Remote job
Threat Response Engineer (TRE) - Day Shift (10am-6pm MT)
Job details
About this role
Role overview
This remote position (U.S. only) sits on a threat response team handling confirmed endpoint compromises for customers enrolled in an active remediation managed detection and response (MDR) service. The work combines hands-on incident investigation with collaborative engineering in a fast-paced security operations environment that values ownership and innovation. The schedule runs Monday through Friday, 10:00 a.m. to 6:00 p.m. Mountain Time, with participation in a recurring monthly on-call rotation.
Responsibilities
- Lead investigations into detected threats, using security products to analyze, contain, and remediate incidents in customer environments - Deliver thorough post-incident reports detailing actions taken, cleanup steps, and protection strategies - Identify and execute response strategies that strengthen the overall security posture of the customer base - Partner with detection engineering, threat hunting, threat intelligence, and product teams to develop new approaches for faster threat remediation - Manage competing priorities under operational pressure while participating in a 24x7 on-call rotation
Requirements
- Strong analytical and problem-solving skills demonstrated through direct experience responding to security events and threats - Hands-on experience with Endpoint Detection and Response (EDR) platforms such as CrowdStrike, Microsoft Defender for Endpoint, SentinelOne, or CarbonBlack, plus familiarity with identity security technologies - Foundational understanding of internal system functionality for Windows and macOS operating systems - Demonstrated curiosity and active use of AI tools, with a track record of integrating them into daily workflows and augmenting problem-solving - Clear, professional written communication for technical documentation and customer updates - Availability to work Monday through Friday 10:00 a.m.–6:00 p.m. Mountain Time and participate in a recurring monthly on-call rotation
Nice to have
- Background in security operations, enterprise technology, and network controls or protocols - Experience using AI-augmented development platforms to drive security automation and refine AI-based operational tooling - Deep interest in tracking the latest adversary tactics, techniques, and procedures
Benefits and work setup
- Comprehensive benefits covering health plans, paid time off for vacation and sick leave, parental leave options, retirement offerings, education reimbursement, and additional in-office perks - Disclosed U.S. base pay range provided in the posting