Related skills
siem edr๐ Description
- Proactively monitor for cyber threats and manage security alerts with analysis.
- Serve as incident commander during security events and coordinate cross-functional response.
- Execute incident response per the NIST Lifecycle to detect, contain, eradicate, recover, and learn.
- Maintain and improve the Cybersecurity Incident Response Plan, playbooks, and runbooks.
- Participate in 24x7 on-call rotations, guiding incidents and post-incident reviews.
- Design, develop, and maintain detections-as-code; deploy via CI/CD to SIEM/EDR.
๐ฏ Requirements
- 5+ years in security operations with IR, forensics, threat hunting.
- Experience as incident commander or IR lead.
- Knowledge of NIST IR Lifecycle and IR documentation.
- Proficiency with EDR, SIEM, and SOAR for monitoring.
- Detections-as-code with version control and CI/CD pipelines.
- Knowledge of MITRE ATTCK and mapping TTPs to detections.
๐ Benefits
- Premium private medical and dental coverage
- Generous time off with floating holidays
- Retirement savings with company contribution
- Equity in a publicly-traded company and ESPP
- Monthly remote-work stipend
- Annual development stipend
Meet JobCopilot: Your Personal AI Job Hunter
Automatically Apply to Engineering Jobs. Just set your
preferences and Job Copilot will do the rest โ finding, filtering, and applying while you focus on what matters.
Help us maintain the quality of jobs posted on Empllo!
Is this position not a remote job?
Let us know!