CyberSecurity Engineer, Identity Protection – Tier 3

🕒 Maio 5

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $110.000 - $130.000 / ano

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

Candidatar-se
Encontrar Vagas Remotas Similares

📊 Verifique sua pontuação de currículo para esta vaga

Melhore suas chances de conseguir uma entrevista verificando sua pontuação de currículo antes de se candidatar.

Logo of BLACKCLOAK

BLACKCLOAK

11 - 50 funcionários

🔒 Cibersegurança

☁️ SaaS

💰 $11.000.000 Series A em 2021-07

Cybersecurity • SaaS

BLACKCLOAK é uma plataforma de cibersegurança e privacidade de concierge premiada, focada em fornecer serviços de proteção executiva digital. A plataforma é projetada para proteger indivíduos, famílias e corporações de ameaças cibernéticas, assegurando dispositivos pessoais, redes domésticas e dados privados. A BLACKCLOAK atende indivíduos de alto valor, incluindo executivos e empresas, oferecendo soluções de cibersegurança personalizadas para mitigar riscos associados a dispositivos conectados à internet e vulnerabilidades de dados pessoais. Com um aplicativo e painel abrangentes, a BLACKCLOAK fornece monitoramento de segurança em tempo real e resposta a incidentes, ajudando a proteger vidas digitais contra ataques cibernéticos.

Descrição

• Deploy and configure Endpoint Detection and Response (EDR) agents across client environments. Customize detection policies to minimize false positives and ensure seamless client business operations. • Analyze EDR telemetry to detect "living off the land" attacks and anomalies that traditional antivirus would miss. • Actively monitor client endpoints for malicious indicators. When threats are detected, immediately isolate compromised devices and communicate the scope of the incident to the customer and cross-functional teams supporting the customer. • Generate monthly executive summaries for clients detailing blocked attacks, health status, and ROI on their security investment. • Schedule and run next-gen vulnerability scans on client networks and execute penetration tests as applicable against client assets.. Review the results with the client's (or their IT point-of-contact), prioritize critical patches, and verify their remediation. • Monitor for threats and vulnerabilities specific to “Smart Home” and Internet of Things (IoT), alert impacted clients, and assist clients in the hardening of their home networks and IoT devices. • Proactively monitor the Dark Web and criminal forums for our clients' compromised credentials, leaked intellectual property, or domain spoofing. • Work with cross-functional teams to alert clients immediately upon discovery of leaked data and provide specific instructions on changing passwords or locking down accounts. • Manage the credit monitoring platform, and alert clients to changes in credit scores, new credit inquiries/accounts and other identity alerts that could indicate fraudulent activity. • In conjunction with Client Success Managers, serve as the dedicated case manager for confirmed identity theft incidents. Handle the end-to-end resolution process so the client does not have to navigate the bureaucracy alone. • Assist in the restoration of compromised accounts, including synthetic identity fraud, medical identity theft, and tax refund fraud. • Actively hunt for client PII on people-search sites and data broker databases. Manage the "opt-out" and removal process to minimize their public attack surface. • Identify repetitive manual tasks (e.g., alert triage, monthly reporting, initial containment) and build SOAR playbooks or scripts (Python/PowerShell) to automate them. • Evaluate and implement AI-driven tools to enhance threat detection accuracy. Utilize Machine Learning features within our stack to reduce "alert fatigue" and false positives. • Continuously assess our toolset's architecture. optimize API integrations between our Identity platforms, EDR, and ticketing systems to ensure we can handle increased client volume without linear headcount growth. • Conduct "Post-Mortem" reviews after incidents or complex identity cases to identify process gaps, updating standard operating procedures (SOPs) to be faster and smarter next time. • Recognize and codify attacker tools, tactics, and procedures in indicators of compromise (IOCs) that can be applied to current and future investigations • Develop custom scripts, tools, or methodologies to enhance our Incident Response processes • Develop comprehensive and accurate reports of forensic findings and Incident Response activities for both technical and executive audiences • Be part of an on-call rotation and escalation team • Participate in knowledge transfer sessions, product training and other strategic initiatives as needed • Maintain working knowledge of BlackCloak’s solutions, platform features and best practices • Mentor and support Client Success and Security Team Members • Work closely with the engineering and product teams to continuously improve BlackCloak products • Perform research and development on the latest cyber security attack and defense trends • Work with the sales team to do technical demonstrations and provide subject matter expertise • This position will require occasional time on nights and weekends to address client incidents, emergency onboardings and issues.

🎯 Requisitos

• 3-5+ years of experience in Cybersecurity, Fraud Analysis, or Security Engineering • A college degree in an Information Technology (IT/CS/CE) related discipline is a plus, with equivalent experience also considered • Industry recognized information security certifications a plus: • CISSP • CCSP • CFCE • GIAC • OSCP • OSCE • Security+ • CEH • Penetration and vulnerability testing experience • Windows and macOS forensic investigation and vulnerability management experience • Experience in deploying, managing, and optimizing EDR tools to effectively detect, respond to, and mitigate threats • Being able to correlate assets across multiple systems to ensure operational clarity and coverage is a must. • Experience developing detection alerting using automation, orchestrating detection logic to trigger responses, and developing efficient security workflows. • Experience with client service, communicating complex technical concepts, and a strong analytical mind required. • Technical knowledge of operating systems such as Windows, macOS, iOS, Android, Linux • Solid understanding of the US Credit System (Bureaus, FICO, FCRA rights). • Experience managing identity monitoring platforms (alerts on Credit, SSN, PII) • Operate independently and efficiently to manage multiple tasks and priorities simultaneously and successfully • High degree of interpersonal communication skills and discretion for client privacy

🏖️ Benefícios

• 100% Remote Company, within the USA • Comprehensive Medical, Dental, and Vision plans with a 100% employer-paid monthly premium option for employees & 50% employer-paid monthly premiums for dependents. • Health Savings Account with company contribution for eligible medical plans. • Flexible Vacation Plan • 10 Paid Company Holidays • 100% employer-paid Life, AD&D and Short- and Long-Term Disability Insurance • 401k with Traditional and Roth options, including employer match. • Company Equity • Paid Parental and Pregnancy Recovery Leave • Company and team off-sites and virtual events throughout the year • Home office stipend

Candidatar-se

Vagas Similares

🕒 Maio 5

Trackforce Valiant + TrackTik

51 - 200

🔐 Segurança

🏢 Corporativo

☁️ SaaS

Account Executive for Mid-Market SaaS Security Workforce Management Software focusing on new logo acquisition and existing customer expansion. Responsible for managing a defined territory and driving sales efforts.

🇺🇸 Estados Unidos – Remoto (EUA)

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Maio 5

Google Fiber

501 - 1000

📡 Telecomunicações

Cybersecurity GRC Manager at GFiber responsible for evolving Third-Party Risk Management. Collaborating with teams to drive tactical automation and managing cybersecurity risk in a changing environment.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $117.600 - $172.500 / ano

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Maio 5

Spreedly

51 - 200

💳 Fintech

☁️ SaaS

🛍️ Comércio Eletrônico

Cybersecurity Architect responsible for designing security architectures at Spreedly, focusing on payment systems and evolving cyber threats. Working closely with engineering and product teams to integrate security controls.

🇺🇸 Estados Unidos – Remoto (EUA)

💰 $75.000.000 Private Equity Round em 2019-11

⏰ Tempo Integral

🟠 Sênior

🔴 Especialista

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Maio 5

CloudWave, Healthcare IT Solutions

51 - 200

🔒 Cibersegurança

Marketing Manager focused on demand generation and pipeline marketing for cybersecurity services. Leading campaigns and sales enablement initiatives to drive business growth.

🇺🇸 Estados Unidos – Remoto (EUA)

💰 Venture Round em 2014-05

⏰ Tempo Integral

🟠 Sênior

🔴 Especialista

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Maio 5

AbbVie

10.000+ funcionários

💊 Farmacêutico

🧬 Biotecnologia

⚕️ Seguro de Saúde

Associate Director focusing on cybersecurity posture, AI governance, and security hygiene. Leading strategies and teams for effective security across diverse IT environments.

🗣️🇺🇸🇬🇧 Inglês obrigatório