3 дня назад
EDR Engineer / Senior EDR Engineer (Cybersecurity)
78 500 - 117 500$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
EDR Engineer / Senior EDR Engineer (Cybersecurity): Administering enterprise EDR platforms and protecting endpoints and cloud workloads with an accent on detection engineering, telemetry health, and incident response. Focus on integrating EDR with SIEM/SOAR systems, automating large-scale security operations, conducting endpoint containment, and maintaining reliable multi-cloud protection.
Location: Remote - USA
Salary: $78,500–$117,500 per year
Company
is a cybersecurity and threat intelligence company serving more than 1,900 clients worldwide.
What you will do
- Deploy, configure, and maintain multiple enterprise EDR platforms, including CrowdStrike, SentinelOne, and Microsoft Defender for Endpoint.
- Monitor endpoint agent health, troubleshoot failures, and maintain established service levels.
- Develop detection policies and endpoint rules by translating threat intelligence into actionable indicators.
- Manage endpoint protection and telemetry across AWS, Azure, or GCP virtual machines and containerized workloads.
- Integrate EDR consoles with SIEM and SOAR platforms, and provide secondary support for Audit and DLP tools.
- Support incident response through endpoint containment, live response scripts, remote data collection, system restoration, and post-incident hardening.
Requirements
- At least 3 years of professional experience managing EDR solutions in an enterprise environment.
- Proficiency in PowerShell, Python, or Bash for automation and large-scale data querying.
- Strong knowledge of Windows, macOS, and Linux internals, including processes, configuration files, and logging mechanisms.
- Understanding of TCP/IP, DNS, and proxy configuration for agent-to-console communication.
- Technical familiarity with AWS, Azure, or GCP security services and tools such as Splunk, Tines, Palo Alto XSOAR, or Zscaler.
- Familiarity with digital forensics, threat hunting, complex security-stack troubleshooting, and relevant professional certifications such as GCFA or GCIA.
Culture & Benefits
- Remote work within the USA.
- Occasional after-hours availability is required for urgent incident containment and system restoration.
- Eligibility for incentive compensation and equity may apply.
- Benefits may include medical, dental, vision, life insurance, and a 401(k).
- Inclusive workplace representing more than 40 nationalities.
Hiring process
- Final-round candidates complete either a mandatory in-person interview or a scheduled video conference with the hiring manager.
- Interviews are conducted through HR representatives and not via instant messaging or text.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
5 дней назад
Manager, Security Operations (Hands On/Technical) (Cybersecurity)
108 000 - 148 000$
5 дней назад
Cybersecurity Engineer (US Federal)
130 200 - 195 400$
6 дней назад
Security Analyst (Cybersecurity)
50 - 65$
CrowdStrike
5 дней назад
Platform Professional Services, Sr. Analyst (Cybersecurity)
9 дней назад
Senior Cyber Defense Specialist (Cybersecurity)
130 000 - 176 000$
2 дня назад
Lead Security Engineer - Incident Response - Cloud Security
136 500 - 214 500$