CyberSecurity Engineer, Identity Protection – Tier 3

🕒 vor 1 Monat

🇺🇸 Vereinigte Staaten – Remote

💵 $110.000 - $130.000 / Jahr

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

Jetzt Bewerben
Ähnliche Remote-Jobs finden

📊 Überprüfen Sie Ihre Lebenslauf-Bewertung für diese Stelle

Verbessern Sie Ihre Chancen auf ein Vorstellungsgespräch, indem Sie Ihre Lebenslauf-Bewertung vor der Bewerbung überprüfen.

Logo of BLACKCLOAK

BLACKCLOAK

11 - 50 Mitarbeiter

🔒 Cybersecurity

☁️ SaaS

💰 €11.000.000 Series A im 2021-07

Cybersecurity • SaaS

BLACKCLOAK ist eine preisgekrönte Concierge-Cybersicherheits- und Datenschutzplattform, die sich auf digitale Schutzdienste für Führungskräfte konzentriert. Die Plattform ist darauf ausgelegt, Einzelpersonen, Familien und Unternehmen vor Cyberbedrohungen zu schützen, indem sie persönliche Geräte, Heimnetzwerke und private Daten sichert. BLACKCLOAK bedient hochkarätige Einzelpersonen, einschließlich Führungskräften und Unternehmen, und bietet maßgeschneiderte Cybersicherheitslösungen, um Risiken im Zusammenhang mit internetfähigen Geräten und Schwachstellen in persönlichen Daten zu mindern. Mit einer umfassenden App und einem Dashboard bietet BLACKCLOAK Echtzeit-Überwachung der Sicherheit und Incident Response, um digitale Leben vor Cyberangriffen zu schützen.

Beschreibung

• Deploy and configure Endpoint Detection and Response (EDR) agents across client environments. Customize detection policies to minimize false positives and ensure seamless client business operations. • Analyze EDR telemetry to detect "living off the land" attacks and anomalies that traditional antivirus would miss. • Actively monitor client endpoints for malicious indicators. When threats are detected, immediately isolate compromised devices and communicate the scope of the incident to the customer and cross-functional teams supporting the customer. • Generate monthly executive summaries for clients detailing blocked attacks, health status, and ROI on their security investment. • Schedule and run next-gen vulnerability scans on client networks and execute penetration tests as applicable against client assets.. Review the results with the client's (or their IT point-of-contact), prioritize critical patches, and verify their remediation. • Monitor for threats and vulnerabilities specific to “Smart Home” and Internet of Things (IoT), alert impacted clients, and assist clients in the hardening of their home networks and IoT devices. • Proactively monitor the Dark Web and criminal forums for our clients' compromised credentials, leaked intellectual property, or domain spoofing. • Work with cross-functional teams to alert clients immediately upon discovery of leaked data and provide specific instructions on changing passwords or locking down accounts. • Manage the credit monitoring platform, and alert clients to changes in credit scores, new credit inquiries/accounts and other identity alerts that could indicate fraudulent activity. • In conjunction with Client Success Managers, serve as the dedicated case manager for confirmed identity theft incidents. Handle the end-to-end resolution process so the client does not have to navigate the bureaucracy alone. • Assist in the restoration of compromised accounts, including synthetic identity fraud, medical identity theft, and tax refund fraud. • Actively hunt for client PII on people-search sites and data broker databases. Manage the "opt-out" and removal process to minimize their public attack surface. • Identify repetitive manual tasks (e.g., alert triage, monthly reporting, initial containment) and build SOAR playbooks or scripts (Python/PowerShell) to automate them. • Evaluate and implement AI-driven tools to enhance threat detection accuracy. Utilize Machine Learning features within our stack to reduce "alert fatigue" and false positives. • Continuously assess our toolset's architecture. optimize API integrations between our Identity platforms, EDR, and ticketing systems to ensure we can handle increased client volume without linear headcount growth. • Conduct "Post-Mortem" reviews after incidents or complex identity cases to identify process gaps, updating standard operating procedures (SOPs) to be faster and smarter next time. • Recognize and codify attacker tools, tactics, and procedures in indicators of compromise (IOCs) that can be applied to current and future investigations • Develop custom scripts, tools, or methodologies to enhance our Incident Response processes • Develop comprehensive and accurate reports of forensic findings and Incident Response activities for both technical and executive audiences • Be part of an on-call rotation and escalation team • Participate in knowledge transfer sessions, product training and other strategic initiatives as needed • Maintain working knowledge of BlackCloak’s solutions, platform features and best practices • Mentor and support Client Success and Security Team Members • Work closely with the engineering and product teams to continuously improve BlackCloak products • Perform research and development on the latest cyber security attack and defense trends • Work with the sales team to do technical demonstrations and provide subject matter expertise • This position will require occasional time on nights and weekends to address client incidents, emergency onboardings and issues.

🎯 Anforderungen

• 3-5+ years of experience in Cybersecurity, Fraud Analysis, or Security Engineering • A college degree in an Information Technology (IT/CS/CE) related discipline is a plus, with equivalent experience also considered • Industry recognized information security certifications a plus: • CISSP • CCSP • CFCE • GIAC • OSCP • OSCE • Security+ • CEH • Penetration and vulnerability testing experience • Windows and macOS forensic investigation and vulnerability management experience • Experience in deploying, managing, and optimizing EDR tools to effectively detect, respond to, and mitigate threats • Being able to correlate assets across multiple systems to ensure operational clarity and coverage is a must. • Experience developing detection alerting using automation, orchestrating detection logic to trigger responses, and developing efficient security workflows. • Experience with client service, communicating complex technical concepts, and a strong analytical mind required. • Technical knowledge of operating systems such as Windows, macOS, iOS, Android, Linux • Solid understanding of the US Credit System (Bureaus, FICO, FCRA rights). • Experience managing identity monitoring platforms (alerts on Credit, SSN, PII) • Operate independently and efficiently to manage multiple tasks and priorities simultaneously and successfully • High degree of interpersonal communication skills and discretion for client privacy

🏖️ Vorteile

• 100% Remote Company, within the USA • Comprehensive Medical, Dental, and Vision plans with a 100% employer-paid monthly premium option for employees & 50% employer-paid monthly premiums for dependents. • Health Savings Account with company contribution for eligible medical plans. • Flexible Vacation Plan • 10 Paid Company Holidays • 100% employer-paid Life, AD&D and Short- and Long-Term Disability Insurance • 401k with Traditional and Roth options, including employer match. • Company Equity • Paid Parental and Pregnancy Recovery Leave • Company and team off-sites and virtual events throughout the year • Home office stipend

Jetzt Bewerben

Ähnliche Jobs

🕒 vor 1 Monat

Trackforce Valiant + TrackTik

51 - 200

🔐 Sicherheit

🏢 Unternehmen

☁️ SaaS

Account Executive for Mid-Market SaaS Security Workforce Management Software focusing on new logo acquisition and existing customer expansion. Responsible for managing a defined territory and driving sales efforts.

🇺🇸 Vereinigte Staaten – Remote

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 1 Monat

Google Fiber

501 - 1000

📡 Telekommunikation

Cybersecurity GRC Manager at GFiber responsible for evolving Third-Party Risk Management. Collaborating with teams to drive tactical automation and managing cybersecurity risk in a changing environment.

🇺🇸 Vereinigte Staaten – Remote

💵 $117.600 - $172.500 / Jahr

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 1 Monat

Spreedly

51 - 200

💳 Fintech

☁️ SaaS

🛍️ eCommerce

Cybersecurity Architect responsible for designing security architectures at Spreedly, focusing on payment systems and evolving cyber threats. Working closely with engineering and product teams to integrate security controls.

🇺🇸 Vereinigte Staaten – Remote

💰 €75.000.000 Private Equity Round im 2019-11

⏰ Vollzeit

🟠 Senior

🔴 Experte

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 1 Monat

AbbVie

10.000+ Mitarbeiter

💊 Pharmazie

🧬 Biotechnologie

⚕️ Krankenversicherung

Associate Director focusing on cybersecurity posture, AI governance, and security hygiene. Leading strategies and teams for effective security across diverse IT environments.

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 1 Monat

iHerb, LLC

1001 - 5000

🛍️ eCommerce

🧘 Wellness

🛒 Einzelhandel

Security Automation Engineer at iHerb creating automated, secure cloud environments. Focused on security operations scaling, AWS expertise, and identity management.

🇺🇸 Vereinigte Staaten – Remote

💵 $162.000 - $190.000 / Jahr

⏰ Vollzeit

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich