J

Threat Response & Remediation Engineer

Jobgether • United State
Remote
Apply
AI Summary

Investigate, contain, and remediate advanced threats in customer environments. Analyze complex security events using endpoint, network, cloud, and identity telemetry. Drive incidents through complete resolution.

Key Highlights
Investigate and remediate advanced threats in customer environments
Analyze complex security events using endpoint, network, cloud, and identity telemetry
Drive incidents through complete resolution
Key Responsibilities
Investigate detected threats using EDR, network, and identity telemetry to analyze attacker activity, determine scope, contain risks, and complete remediation actions
Lead customer security incident response efforts by developing remediation plans, coordinating actions, and providing clear documentation of findings and resolutions
Analyze security events and recommend effective response strategies to improve customer security posture and reduce exposure
Technical Skills Required
Endpoint Detection and Response (EDR) Security Telemetry Digital Forensics and Incident Response (DFIR)
Benefits & Perks
Competitive annual base salary range of $103,600 - $148,000 USD
Fully remote work opportunity within the United States
Comprehensive benefits package

Job Description


This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Threat Response & Remediation Engineer based in United States.

This is an exciting opportunity for a cybersecurity professional focused on investigating, containing, and remediating advanced threats in customer environments.

The role combines hands-on incident response expertise with strategic security problem-solving to help organizations strengthen their cyber resilience.

You will analyze complex security events using endpoint, network, cloud, and identity telemetry while driving incidents through complete resolution.

Working closely with security research, detection engineering, and product teams, you will help improve threat response capabilities and customer protection strategies.

This position is ideal for someone who thrives in fast-moving environments, enjoys solving complex security challenges, and takes ownership of customer outcomes.

You will play a key role in defending modern digital environments against evolving cyber threats while continuously improving security operations.

Accountabilities

The Threat Response & Remediation Engineer will serve as a trusted security partner, owning customer incident investigations from detection through remediation. This role requires strong technical execution, clear communication, and the ability to manage complex security incidents while collaborating across security and product teams.

  • Investigate detected threats using EDR, network, and identity telemetry to analyze attacker activity, determine scope, contain risks, and complete remediation actions.
  • Lead customer security incident response efforts by developing remediation plans, coordinating actions, and providing clear documentation of findings and resolutions.
  • Analyze security events and recommend effective response strategies to improve customer security posture and reduce exposure.
  • Apply creative problem-solving approaches to maximize the effectiveness of existing security tools and technologies.
  • Collaborate with detection engineering, threat intelligence, research, and product teams to improve response capabilities and influence future security solutions.
  • Communicate complex technical findings clearly to customers and internal stakeholders with varying levels of cybersecurity expertise.
  • Participate in an on-call rotation to provide 24/7 threat response and remediation support when required.
  • Continuously improve incident response processes, operational workflows, and security best practices.

Requirements

The ideal candidate is an experienced cybersecurity professional with strong incident response skills, a deep understanding of endpoint security, and the ability to independently investigate and resolve complex threats.

  • 4+ years of cybersecurity experience with demonstrated ability to investigate threats, manage security incidents, and drive investigations through completion.
  • Experience using EDR platforms such as CrowdStrike, Microsoft Defender for Endpoint, SentinelOne, Palo Alto Cortex, or CarbonBlack.
  • Strong understanding of security controls across endpoint, cloud, SaaS, and identity environments.
  • Knowledge of Windows and macOS internals, network communications, and foundational Linux systems.
  • Strong analytical and problem-solving skills with the ability to operate effectively in ambiguous and high-pressure situations.
  • Experience with Digital Forensics and Incident Response (DFIR) methodologies is preferred.
  • Understanding of current and emerging adversary tactics, techniques, and procedures (TTPs).
  • Ability to communicate complex technical concepts clearly through written reports and verbal discussions.
  • Demonstrated curiosity and willingness to leverage AI tools and emerging technologies to improve workflows and security outcomes.
  • Strong collaboration skills with the ability to work effectively with customers, engineering teams, and security stakeholders.

Benefits

  • Competitive annual base salary range of $103,600 - $148,000 USD, depending on experience, skills, location, and other factors.
  • Fully remote work opportunity within the United States.
  • Comprehensive benefits package designed to support employees and their families, including:
    • Medical, dental, and vision plans.
    • Vacation and sick time programs.
    • Parental leave options.
    • Retirement savings options.
    • Education reimbursement opportunities.
    • Additional employee perks and support programs.
  • Opportunity to work on complex cybersecurity challenges and protect organizations from evolving threats.
  • Collaborative environment focused on innovation, ownership, continuous learning, and professional growth.
  • Exposure to advanced security technologies, threat intelligence, and modern cyber defense practices.
How Jobgether Works

We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.

We appreciate your interest and wish you the best!

Why Apply Through Jobgether?

Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.


Similar Jobs

Explore other opportunities that match your interests

Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Mid-Senior level

Hanalytica GmbH

United State
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

remotehunter

United State

Senior Network Engineer

Networking
•
10h ago
Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Mid-Senior level

Optomi

United State

Subscribe our newsletter

New Things Will Always Update Regularly