Job Closed

This listing is no longer active.

Proficio logo
Proficio

Proficio provides 24/7 security monitoring, threat detection, alerting and response services.

MEDR Threat Engineer

Location

United States

Posted

97 days ago

Salary

0

Seniority

Mid Level

English

Job Description

MEDR Threat Engineer

Proficio

Proficio is an award-winning managed detection and response (MDR) services provider. We provide 24/7 security monitoring, investigation, alerting and response services to organizations in healthcare, financial services, manufacturing, retail and other industries. Take a video tour of our global network of 24/7 Security Operations Centers (SOCs). Proficio has been highlighted in Gartner’s Market Guide for Managed Detection and Response Services for the last five consecutive years. MSSP Alert ranks Proficio among the top 250 global Managed Security Services Providers (MSSPs). We have a track record of innovation. Proficio invented the concept of SOC-as-a-Service. We were the first MSSP to provide automated response services and are the only company in our space with a patent for cyber risk scoring and security posture gap analysis. Our typical client is a medium to large-sized organization that lacks the in-house resources to address the challenges of a rapidly changing threat landscape. The difficulty of hiring and retaining cybersecurity professionals are widely understood. Our prospective clients are also challenged to effectively harness technology and build hardened processes that reduce the risk of security breaches. While Proficio has developed a unified service delivery platform designed to meet the needs of the most demanding clients, what sets us apart is the quality and passion of our people. We believe the SOC of the Future will meld the creativity of human intelligence with the power of advanced technologies like AI. Proficio’s commitment to developing and promoting our team members is unparalleled in our industry. Most of our senior managers were promoted from within. Summary: The Managed Infrastructure Services team is seeking an experienced MEDR Threat Engineer who is technical, collaborative, and truly excited about working on endpoint products. In this role, you will bring your in-depth knowledge of the endpoint and detection response tasks to help guide the evolution of Proficio's Managed EDR visibility, detection, and prevention technologies. You will work closely with engineering, project managers, Hosted & managed SIEM team, sales, and other departments. You will bring existing knowledge about product EDR best practices and apply them in delivering significant new features and enhancements. The successful candidate will have the ability to interface and influence cross-functional teams throughout the company. Responsibilities: - Act as the SME for initiatives that enhance EDR visibility, detection, and prevention for Windows, macOS, and Linux - Develop and enhance SOAR workflows and playbooks, integrating them with EDR systems for more effective incident response and threat management - Innovate and implement sophisticated SOAR solutions, including custom automated workflows and orchestration that address high-level security challenges - Define and maintain strategy and roadmap for Carbon Black and CrowdStrike, and Sentinel One’s Detection functionalities with other team members, and other departments. - Collaborate closely with SOC, Managed/Hosted SIEM team to understand threat and attack trends - Utilize strategic insight and organizational skills to identify unmet customer needs, define use cases, and advance the functional capabilities of this offering - Maintain, administer and provide end point security management tools (anti-virus, data loss prevention, web/spam filtering, etc.) - Assist customers with viruses and system vulnerabilities/threats - Implement efficiencies and create strategies to better detect/respond to cyber incidents, alerts and detections. - Escalate detections/incidents/alerts to our customers through the ITSM/ITIL tools

Job Requirements

  • 4+ years of experience with IT in a professional work environment
  • 3+ years of experience with deployment, configuration, or maintenance to support Enterprise EDR Solutions, including CrowdStrike Falcon, Microsoft Defender, and/or Sentinel One
  • Additional experience in Cisco Secure Endpoint and Sophos are pluses
  • 3+ years of experience in EDR and/or AV; previous work in malware and attack analysis (is Plus), research, investigation, and response highly desirable
  • 1+ years of experience with performing systems administration, including basic troubleshooting and installation, monitoring system performance or availability and performing security upgrades
  • Knowledge of network security architecture concepts including topology, protocols, components, and principles
  • Knowledge of various Enterprise Operating System (OS) configurations and management tools for use during deployment, configuration, and management of EDR solutions
  • Additional Qualifications:
  • Good to have experience working in a Security Operations Center (SOC) environment including Incident Response, Vulnerability Scanning, Threat Hunting, Network Monitoring/Log Management, or Compliance Management
  • Good to have experience with complimentary Enterprise Security Tools including Security Information & Event Management (SIEM), Threat Intelligence Platforms (TIPs), or Network Monitoring Tools
  • Experience with triaging security events in a security operations center (SOC) environment, leveraging data collected from enterprise security solutions
  • Knowledge of intrusion detection methodologies and techniques for detecting host and network-based intrusions
  • Ability to integrate Cybersecurity data using enterprise or custom tools data aggregation and analysis tools, including Splunk and Elastic

Benefits

  • Salary $85K
  • Peer training and mentoring with upward mobility
  • Health, Dental and Vision plans available first of the month and other benefits available from day 1
  • Unlimited Flex Time Off
  • 401K plan
  • Gym reimbursement
  • Employee Assistance Program
  • Life and Voluntary Life Insurance programs
  • A culture that is flat enough for you to have a “seat at the table”, but layered enough to provide you with mentoring and support
  • A place to work where security is considered a “team sport” – we work together to identify and stop cyber attacks
  • Proficio is an EOE Employer
  • Proficio collects certain personal information upon your submission of an application for an open position. More information is available about your consumer rights and our privacy policy at www.proficio.com/privacypolicy

Related Job Pages

More Threat Intelligence Specialist Jobs

Senior Manager, Competitive Intelligence

Nuvalent

Nuvalent is a biotechnology research company developing precisely targeted therapies for patients with cancer. To do so, Nuvalent employs professionals across a

The Company: With deep expertise in chemistry, Nuvalent is working to create selective medicines designed with the goal to address the needs of patients with cancer. Nuvalent is an exciting early-stage company, bringing together experienced scientists and industry veterans with a proven track record in drug discovery, oncology drug development, and company building. The Role: Reporting to the Associate Director, Corporate Strategy, the Senior Manager, Competitive Intelligence (CI), will support CI activities across Nuvalent's portfolio. CI is a key function within Nuvalent, and this role is a great opportunity to have broad visibility across the organization. The key focus for this role is driver mutated solid tumors, particularly ALK+, ROS1+, and HER2m NSCLC. The role also includes monitoring of the strategies, programs, and capabilities of competitors in research, development, and promotional areas, as well as overall industry trends. Within this role, you will support decision making, foster a competitive mindset, and collaborate with a broad cross-functional group of therapeutic area partners (including Commercial, Medical Affairs, Clinical, Discovery, Regulatory, and Legal) as well as Senior Leadership. You will be responsible for collecting, synthesizing, and delivering key insights and implications to our business in the competitive environment, related to marketed products, pipeline assets, and external opportunities. These activities are structured around key strategic business questions that you will define in partnership with the Corporate Strategy team and relevant cross-functional stakeholders. Responsibilities: - Utilizing systematic processes to gather and summarize competitive information that is relevant to Nuvalent's business needs - Providing context and objective analysis of competitive (commercial, clinical, and scientific) information to enable actions and business decision-making - Building and updating databases on competitive landscape - Providing medical conference coverage, some travel may be required - Evaluating and making recommendations on CI tools, processes, and services, and as needed, manage third party agencies/projects to source relevant CI - Presenting key competitive information to teams and leadership throughout the organization through oral and written communication - Participate in the formulation of product/franchise strategies based on data and insights derived from CI, market research, and forecasting analyses. Competencies: - Knowledge regarding the drug development and commercialization process in order to assess and contextualize competitive efforts, particularly in oncology - Ability to interpret and synthesize pre-clinical and clinical scientific data and identify broader implications for our programs and / or specific opportunities. - Strong relationship management skills with internal stakeholders and external contacts and resources. - Proven ability to present at and facilitate small-group and large-group meetings (with peers as well as superiors) to achieve pre-defined objectives. - History of effective written communication skills (including both PowerPoint and Word/email mediums). - Excellent task management skills (specifically project planning, prioritization, objective setting, meeting management and plan execution) are required. Qualifications: - Bachelor’s degree or related experience - 3-5 years of experience in pharma/biotech/life sciences consulting - Experience in use of online data sources and scientific/market databases (e.g., PubMed, clinicaltrials.gov, TrialTrove, AlphaSense, etc.) - History of independence in researching, formulating, and delivering CI assessments (including basic information as well as strategic insights based on that information). Additional Information: Nuvalent is committed to fair and equitable compensation practices, aiming to provide employees with competitive total rewards packages. The targeted salary range below reflects what Nuvalent reasonably and in good faith expects to offer for this position at the time of posting, but the final salary determination may be within or outside this range based on various factors, including, but not limited to, experience, skills, education, and market factors. The range will be reviewed regularly and is subject to change. Nuvalent also offers a comprehensive benefit package to support our employees at each stage of their career, financial, health, and well-being journey, including medical, dental, and vision insurance, 401(k) retirement savings plan, generous paid time off (including a summer and winter company shutdown), and much more. Annual Salary Range $150,000—$175,000 USD Nuvalent provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to religion, race, creed, color, sex, sexual orientation, alienage or citizenship status, national origin, age, marital status, pregnancy, disability, veteran or military status, predisposing genetic characteristics or any other characteristic protected by applicable federal, state or local law. Nuvalent is aware that many companies are dealing with fraudulent job postings on third-party employment search sites and/or individual(s) or entities claiming to be employees of such companies. Those involved are offering fraudulent employment opportunities to applicants, often asking for sensitive personal and financial information, and using such information for criminal activities. Please be advised that all legitimate correspondence from a Nuvalent employee will come from "@nuvalent.com" email accounts. Automated system response emails from our Greenhouse applicant tracking system come from a “no-reply@greenhouse.io” email address. There are no variations of these email addresses and Nuvalent would not request personal and/or financial information via email. Job opportunities would only be extended after a completed job application is submitted by a candidate and a thorough interview process including 1:1 and/or group interviews via phone, video conferencing and/or in-person. If you believe you have been contacted by anyone misrepresenting themselves as an employee of Nuvalent, please contact Nuvalent at 857-357-7000. Thank you.

United States
$150K - $175K / year
Job Closed
UPS logo

Sr Cyber Intelligence Analyst-Remote

UPS

The UPS Store, Inc., a wholly owned subsidiary of UPS, is the world's largest franchisor of retail shipping, postal, printing, and business service centers. The UPS Store® has over 5,000 independently owned locations in the U.S. and Canada.

OtherRemoteTeam 10,001+Since 1907H1B Sponsor

Before you apply to a job, select your language preference from the options available at the top right of this page. Explore your next opportunity at a Fortune Global 500 organization. Envision innovative possibilities, experience our rewarding culture, and work with talented teams that help you become better every day. We know what it takes to lead UPS into tomorrow—people with a unique combination of skill + passion. If you have the qualities and drive to lead yourself or teams, there are roles ready to cultivate your skills and take you to the next level. Job Description: Job Summary This position engages in the identification, tracking, monitoring, containment and mitigation of information security threats. He/She performs quality assurance functions to validate that existing methods of research are successful in identifying and documenting security incidents. This position defines procedures for analysis and makes adjustments as technologies and methodologies advance. Responsibilities: - Assesses, prioritizes and takes action on requests that improve existing Security Operation Center (SOC) tools and procedures. - Partners with management to coordinate security incident response efforts to communicate information, drive resource actions and decisions, provide recommendations, and ensure resolution. - Evaluates and analyzes complex malicious code through the use of tools including disassemblers, debuggers, hex editors, un-packers, virtual machines and network sniffers. - Conducts reverse-engineering for known and suspected malware files. - Investigates instances of malicious code to determine attack vector and payload, and to determine the extent of damage and data exfiltration. - Performs research in the area of malicious software, vulnerabilities, and exploitation tactics, and recommend preventative or defensive actions. - Produces reports detailing attributes and functionality of malware, and indicators that can be used for malware identification/detection, to include behavior, identified infrastructure used for command and control, and mitigation techniques. - Analyses the relationship between a given sample of malware and other known samples/families of malware, and notable features that indicate the origin or sophistication of the malware and its authors. Qualifications: - 2-3 years' experience as Security Operations Center (SOC) Analyst including Incident Response and Handling roles - Experience in Malware Reverse Engineering and Sandboxing - Experience with IBM QRadar - Significant experience with Linux, TCP/IP, UNIX, MS-Windows, IP Routing, Firewalls and IPS - Understanding of behavioral based threat models, including ATT&CK, Cyber Kill Chain, Diamond Model, etc. - Deep understanding of advanced cyber threats targeting enterprises, along with the tools, tactics, and procedures used by those threats - Demonstrated experience using Open Source (OllyDbg, Radare, GDB, etc.) malware analysis tools - Ability to analyze shellcode, and packed and obfuscated code, and their associated algorithms - Ability to develop network and host based signatures to identify specific malware. Recommend heuristic or anomaly based detection methods - Subject matter expertise in the detection, analysis and mitigation of malware - Experience with Information Security Research, Malware Reverse Engineering, Cyber Threat Analysis, Windows Operating System and Data Analysis - Knowledge of Research skills, Technical Writing, Information Security Research, Security Incident Response, Security Risk Assessment/Analysis - Bachelor’s Degree or International equivalent - Preferred INTERNALS Pay Grade: 20H Employee Type: Permanent UPS is committed to providing a workplace free of discrimination, harassment, and retaliation. Employer will sponsor visas for specific positions. UPS is an equal opportunity employer. UPS does not discriminate on the basis of race/color/religion/sex/national origin/veteran/disability/age/sexual orientation/gender identity or any other characteristic protected by law.

United States
Job Closed
Manpower/itec logo

Cyber Security Specialist

Manpower/itec

Since 1999, ITEC has delivered mission-critical support to the DoD and Intelligence Community. Now part of ManpowerGroup Public Sector (MGPS), we continue that work with expanded capabilities.

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description The Cyber Security Specialist 2 may identify and resolve highly complex issues to prevent cyber-attacks on information systems and to keep computer information systems secure from interruption of service, intellectual property theft, network viruses, data mining, financial theft, and theft of sensitive customer data, allowing business to continue as normal. This is accomplished through the systematic implementation of a cyber framework and process. - Designs, installs, and manages security mechanisms that protect networks and information systems against hackers, breaches, viruses, and spyware. - Responds to incidents, investigates violations, and recommends enhancements to plug potential security gaps. - Performs security control implementation and evidence collection for RMF steps. - Supports OA documentation and continuous monitoring activities. - Assists in automation tool usage for compliance and risk scoring; maintains system security plans and POA&Ms. Qualifications - U.S. Citizenship Mandatory: Candidates for this position are required to be a US Citizen and will be subject to a background investigation. Requirements - Required Clearance: Public Trust Benefits - Comprehensive benefits package - Competitive pay

United States
Job Closed
Manpower/itec logo

Cyber Security Specialist 3

Manpower/itec

Since 1999, ITEC has delivered mission-critical support to the DoD and Intelligence Community. Now part of ManpowerGroup Public Sector (MGPS), we continue that work with expanded capabilities.

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description The Cyber Security Specialist 3 may identify and resolve highly complex issues to prevent cyber attacks on information systems and to keep computer information systems secure from interruption of service, intellectual property theft, network viruses, data mining, financial theft, and theft of sensitive customer data, allowing business to continue as normal. This is accomplished through the systematic implementation of a cyber framework and process. - Designs, installs, and manages security mechanisms that protect networks and information systems against hackers, breaches, viruses, and spyware. - Responds to incidents, investigates violations, and recommends enhancements to plug potential security gaps. - Level 3 is competent in subject matter and concepts and generally considered a specialist in area of assignment. - May lead individuals assisting in the work. - Execute RMF tasks and Security Control Assessments (per NIST SP 800 37/800 53A), collect evidence, and prepare OA packages/ briefings. - Use automated tools and AI for control testing, risk scoring, and continuous assessments; maintain risk register and compliance reporting. Qualifications - U.S. Citizenship Mandatory: Due to our US federal government contract, candidates for this position are required to be a US Citizen and will be subject to a background investigation. Company Description Since 1999, ITEC has delivered mission-critical support to the DoD and Intelligence Community. Now part of ManpowerGroup Public Sector (MGPS), we continue that work with expanded capabilities. Employees hired through this process will join MGPS and receive a comprehensive benefits package and competitive pay.

United States
Job Closed