Engineer – Cybersecurity Operations

Job not on LinkedIn

🔥 55 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of US LBM

US LBM

10,000+ employees

Founded 2009

📦 Logistics

🏭 Manufacturing

💼 Consulting

💰 Private Equity Round on 2023-10

Logistics • Manufacturing • Consulting

US LBM is one of the largest building products distributors in the United States, operating over 400 locations nationwide. The company provides a wide range of building materials through its local divisions, catering to custom home builders, national builders, and specialty contractors. US LBM combines the advantages of national scale with the service levels, expertise, and entrepreneurial culture of its local brands, distributing specialty building materials for the construction, maintenance, and renovation of homes, businesses, and communities across the country.

📋 Description

• Monitor, investigate, and respond to cybersecurity alerts, incidents, and threats across enterprise and cloud environments. • Administer and optimize Microsoft Sentinel, including log collections, integrations, connectors, analytics rules, watchlists, threat intelligence integrations, and dashboards. • Support and maintain Microsoft Defender XDR, Defender for Endpoint, Defender for Identity, Defender for Office 365, Defender for Cloud Apps, and Defender for Cloud. • Develop and tune detections, alerts, and KQL queries to improve visibility and reduce false positives. • Perform threat hunting and security investigations using Defender XDR and Sentinel. • Coach and mentor junior cybersecurity analysts by providing guidance on investigations, threat hunting, detection engineering, Microsoft security technologies, and incident response best practices. • Implement and maintain automation using Sentinel Automation Rules and Logic Apps. • Manage, monitor, and maintain health of Microsoft Defender for Endpoint, and cyber related agents. • Support and collaborate in the establishment and maintenance of server and workstation security baselines, including QA check on server builds. • Optimize Microsoft Defender for Endpoint security controls, including Attack Surface Reduction (ASR) rules and endpoint hardening. • Support security controls, governance, and monitoring for Microsoft 365 Copilot and AI-enabled technologies. • Coordinate penetration testing engagements and track remediation activities. • Support purple team exercises and validate the effectiveness of security detections and response capabilities. • Collaborate with infrastructure, cloud, identity, and application teams to improve security posture. • Develop and maintain operational procedures, runbooks, and technical documentation.

🎯 Requirements

• Bachelor's Degree in Cybersecurity, Information Technology, Computer Science, or a related field. • 3+ years of experience in cybersecurity operations, security engineering, or incident response. • Hands-on experience with Microsoft Defender XDR technologies. • Experience with Microsoft Sentinel. • Experience investigating security incidents involving endpoints, identities, phishing, malware, and cloud services. • Experience writing KQL queries for threat hunting, investigations, and detection engineering. • Experience implementing and managing Microsoft Attack Surface Reduction (ASR) rules. • SC-200, AZ-500, Security+, CISSP, or similar certifications preferred.

🏖️ Benefits

• Comply with all policies and standards • Adhere to Company’s commitment to workplace safety • Participate in and complete assigned trainings

Apply Now

Similar Jobs

🔥 2 hours ago

SAIC

10,000+ employees

☁️ SaaS

📣 Marketing

🏢 Enterprise

Cybersecurity Ops Associate monitoring and analyzing security events for SAIC's Enterprise Security Operations Center. Providing security support in a 24/7 environment with a focus on information protection.

🇺🇸 United States – Remote

🔥 Funding within the last year

💰 $500M Post-IPO Debt - SAIC on 2025-09

⏰ Full Time

🟢 Junior

🟡 Mid-level

🛡️ Security Operations

🔥 8 hours ago

Collibra

1001 - 5000

💼 Consulting

🏥 Healthcare

📦 Logistics

Engineer responsible for designing secure systems and managing incident response at Collibra. Working hands-on within Security Operations & Engineering team to improve security posture.

🕒 Yesterday

Allstate

10,000+ employees

💼 Consulting

📦 Logistics

🛡️ Insurance

Lead Service Consultant managing supplier security assessments and contract negotiations at Allstate. Collaborating with stakeholders and driving operational excellence in security governance.

🕒 Yesterday

Binary Defense

51 - 200

💼 Consulting

🎖️ Defense

🏥 Healthcare

Tier 2 SOC Analyst role with Binary Defense, contributing to client Security Operations team. Responsible for detection strategy, alert tuning, and vulnerability management duties.

🕒 Yesterday

EmpiRx Health

201 - 500

🏥 Healthcare

⚕️ Healthcare Insurance

🤖 Artificial Intelligence

Security Operations Manager leading SOC operations and identity governance for a pharmacy benefits management company. Ensuring threat detection, incident response, and compliance with security frameworks.