Security Incident Response Engineer - Threat Hunter & IR

Acrisure

Grand Rapids (MI)

On-site

USD 110,000 - 150,000

Full time

12 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health insurance
Dental insurance
Vision insurance
Life insurance
Disability insurance

Job summary

Acrisure is seeking a Security Incident Response Engineer to detect, investigate, contain, eradicate, and recover from cybersecurity incidents across our global environment. You will collaborate with Infrastructure, Cloud, Identity, Legal, Privacy, HR, and business units to rapidly respond to threats and reduce risk.

The role combines hands-on incident response, threat hunting, detection tuning, forensics, and continuous improvement to reduce MTTR and incident impact.

Qualifications

  • Bachelor’s degree in Computer Science, Information Security, Cybersecurity, or related discipline.
  • Minimum 3 years of progressive information security experience.
  • Strong understanding of incident response methodologies, attack lifecycle, and containment strategies.
  • Experience with one or more EDR platforms such as Microsoft Defender for Endpoint, SentinelOne, CrowdStrike, or equivalent.
  • Experience with SIEM technologies such as Microsoft Sentinel, Google SecOps, Splunk, QRadar, or similar platforms.
  • Knowledge of Microsoft 365, Entra ID, Active Directory, and cloud security concepts.
  • Understanding of MITRE ATT&CK, threat intelligence, and threat hunting methodologies.
  • Familiarity with Windows, Linux, and macOS operating systems.
  • Ability to analyze logs, indicators of compromise (IOCs), and attacker techniques.
  • Experience with PowerShell, Python, KQL, or other scripting/query languages.

Responsibilities

  • Investigate and respond to cybersecurity incidents involving endpoints, identities, cloud platforms, email systems, applications, data, and network infrastructure.
  • Perform incident triage, severity classification, impact analysis, containment, eradication, and recovery activities.
  • Coordinate response efforts across Security, Infrastructure, Cloud, IAM, Workplace Technology, Legal, Privacy, Human Resources, and business teams.
  • Support major incident management activities and provide technical leadership during active security events.
  • Maintain detailed incident records, timelines, evidence, findings, and lessons learned.
  • Develop and maintain incident response playbooks and runbooks.

Skills

Incident response
Threat hunting
Forensic analysis
Windows/macOS/Linux familiarity
Scripting (PowerShell/Python)

Education

Bachelor’s degree in Computer Science or related field

Tools

EDR platforms
SIEM platforms
PowerShell
Python
KQL

Job description

Acrisure is seeking a Security Incident Response Engineer to detect, investigate, contain, eradicate, and recover from cybersecurity incidents across our global environment. You will collaborate with Infrastructure, Cloud, Identity, Legal, Privacy, HR, and business units to rapidly respond to threats and reduce risk.

The role combines hands-on incident response, threat hunting, detection tuning, forensics, and continuous improvement to reduce MTTR and incident impact.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Dynamic Security Incident Responder
Dynamic Security Incident Responder

Acrisure, LLC • Atlanta (GA)

On-site
USD 110,000 - 160,000
Medical insurance
Dental insurance
Vision insurance
+4
Director of Security Operations & Incident Response
Director of Security Operations & Incident Response

Acrisure • Atlanta (GA)

On-site
USD 180,000 - 250,000
Health insurance
Dental insurance
Vision insurance
+1
Senior Threat Hunter: IR, Forensics & Cloud (Azure)
Senior Threat Hunter: IR, Forensics & Cloud (Azure)

TechDigital Group • Nashville (TN)

On-site
USD 80,000 - 100,000
Senior Incident Response Lead - Threat Hunting & IR
Senior Incident Response Lead - Threat Hunting & IR

Sinch • United States

On-site
USD 123,000 - 175,000
Medical, dental, vision plans
Telehealth access
Employee Assistance Program
+4
Incident Response Security Engineer: Threat Hunting & Forensics
Incident Response Security Engineer: Threat Hunting & Forensics

Amazon • Arlington (VA)

On-site
USD 159,000 - 202,000
Health insurance
401(k) matching
Paid time off
SOC Threat Hunter & Incident Response Engineer
SOC Threat Hunter & Incident Response Engineer

Cyberdata Technologies, Inc. • Herndon (VA)

On-site
USD 80,000 - 120,000
Senior Incident Response Engineer — Remote, High-Impact IR
Senior Incident Response Engineer — Remote, High-Impact IR

RXinsider LTD. • New Jersey

On-site
USD 79,000 - 142,000
Annual incentive bonus
Country-specific benefits
Threat Detection & Response Engineer: Incident Leader
Threat Detection & Response Engineer: Incident Leader

Whatnot • San Francisco (CA)

Hybrid
USD 175,000 - 260,000
Health Insurance (Medical, Dental, Vis
Work From Home Support
Home office setup allowance
+5
Cyber Security Engineer - Threat Hunting & IR Lead
Cyber Security Engineer - Threat Hunting & IR Lead

Astound Business Solutions, LLC • San Luis Obispo (CA)

On-site
USD 70,000 - 90,000
401k retirement plan with employer match
Medical, dental, vision insurance
Paid Time Off starting at 80 hours annually
+1
Incident Response Engineer - Cyber Defense
Incident Response Engineer - Cyber Defense

Career Techniques • Dallas (TX)

Hybrid
USD 130,000 - 170,000