).
  • Inclusive workplace representing more than 40 nationalities.

Hiring process

  • Final-round candidates complete either a mandatory in-person interview or a scheduled video conference with the hiring manager.
  • Interviews are conducted through hirify.global HR representatives and not via instant messaging or text.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →