Description
The Security Engineer - Detection & Response leads technical incident response from detection through recovery, conducts digital forensics and root-cause analysis, and serves as the senior technical escalation point for the Security Operations Center. The role also owns cyber threat intelligence, threat hunting, red team and purple team exercises, detection validation, and SOC improvement. It requires a bachelor's degree or equivalent experience, at least five years of information security experience, hands-on incident response, forensics, threat intelligence, threat hunting, or red teaming experience, and familiarity with EDR, SIEM, Microsoft ecosystems, scripting, and adversary emulation tools.
