Incident Response Engineer — Cyber Threat Defender

Royal Abstract of New York LLC

Atlanta (GA)

On-site

USD 90,000 - 130,000

Full time

7 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Acrisure is seeking a Security Incident Response Engineer to detect, investigate, contain, eradicate, and recover from cybersecurity incidents across our global environment. You will work with Infrastructure, Cloud, IAM, Legal, HR, and business stakeholders to rapidly respond to threats and reduce risk.

You'll leverage EDR, SIEM, cloud security platforms, and threat intelligence, performing hands-on incident response, threat hunting, and continuous improvement to shorten response times and

Qualifications

  • Bachelor's degree in Computer Science, Information Security, Cybersecurity, or related discipline (or equivalent experience).
  • Minimum 3 years of progressive information security experience.
  • Strong understanding of incident response methodologies, attack lifecycle, and containment strategies.
  • Experience with EDR platforms such as Microsoft Defender for Endpoint, SentinelOne, CrowdStrike, or equivalent.
  • Experience with SIEM technologies such as Microsoft Sentinel, Google SecOps, Splunk, QRadar, or similar platforms.
  • Knowledge of Microsoft 365, Entra ID, Active Directory, and cloud security concepts.
  • Understanding of MITRE ATT&CK, threat intelligence, and threat hunting methodologies.
  • Familiarity with Windows, Linux, and macOS operating systems.
  • Ability to analyze logs, indicators of compromise (IOCs), and attacker techniques.
  • Experience with PowerShell, Python, KQL, or other scripting/query languages.

Responsibilities

  • Investigate and respond to cybersecurity incidents across endpoints, identities, cloud platforms, email systems, applications, data, and network infrastructure.
  • Perform incident triage, severity classification, impact analysis, containment, eradication, and recovery activities.
  • Coordinate response efforts with Security, Infrastructure, Cloud, IAM, Workplace Technology, Legal, Privacy, Human Resources, and business teams.
  • Support major incident management activities and provide technical leadership during active security events.
  • Maintain detailed incident records, timelines, evidence, findings, and lessons learned.
  • Analyze alerts from EDR, SIEM, MDR, email security, cloud security, and threat intelligence platforms.
  • Proactively threat hunt to identify indicators of compromise, adversary behaviors, and emerging threats.

Skills

Incident response
Threat hunting
MITRE ATT&CK knowledge
Log analysis
Analytical thinking

Education

Bachelor's degree in CS/Info Sec

Tools

Defender for Endpoint
SentinelOne
CrowdStrike
Microsoft Sentinel
Splunk
QRadar
Microsoft 365
Entra ID
Active Directory
PowerShell
Python
KQL

Job description

Acrisure is seeking a Security Incident Response Engineer to detect, investigate, contain, eradicate, and recover from cybersecurity incidents across our global environment. You will work with Infrastructure, Cloud, IAM, Legal, HR, and business stakeholders to rapidly respond to threats and reduce risk.

You'll leverage EDR, SIEM, cloud security platforms, and threat intelligence, performing hands-on incident response, threat hunting, and continuous improvement to shorten response times and

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Cyber Incident Response Engineer
Senior Cyber Incident Response Engineer

Acrisure • Atlanta (GA)

On-site
USD 120,000 - 180,000
Dynamic Security Incident Responder
Dynamic Security Incident Responder

Acrisure, LLC • Atlanta (GA)

On-site
USD 110,000 - 160,000
Medical insurance
Dental insurance
Vision insurance
+4
Security Incident Response Engineer
Security Incident Response Engineer

Royal Abstract of New York LLC • Atlanta (GA)

On-site
USD 90,000 - 130,000
Director of Security Operations & Incident Response
Director of Security Operations & Incident Response

Acrisure • Atlanta (GA)

On-site
USD 180,000 - 250,000
Health insurance
Dental insurance
Vision insurance
+1
Incident Response Engineer - Cyber Defense
Incident Response Engineer - Cyber Defense

Career Techniques • Dallas (TX)

Hybrid
USD 130,000 - 170,000
Security Incident Response Engineer
Security Incident Response Engineer

Acrisure • Atlanta (GA)

On-site
USD 120,000 - 180,000
Incident Response Specialist
Incident Response Specialist

myBridge Corporation • Arlington (VA)

On-site
USD 90,000 - 120,000
Senior Threat Hunter & Incident-Response Engineer
Senior Threat Hunter & Incident-Response Engineer

Exiger • Richmond (VA)

Hybrid
USD 120,000 - 150,000
Senior Incident Response Engineer — Remote
Senior Incident Response Engineer — Remote

RELX International • United States

Remote
USD 78,000 - 142,000
Annual incentive bonus
Remote Cybersecurity Engineer — Incident Response
Remote Cybersecurity Engineer — Incident Response

Harris Fields Search Partners, N.A. • Washington

Remote
USD 125,000 - 150,000
Medical, dental, and vision insurance
401(k) with employer matching
Paid time off and holidays
+3