1,422 incident response engineer jobs at 904 companies in United States
3mo
Save
Mark Applied
Hide
3mo
Incident Response Engineer
Arlington, Virginia, United States
$86k-$176k/yrOnsiteFull Time
Accenture Federal ServicesNew York Stock Exchange: ACN: Technology and management consulting for U.S. federal agencies.
4+ YOE4 years in security incident response or digital forensics; DoD 8140 compliance; bachelor’s degree or equivalent experience; active TS/SCI clearance.
SIEM, Digital forensics tools, Malware analysis tools, Incident response tools
SinchNasdaq Stockholm: SINCH: Swedish public CPaaS provider helping enterprises communicate with customers through messaging, voice, email, and verification.
7+ YOERequires 7+ years of cybersecurity experience focused on incident response, threat hunting, and forensics; advanced security certification; leadership experience; and a bachelor's degree or equivalent experience.
EatonNYSE: ETN: Intelligent power management providing energy-efficient solutions.
7+ YOEBachelor's degree and 7+ years in security operations/incident response/cloud security; U.S. person required; authorized to work in US without sponsorship; strong communication and forensic, detection engineering, and cloud skills.
Python, PowerShell, SOAR, SIEM, Microsoft Azure, AWS, Google Cloud, MITRE ATT&CK
ClickHouse: Provider of a high-performance, real-time analytics database management system.
Experienced security practitioner with incident detection and response, cloud infrastructure security, threat modeling, development and automation experience; Golang or Python preferred.
ClickHouse: Provider of a high-performance, real-time analytics database management system.
Security practitioner with incident detection and response, product security or red teaming, cloud infrastructure security, automation, and development experience; knowledge of AWS, GCP, or Azure required.
Acrisure: Global fintech and insurance services firm.
3+ YOEBachelor's degree or equivalent experience; 3+ years in information security; incident response, threat hunting, digital forensics, SIEM/EDR, cloud security, MITRE ATT&CK, and scripting experience.
EDR, SIEM, Microsoft Defender for Endpoint, SentinelOne, CrowdStrike, Microsoft Sentinel, Google SecOps, Splunk, QRadar, Microsoft 365, Microsoft Entra ID, Active Directory, MITRE ATT&CK, Windows, Linux, macOS, PowerShell, Python, KQL, SOAR, EAP, Calm app, HSA, FSA
Stripe: Financial infrastructure platform for online businesses and enterprises.
3+ YOERequires 3+ years analyzing security data or building behavioral models, a computer science degree or equivalent, expert Python and SQL, and experience with log analysis, network security, forensics, and incident response.
Andreessen Horowitz: Private venture capital firm investing in startups from seed through growth stages and helping founders build companies.
5+ YOE5+ years incident response across AWS and GCP; lead live incidents; write detections; Python scripting; SIEM/detection frameworks; AI/SOC workflows.
Sigma, KQL, SIEM, EDR, SOAR, Python, MITRE ATT&CK, AI agents
Tokio Marine North America Services: Private U.S. shared-services providing finance, IT, actuarial, legal, and HR support to Tokio Marine insurance businesses.
8+ YOE8+ years in operational cybersecurity with 3+ years incident response, threat hunting, system administration (Windows or Linux), scripting (Python/Perl/Ruby), WEF/syslog and strong communication skills.
AdobeNASDAQ: ADBE: Empowering everyone to create through innovative digital experiences.
7+ YOE7+ years incident response experience; host/network forensics, Windows analysis, EDR and SIEM expertise; cloud (AWS/Azure/GCP), container (Kubernetes, Docker) experience; bash and interpreted language (Python/Ruby); leadership and on-call participation.
Newell BrandsNASDAQ: NWL: Leading global consumer goods with a strong portfolio.
10+ YOERequires a bachelor's degree and 10+ years in cybersecurity, including 6+ years in incident response or security operations, SOC leadership, incident command, forensics, SIEM/SOAR engineering, and cross-functional response.
SIEM, SOAR, XSOAR, Python, PowerShell, Azure, Microsoft 365
Volanno: Modernizing Mission-Critical Agencies Through Digital Transformation.
5+ YOEBachelor's degree in computer science, information security, information systems, or related field; 5+ years cybersecurity operations experience, including OT incident response and threat hunting; background check required.
3+ YOEThree years of incident response experience, preferably in consulting, with expertise in cyber defense, computer forensics, malware reverse engineering, network security, audits, project management, and client communication.
CREST IR, CFCE, ENCE, GIAC, GCFA, GCIH, GREM, GNFA
Liebherr: International manufacturer of construction, mining, and industrial equipment.
4+ YOEBachelor's degree in cybersecurity, computer science, information technology, or related field plus 4 years of relevant IT experience, or equivalent credentials and 8 years. Requires security tooling, incident response, scripting, and communication skills.
firewalls, IDS/IPS, SIEM, EDR, vulnerability scanners, NIST, ISO
TruistNYSE: TFC: US-based banking and financial services institution.
7+ YOE7+ years security engineering experience, bachelor\u0002s degree or equivalent, deep expertise in threat hunting, incident response, digital forensics, and security engineering.
Wireshark, tcpdump, Microsoft Azure, Amazon Web Services (AWS)
Microsoft Security Automation & Incident Response Engineer - Contract Position
United States
HybridContract
Magnet Forensics: Canadian digital investigation software helping public-safety agencies and enterprises acquire, analyze, and manage digital evidence.
5+ YOE5+ years in security operations/detection engineering/incident response. Strong Microsoft Sentinel and Defender experience, advanced KQL, Logic Apps, SOAR and SIEM engineering, detection engineering and workflow optimization.
Microsoft Sentinel, Defender XDR, Microsoft Defender for Endpoint, Microsoft Defender for Identity, Microsoft Defender for Cloud Apps, Entra ID, Zscaler, Logic Apps, KQL, SOAR, SIEM
Hands-on OT and industrial security expertise, incident response leadership, endpoint and vulnerability management, cloud and identity security, and communication across technical, plant, and executive audiences.
CrowdStrike Falcon, Microsoft 365, Microsoft Entra ID, Conditional Access, MFA, VPN, PLC, HMI, SCADA, ISA/IEC 62443, NIST CSF, EDR
Kaiser Permanente: Integrated managed care consortium and healthcare provider system.
3+ YOEBachelor's degree (or equivalent experience) and 3+ years IT experience with at least 1 year in information security or network engineering; incident triage, investigation, analysis, communication, and on-call incident response experience.