Senior CTIR Engineer: Threat Intel & Incident Response

Xplor

Atlanta (GA)

On-site

USD 120,000 - 180,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Paid parental leave
Diversity & Inclusion initiatives
Mental health support
Flexible working arrangements
Medical and life insurance
LinkedIn Learning access

Job summary

Xplor is seeking a Senior Cybersecurity Engineer to lead CTIR incident response across platforms and applications. You will triage, investigate, contain, eradicate and recover from security events, then report findings to engineering, IT and leadership.

The role emphasizes calm decision-making under pressure, ownership from alert to final report, and proactive threat hunting to strengthen detections and response playbooks.

Qualifications

  • 3 to 6 years experience in security operations or incident response.
  • Strong triage and root cause analysis with log correlation.
  • Experience with a SIEM to investigate, hunt and build detections (Microsoft Sentinel preferred).
  • Familiar with ITIL processes and standards such as ISO 27001 and PCI DSS.

Responsibilities

  • Own incidents as part of the CTIR team: detect, triage, investigate, contain and eradicate.
  • Lead investigations across systems, digging into logs, endpoints, email and network data.
  • Perform host and network forensics, malware triage, and email analysis to understand attacker activity.
  • Coordinate with engineering and wider security team during a response and communicate clearly to technical teams and leadership.
  • Hunt proactively for threats and build new detections and indicators of compromise.

Skills

SIEM
EDR
Threat hunting
Incident response
KQL
PowerShell
Python

Tools

Microsoft Sentinel
Jupyter Notebooks
SOAR

Job description

Xplor is seeking a Senior Cybersecurity Engineer to lead CTIR incident response across platforms and applications. You will triage, investigate, contain, eradicate and recover from security events, then report findings to engineering, IT and leadership.

The role emphasizes calm decision-making under pressure, ownership from alert to final report, and proactive threat hunting to strengthen detections and response playbooks.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Threat Analyst & Incident Response
Cyber Threat Analyst & Incident Response

Request Technology, LLC • Chicago (IL)

Hybrid
USD 110,000 - 140,000
Threat Detection & Response Engineer: Incident Leader
Threat Detection & Response Engineer: Incident Leader

Whatnot • San Francisco (CA)

Hybrid
USD 175,000 - 260,000
Health Insurance (Medical, Dental, Vis
Work From Home Support
Home office setup allowance
+5
Senior Incident Response Lead: Threat Hunting & Automation
Senior Incident Response Lead: Threat Hunting & Automation

Jobtailor • Colorado

On-site
USD 120,000 - 180,000
Senior Cyber Defense Analyst - Threat Detection & Response
Senior Cyber Defense Analyst - Threat Detection & Response

Request Technology, LLC • Chicago (IL)

On-site
USD 120,000 - 150,000
Senior Threat Detection & Incident Response Lead
Senior Threat Detection & Incident Response Lead

CLEAR - Corporate • New York (NY)

On-site
USD 145,000 - 170,000
Healthcare benefits
401(k) with employer match
Wellness and learning stipends
Engineer - Security Operations and Incident Response
Engineer - Security Operations and Incident Response

Pearl Consulting Group. • Northern (KY)

Hybrid
USD 110,000 - 170,000
Senior Incident Response Engineer
Senior Incident Response Engineer

Sophos • United States

On-site
USD 150,000 - 190,000
Senior Incident Responder, Global CSIRT — Cloud & Forensics
Senior Incident Responder, Global CSIRT — Cloud & Forensics

Jobtailor • United States

On-site
USD 120,000 - 180,000
Cyber Defense Analyst: Incident Response & Threat Hunting
Cyber Defense Analyst: Incident Response & Threat Hunting

Computer Task • United States

On-site
USD 85,000 - 120,000
Senior CSIRT Engineer — Remote, SIEM/EDR & SOAR Lead
Senior CSIRT Engineer — Remote, SIEM/EDR & SOAR Lead

Webhosting • United States

On-site
USD 110,000 - 130,000
Medical benefits with 100% premiums
401(k) plan with 100% match up to 4%
Professional development stipend