Job Closed

This listing is no longer active.

Zscaler logo
Zscaler

Zscaler helps leading organizations in 180+ countries securely transform their networks and applications for a mobile and cloud-first world. Founded in 2008, th

Threat Response Engineer (4th Shift)

Security OperationsSecurity OperationsOtherRemoteMid LevelTeam 8,697Since 2007Company Site

Location

United States

Posted

86 days ago

Salary

$101.5K - $125K / year

Seniority

Mid Level

Bachelor Degree5 yrs expEnglishPalo Alto Networks

Job Description

Threat Response Engineer (4th Shift)

Zscaler

About Zscaler Zscaler accelerates digital transformation to ensure our customers can be more agile, efficient, resilient, and secure. As an AI-forward enterprise, we are constantly pushing the envelope, leveraging the world’s largest security data lake to power our cloud-native Zero Trust Exchange platform. This innovation protects our customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location. Here, impact in your role matters more than title and trust is built on results. We say, impact over activity. We seek innovators who actively use AI to amplify their impact and who thrive in an environment where we leverage intelligent systems to stay ahead of evolving threats. We believe in transparency and value constructive, honest debate—we’re focused on getting to the best ideas, faster. We build high-performing teams that can make an impact quickly and with high quality. To do this, we are building a culture of execution centered on customer obsession, collaboration, ownership, and accountability. We value high-impact, high-accountability with a sense of urgency where you’re enabled to do your best work and embrace your potential. If you’re driven by purpose, thrive on solving complex challenges, and want to be part of the team that’s helping to secure the AI age, we invite you to bring your talents to Zscaler and help shape the future of cybersecurity. The Red Canary Threat Response Engineering team is on the front lines, acting as the virtual boots on the ground for our customers to respond to and remediate threats. You will drive investigations using Endpoint Detection and Response (EDR) and Identity telemetry to perform behavioral analysis and threat hunting while leveraging the Red Canary platform to take immediate action. We aim to maximize efficiency and minimize customer vulnerability by finding innovative uses for existing tools and developing new ones. Our team provides customers with the confidence that any compromises will be fully remediated, allowing them to remain focused on their core business operations. Role We are looking for an experienced Threat Response Engineer to join our Active Remediation team. This is a remote role, reporting to the Senior Manager, Threat Response Engineering. You will perform investigations into detected threats, using customer security products to analyze, contain, and remediate issues while providing thorough reports. This role requires the ability to work a Wednesday – Saturday 10pm – 8am Mountain Time shift and participate in a 24x7 on-call rotation to ensure our customers remain protected. What you’ll do (Role Expectations) - Perform investigations into detected threats and leverage security products to analyze, contain, and remediate threats in customer environments - Provide customers with thorough reports of actions taken to ensure clarity on environment cleanup and protection strategies - Identify and implement effective response strategies to further enhance the security posture of the customer base - Collaborate with Detection Engineering, Threat Hunting, Intel, and Product teams to develop innovative methods for timely threat remediation - Prioritize and execute tasks effectively in a fast-paced operational environment while maintaining a 24x7 on-call rotation Who You Are (Success Profile) - You thrive in ambiguity. You're comfortable building the path as you walk it. You thrive in a dynamic environment, seeing ambiguity not as a hindrance, but as the raw material to build something meaningful. - You act like an owner. Your passion for the mission fuels your bias for action. You operate with integrity because you genuinely care about the outcome. True ownership involves leveraging dynamic range: the ability to navigate seamlessly between high-level strategy and hands-on execution. - You are a problem-solver. You love running towards the challenges because you are laser-focused on finding the solution, knowing that solving the hard problems delivers the biggest impact. - You are a high-trust collaborator. You are ambitious for the team, not just yourself. You embrace our challenge culture by giving and receiving ongoing feedback—knowing that candor delivered with clarity and respect is the truest form of teamwork and the fastest way to earn trust. - You are a learner. You have a true growth mindset and are obsessed with your own development, actively seeking feedback to become a better partner and a stronger teammate. You love what you do and you do it with purpose. What We’re Looking for (Minimum Qualifications) - Strong analytical and problem-solving skills demonstrated through direct experience responding to security events and threats - Experience with Endpoint Detection and Response (EDR) products such as CrowdStrike, Microsoft Defender for Endpoint, SentinelOne, or Palo Alto Cortex - Foundational understanding of internal system functionality for Windows and MacOS operating systems - Experience with or professional familiarity with Identity security products - Professional and articulate communication skills with the ability to provide clear technical documentation What Will Make You Stand Out (Preferred Qualifications) - Experience with security operations, enterprise technology, and network controls or protocols - Proven interest in developing operational efficiencies via technology or process improvement - Deep interest in staying current with the latest adversary tactics, techniques, and procedures #LI-DB1 #LI-Remote Zscaler’s salary ranges are benchmarked and are determined by role and level. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations and could be higher or lower based on a multitude of factors, including job-related skills, experience, and relevant education or training. The base salary range listed for this full-time position excludes commission/ bonus/ equity (if applicable) + benefits. Base Pay Range $101,500—$125,000 USD At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure. Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including: - Various health plans - Time off plans for vacation and sick time - Parental leave options - Retirement options - Education reimbursement - In-office perks, and more! Learn more about Zscaler’s Future of Work strategy, hybrid working model, and benefits here. By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines. Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws. See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegal link. Pay Transparency Zscaler complies with all applicable federal, state, and local pay transparency rules. Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.

Benefits

  • 401(K), 401(K) matching, Adoption Assistance, Company equity, Company sponsored family events, Dedicated diversity and inclusion staff, Dental insurance, Disability insurance, Volunteer in local community, Employee stock purchase plan, Family medical leave, Generous parental leave, Health insurance, Life insurance, Charitable contribution matching, Mentorship program, Open office floor plan, Paid sick days, Onsite office parking, Partners with nonprofits, Performance bonus, Pet insurance, Lunch and learns, Free snacks and drinks, Team based strategic planning, OKR operational model, Tuition reimbursement, Mandated unconscious bias training, Vision insurance, Wellness programs, Some meals provided, Mental health benefits, Diversity employee resource groups, Hiring practices that promote diversity, Fertility benefits, Employee resource groups, Hybrid work model, President's club, Employee awards, Diversity recruitment program, Pension, Transgender health care benefits, Mother's room, Personal development training, Flexible time off, Bereavement leave benefits

Related Categories

Related Job Pages

More Security Operations Jobs

OtherRemoteTeam 501-1,000Since 2005H1B No Sponsor

Reddit is a community of communities. It’s built on shared interests, passion, and trust, and is home to the most open and authentic conversations on the internet. Every day, Reddit users submit, vote, and comment on the topics they care most about. With 100,000+ active communities and approximately 121 million daily active unique visitors, Reddit is one of the internet’s largest sources of information. For more information, visit www.redditinc.com. Reddit is continuing to grow our teams with the best talent. This role is completely remote friendly within the United States. If you happen to live close to one of our physical office locations (San Francisco, Los Angeles, New York City & Chicago) our doors are open for you to come into the office as often as you'd like. The Threat Detection and Enforcement team operates at the forefront of online safety, dedicated to detecting and preventing novel and systemic threats that compromise user experience and platform integrity. We proactively lead complex investigations, synthesize qualitative and quantitative data into compelling narratives, and translate signals into scalable actions. We are a highly influential, cross-functional partner, providing the critical context and foresight necessary for Policy, Engineering, Product Management, and Safety ML to build durable, long-term solutions to the most challenging safety problems. As the leader of the Threat Detection and Enforcement Ops team, you will execute on our proactive threat detection strategy and oversee the operational programs that convert investigative insights into scalable enforcement. You will be the strategic and operational leader for a team of Threat Analysts and Policy Enforcement Experts. You will oversee the team responsible for the entire lifecycle of emerging and systemic threats—from initial detection and deep investigation through cross-functional translation and the implementation of scaled enforcement and mitigation strategies. Your primary mission is to ensure the team consistently delivers high-impact, timely, and unbiased threat assessments and acts as the core operational and policy subject matter experts, driving the seamless transition from unknown threat or platform policy to a durable, enforced solution. Success in this role looks like: a measurable shift toward proactive detection, reduced time-to-mitigation for emerging threats, and improved scalability and accuracy of enforcement systems. Responsibilities: - Lead the strategic investigative roadmap by prioritizing the detection of emerging and systemic threats and ensuring the team surfaces novel safety problems for documentation and study. - Transform complex safety issues into data-driven narratives that enable cross-functional partners in Policy, Product, and Engineering to make informed and timely decisions. - Establish proactive processes and performance metrics to shift the organization away from reactive responses and provide partners with the necessary time to address threats. - Direct scaled enforcement programs and operational strategies by partnering with Data teams to improve safety tooling and ensure policy intent is accurately translated into action. - Manage high-pressure escalations and rapid response frameworks using deep policy expertise to mitigate immediate harm and guide the product lifecycle from development to deployment. - Mentor a high-performing team of analysts while acting as a strategic partner to executive leadership to ensure threat insights are integrated into long-term safety planning. Required Qualifications: - 5+ years of relevant experience in Trust & Safety, Safety Operations, Threat Intelligence, or a related field, with 1-2+ years in a leadership/management role leading operational or enforcement teams. - Prior domain experience in Trust & Safety operations, with an understanding of policy complexities and the challenges they present in content moderation, scaled enforcement, and real-time incident response. - Background in scaled enforcement program development, content moderation concepts, and leveraging data analysis to drive continuous improvement in tooling and scalability. - Familiarity with AI safety concepts (e.g., model evaluation, data quality, labeling) and a track record of applying operational rigor to new technologies - Well-versed in Operations Performance Metrics and a proven track record of leading and functioning effectively during high-pressure P0 escalations and critical incident response. - Understanding of the threat landscape, modern enforcement techniques, and the lifecycle of online harm (detection, investigation, mitigation, and scaling). - Exceptional ability to synthesize highly complex investigative findings into actionable, data-driven strategies for product/engineering teams. - Demonstrated ability to build effective cross-functional partnerships and acting as a sought-out SME by cross-functional partners (Product, Legal, Comms, Policy). - Benefits: - Comprehensive Healthcare Benefits and Income Replacement Programs - 401k with Employer Match - Global Benefit programs that fit your lifestyle, from workspace to professional development to caregiving support - Family Planning Support - Gender-Affirming Care - Mental Health & Coaching Benefits - Flexible Vacation & Paid Volunteer Time Off - Generous Paid Parental Leave #LI-SP1 Pay Transparency: This job posting may span more than one career level. In addition to base salary, this job is eligible to receive equity in the form of restricted stock units, and depending on the position offered, it may also be eligible to receive a commission. Additionally, Reddit offers a wide range of benefits to U.S.-based employees, including medical, dental, and vision insurance, 401(k) program with employer match, generous time off for vacation, and parental leave. To learn more, please visit https://www.redditinc.com/careers/. To provide greater transparency to candidates, we share base salary ranges for all US-based job postings regardless of state. We set standard base pay ranges for all roles based on function, level, and country location, benchmarked against similar stage growth companies. Final offer amounts are determined by multiple factors including, skills, depth of work experience and relevant licenses/credentials, and may vary from the amounts listed below. The base salary range for this position is: $167,500—$234,500 USD In select roles and locations, the interviews will be recorded, transcribed and summarized by artificial intelligence (AI). You will have the opportunity to opt out of recording, transcription and summarization prior to any scheduled interviews. During the interview, we will collect the following categories of personal information: Identifiers, Professional and Employment-Related Information, Sensory Information (audio/video recording), and any other categories of personal information you choose to share with us. We will use this information to evaluate your application for employment or an independent contractor role, as applicable. We will not sell your personal information or disclose it to any third party for their marketing purposes. We will delete any recording of your interview promptly after making a hiring decision. For more information about how we will handle your personal information, including our retention of it, please refer to our Candidate Privacy Policy for Potential Employees and Contractors. Reddit is proud to be an equal opportunity employer, and is committed to building a workforce representative of the diverse communities we serve. Reddit is committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If, due to a disability, you need an accommodation during the interview process, please let your recruiter know.

United States
$167K - $234K / year
Job Closed
OtherRemoteTeam 201-500Since 2008H1B Sponsor

• Monitor and triage alerts from Microsoft Defender for Cloud, Azure security logs, and other security platforms • Investigate security events and document findings in accordance with incident response procedures • Escalate confirmed threats and coordinate remediation with appropriate teams • Manage and track operational security alerts to closure • Support vulnerability remediation tracking and follow-up • Maintain accurate incident documentation and reporting • Participate in security monitoring improvements and detection tuning

United States
Job Closed
Full TimeRemoteTeam 1,001-5,000Since 1920H1B Sponsor

• Implement technical measures from the Kelvion Cyber Security Strategy • Further advance the security architecture • Operate, maintain, and enhance existing security tools • Participate in technical security projects • Work closely with Group IT, Local IT, and external SOC • Manage the external SOC provider and support operational tasks • Analyze security findings and implement necessary improvements • Create and maintain documentation for security processes and tools

Germany
OtherRemoteTeam 11-50H1B No Sponsor

Avint is hiring a **Cybersecurity Analyst (SOC Analyst / Threat Monitoring & Response)** to support and protect critical systems within the HACS program at FRTIB HQ. In this role, you’ll monitor security events, analyze threats, and support incident response efforts to maintain a strong cybersecurity posture.

United States
Job Closed