MEDR Threat Engineer

🔥 0 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Proficio

Proficio

51 - 200 employees

🔒 Cybersecurity

☁️ SaaS

🏢 Enterprise

Cybersecurity • SaaS • Enterprise

Proficio is a cybersecurity company that specializes in Managed Detection and Response (MDR) services. Recognized as the inventor of SOC-as-a-Service, Proficio provides automated threat response and advances cybersecurity business intelligence. Their services include 24/7 security operations, risk-based vulnerability management, identity threat detection, endpoint and network protection, as well as compliance assurance to meet cyber insurance requirements. By employing advanced technologies and expert insights, Proficio ensures robust protection against evolving cyber threats, contributing to a safer business environment worldwide.

📋 Description

• Act as the SME for initiatives that enhance EDR visibility, detection, and prevention for Windows, macOS, and Linux • Develop and enhance SOAR workflows and playbooks, integrating them with EDR systems for more effective incident response and threat management • Innovate and implement sophisticated SOAR solutions, including custom automated workflows and orchestration that address high-level security challenges • Define and maintain strategy and roadmap for Carbon Black, CrowdStrike, and Sentinel One detection functionalities with other team members and departments • Collaborate closely with SOC and Managed/Hosted SIEM teams to understand threat and attack trends • Identify unmet customer needs, define use cases, and advance the functional capabilities of the offering • Maintain, administer, and provide endpoint security management tools, including antivirus, data loss prevention, and web/spam filtering • Assist customers with viruses and system vulnerabilities/threats • Implement efficiencies and create strategies to better detect and respond to cyber incidents, alerts, and detections • Escalate detections, incidents, and alerts to customers through ITSM/ITIL tools

🎯 Requirements

• 4+ years of experience with IT in a professional work environment • 3+ years of experience deploying, configuring, or maintaining enterprise EDR solutions, including CrowdStrike Falcon, Microsoft Defender, and/or Sentinel One • Additional experience with Cisco Secure Endpoint and Sophos is a plus • 3+ years of experience in EDR and/or antivirus, with malware and attack analysis, research, investigation, and response highly desirable • 1+ years of experience performing systems administration, including troubleshooting, installation, performance or availability monitoring, and security upgrades • Knowledge of network security architecture concepts, including topology, protocols, components, and principles • Knowledge of enterprise operating system configurations and management tools for EDR deployment, configuration, and management • SOC environment experience, including incident response, vulnerability scanning, threat hunting, network monitoring/log management, or compliance management, is good to have • Experience with enterprise security tools including SIEM, threat intelligence platforms, or network monitoring tools is good to have • Experience triaging security events in a SOC environment using data from enterprise security solutions • Knowledge of intrusion detection methodologies and techniques for host- and network-based intrusions • Ability to integrate cybersecurity data using enterprise or custom aggregation and analysis tools, including Splunk and Elastic

🏖️ Benefits

• Opportunity to work in a progressive organization with structured training and roadmap for success • Meals, Gym, Internet and other reimbursement programs • Experience in one of the hottest IT industries today

Apply Now

Similar Jobs

🔥 9 hours ago

Blend360

501 - 1000

🏥 Healthcare

🏨 Hospitality

✈️ Travel

Azure Databricks Engineer building scalable data pipelines and analytics solutions for Blend, an AI and data services provider. Optimizing Azure-based data platforms for analytics and ML use cases.

🇮🇳 India – Remote

💰 $100M Private Equity Round on 2022-08

⏰ Full Time

🟡 Mid-level

🟠 Senior

👷🏻‍♀️ Engineer

Apache

Azure

Cloud

ETL

Kafka

PySpark

Python

Spark

SQL

🕒 Yesterday

Teladoc Health

5001 - 10000

🏥 Healthcare

👥 B2C

☁️ SaaS

SIEM Engineer protecting Teladoc Health’s virtual-care systems from cyber threats. Managing detection, incident analysis, cloud log integrations, alert optimization, and SOC automation.

🇮🇳 India – Remote

💰 $80M Post-IPO Debt - Teladoc Health on 2016-07

⏰ Full Time

🟡 Mid-level

🟠 Senior

👷🏻‍♀️ Engineer

AWS

Azure

Cloud

Cyber Security

Firewalls

Python

Splunk

TCP/IP

🕒 2 days ago

Mindera

1001 - 5000

📣 Marketing

📦 Logistics

💼 Consulting

Senior SharePoint Engineer managing enterprise Microsoft 365 environments for Mindera. Improving governance, lifecycle management, archiving and compliance across large SharePoint estates.

🕒 5 days ago

Thinkahead Consultant Psychologist Pty Ltd

1 - 10

🏥 Healthcare

💼 Consulting

📚 Education

Operational Technology Engineer supporting AHEAD’s digital-business platforms from India. Automating OT systems, administering cloud infrastructure, and maintaining secure networks, firewalls, and remote access.

Ansible

Cloud

Firewalls

Linux

Puppet

Python

Switching

🕒 5 days ago

Kantata

501 - 1000

💼 Consulting

📦 Logistics

☁️ SaaS

Salesforce Engineer developing and maintaining Kantata’s PSA SaaS solution on the Force.com platform. Designing scalable features, resolving customer issues, and improving enterprise application performance.

JavaScript

Visualforce