Ralliant, originally part of Fortive, now stands as a bold, independent public company driving innovation at the forefront of precision technology. With a global footprint and a legacy of excellence, we empower engineers to bring next-generation breakthroughs to life — faster, smarter, and more reliably. Our high-performance instruments, sensors, and subsystems fuel mission-critical advancements across industries, enabling real-world impact where it matters most. At Ralliant we're building the future, together with those driven to push boundaries, solve complex problems, and leave a lasting mark on the world. Tektronix, a wholly owned subsidiary of Ralliant Corporation, is a place where people are challenged to explore the boundaries of what’s possible, bringing the digital future one step closer every day. We believe that cultivating a deeper sense of loyalty and belonging is key to how we attract and retain our best people. This reality inspires our Inclusion & Diversity vision, We Are More Together, and guides our approach as we all work toward creating great places where our teams work and thrive. Realize your true potential at Tektronix – join us in revolutionizing a better tomorrow!
Cyber Defense Generalist – Americas
Location
United States
Posted
38 days ago
Salary
$66.9K - $124K / year
Seniority
Mid Level
Job Description
Cyber Defense Generalist – Americas
Ralliant
Role Description Role located in Beaverton, OR or West Coast Remote The Cyber Defense Generalist – Americas is a hands-on cyber defense practitioner supporting regional security operations across North and South America. The primary objective of this role is to detect, analyze, contain, and support the resolution of business-impacting security threats and events through disciplined execution of security operations processes. This role operates within a 24x7 security operations environment, contributing to incident response, alert triage, threat analysis, threat hunting, and data loss prevention (DLP) investigations under established playbooks and escalation models. The L2 Generalist acts as a reliable second-line responder, handling more complex investigations, supporting incident commanders, and ensuring high-quality evidence, documentation, and communication. The role provides operational support for U.S. Government–regulated and customer-controlled environments, including CMMC-aligned environments, executing incidents and investigations in a defensible, audit-ready manner consistent with contractual and regulatory requirements. The Cyber Defense Generalist works in close partnership with global Security Operations, Cyber Defense Engineering, GRC, Audit, IT Shared Services, Infrastructure and Cloud teams, Identity teams, and engages Legal, HR, and Privacy through defined workflows when required. Execution is aligned to the Ralliant Business System (RBS), emphasizing standard work, repeatability, continuous improvement, and measurable outcomes. Key Responsibilities - Execute SOC operations including alert investigation, correlation, case management, escalation, and shift handoff in alignment with 24x7 operational coverage models. - Perform incident response activities, including detailed analysis, containment support, evidence collection, and recovery coordination under direction of the incident commander. - Support incident command by providing timely technical findings, impact assessments, and clear updates suitable for operational and executive audiences. - Operate, tune and Manage SIEM (LogScale) for Security operations activities. - Investigate and respond to DLP alerts, applying defined workflows, documentation standards, and escalation criteria, and coordinating with Legal, HR, and Privacy for sensitive cases. - Conduct threat analysis and targeted threat hunting, identifying indicators of compromise, validating detections, and surfacing control gaps or improvement opportunities. - Translate threat intelligence into actionable investigative steps, detection feedback, and response recommendations. - Support exposure and vulnerability response activities by validating exploitability, assisting with risk-based prioritization, and tracking remediation or exception outcomes. - Ensure high-quality documentation and evidence handling to support audits, customer inquiries, and regulatory obligations, particularly for regulated environments. - Contribute to continuous improvement by providing feedback on detections, false positives, playbooks, and operational workflows. - Participate in simulations, tabletop exercises, and after-action reviews, incorporating lessons learned into day-to-day execution. - Follow RBS-aligned standard work, including runbooks, playbooks, checklists, and tooling, to ensure consistent, repeatable, and auditable operations. - Partner with Cyber Defense Engineering to improve detection coverage and fidelity across endpoint, identity, cloud, SaaS, email, and network telemetry, including tuning to reduce false positives and increase high confidence detections. - Execute threat hunts focused on both security and resilience, identifying control gaps, validating defensive assumptions, and improving readiness for high impact scenarios. Qualifications - Bachelor’s degree recommended; equivalent practical experience considered. - 3–6+ years of experience in security operations, incident response, or cyber defense roles. - Demonstrated hands-on experience investigating security alerts and incidents across endpoint, identity, cloud, SaaS, email, and network domains. - Experience supporting regulated or customer-driven security environments; familiarity with CMMC and NIST SP 800‑171 expectations is preferred. - Practical experience with DLP investigation and response workflows, including handling sensitive data loss scenarios with discretion and defensible documentation. - Practical experience in managing and operating a SIEM solution – from ingest to reporting. - Working knowledge of threat intelligence consumption and basic threat hunting techniques. - Experience collaborating with infrastructure, cloud, identity, and application teams during incident response or remediation activities. - Strong written and verbal communication skills, with the ability to clearly document technical findings and explain risk and impact. - Ability to operate effectively in a global, multi-time-zone environment while maintaining consistency with enterprise standards. - Alignment with Ralliant values and the Ralliant Business System (RBS), including ownership, transparency, and continuous improvement. #LI-JW2 Ralliant Corporation Overview Ralliant, originally part of Fortive, now stands as a bold, independent public company driving innovation at the forefront of precision technology. With a global footprint and a legacy of excellence, we empower engineers to bring next-generation breakthroughs to life — faster, smarter, and more reliably. Our high-performance instruments, sensors, and subsystems fuel mission-critical advancements across industries, enabling real-world impact where it matters most. At Ralliant we’re building the future, together with those driven to push boundaries, solve complex problems, and leave a lasting mark on the world. We Are an Equal Opportunity Employer. Ralliant Corporation and all Ralliant Companies are proud to be equal opportunity employers. We value and encourage diversity and solicit applications from all qualified applicants without regard to race, color, national origin, religion, sex, age, marital status, disability, veteran status, sexual orientation, gender identity or expression, or other characteristics protected by law. Ralliant and all Ralliant Companies are also committed to providing reasonable accommodations for applicants with disabilities. Individuals who need a reasonable accommodation because of a disability for any part of the employment application process, please contact us at applyassistance@Ralliant.com. Pay Range The salary range for this position (in local currency) is 66900.00-124300.00 Is this role subject to ITAR? The essential duties of this position require adherence to U.S. Government export control regulations. Accordingly, candidates must either be U.S. Persons (i.e., U.S. citizens, U.S. lawful permanent residents, or protected individuals as defined by 8 U.S.C. 1324b(a)(3)) or be prepared to collaborate with the company in securing the necessary U.S. government export authorizations. While the company encourages all interested applicants to apply, please be aware that ongoing employment is dependent upon obtaining the appropriate government export authorizations.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Lead efforts that are focused on protecting patients, our employees, and Aledade as a whole • Develop and lead the IAM team • Develop an IAM roadmap by working closely with various departments • Ensure that key threats and risks are managed • Collaborate well and deliver high business impact on multiple projects of increasing dependencies and ambiguity
Surveillance Investigator I
Command Investigations, LLCCommand Investigations, founded in 2012, is a nationally recognized investigations firm offering surveillance, remote investigations, desktop intelligence, and specialty services to the insurance defense industry. Grounded in core values of integrity, service, and results, we deliver fast, reliable outcomes and treat every client like they are our only client. Our team leverages cutting-edge technology to stay at the forefront of the industry. With headquarters in Lake Mary, Florida, our experts provide services across the U.S. on a national scale.
Role Description Command Investigations, LLC is looking for Surveillance Investigators to become part of a dynamic team. This is a great opportunity for individuals with prior investigative experience who demonstrate integrity, independence, and a drive to succeed in a fast-paced investigative environment. In this role, you will: - Conduct field surveillance investigations by observing, tracking, and documenting subjects’ activities. - Capture detailed video evidence and prepare comprehensive reports for client review. - Conduct surveillance by monitoring, tracking, and recording subjects during daily activities. - Perform both vehicular and on-foot surveillance while maintaining complete cover and discretion. - Develop and execute pre-surveillance planning tailored to each location and case. - Record and document investigative findings through video and detailed written reports. - Capture subjects in a variety of environments, such as public spaces, events, and workplaces. - Submit comprehensive reports and video evidence within required timeframes. - Communicate consistently with team leaders regarding positions, observations, and tactical strategy. - Utilize digital surveillance equipment, web-based technology, and investigative software. - Maintain confidentiality and professionalism while representing Command Investigations. - Uphold safety standards and adhere to all legal and ethical requirements during surveillance operations. Qualifications - Highly observant and detail-oriented individuals. - Strong sense of integrity, independence, and reliability. - Excellent judgment and situational awareness. - Adaptability to changing environments and case demands. - Self-motivated professionals who can work autonomously. - Strong written and verbal communication skills. - Professional demeanor with a commitment to discretion and client confidentiality. - Eagerness to learn and grow within the investigative industry. Requirements - 0-1 years of experience required. - Possess a current private investigator license in the state of Louisiana. - Must be 21 years of age or older. - Valid driver’s license with clean DMV record. - High school diploma or equivalent required; college degree preferred. - Computer skills including the ability to upload video and still images from a camera into an electronic system. - Must carry personal auto insurance with liability limits of 100k/300k/100k. - Proficient reading skills and ability to follow directions required. - Must be able to work independently, provide excellent customer service, and demonstrate strong interpersonal, organizational, and multi-tasking skills. - Flexibility and effective time management are required. - Ability to work holidays, weekends, and overtime required. - Regular, predictable, and full attendance, as assigned, is an essential function of the job. - Willingness to travel and work the required schedule, starting as early as 3:00 AM. - Complete a Command Investigations, LLC employment application and submit to other pre-employment tasks as required for employment. Benefits - Accrued Paid Time Off. - Medical, Dental, Vision, and Life Insurance. - 401(k) Plan. - Employee Referral Program. - Paid Travel Time. - Daily Vehicle Allowance. - Reimbursement for case related expenses. - Overnight Pay. - Additional performance incentives – Monthly Hot Shot bonus along with Monthly Tiered bonus program based on performance. Company Description Command Investigations, founded in 2012, is a nationally recognized investigations firm offering surveillance, remote investigations, desktop intelligence, and specialty services to the insurance defense industry. Grounded in core values of integrity, service, and results, we deliver fast, reliable outcomes and treat every client like they are our only client. Our team leverages cutting-edge technology to stay at the forefront of the industry. With headquarters in Lake Mary, Florida, our experts provide services across the U.S. on a national scale. Command Investigations, LLC is an Equal Opportunity Employer.
Security Engineer II - Windows Security (Multiple Positions)
MicrosoftMicrosoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to any characteristic protected by applicable local laws, regulations, and ordinances.
Overview The Microsoft Windows Security team is looking for a learn-it-all security engineer that will help secure Microsoft Windows products and devices, with focus on offensive security and security engineering & mitigations for Windows. The Windows Security team is responsible for securing the Windows client and server operating systems, used by billions of customers every day and in businesses worldwide. This team performs security design reviews, code reviews, penetration testing, vulnerability research and driving systematic mitigations to security risks on Windows to make sure they meet the highest possible security standards and proactively defend cybersecurity threats. This role is hands-on, technically demanding, and central to strengthening the security posture of OS platforms. In this Security Engineer II - Windows Security role, you will uncover novel attack vectors, develop proof-of-concept mitigations, and partner directly with Windows product engineering teams to design durable & scalable defense. The ideal candidate will have hands-on experience with native code (C/C++), penetration testing (code audit, writing fuzzers, finding creative ways to break assumptions), a clear understanding of OS security fundamentals, solid computer science skills, and a passion for keeping Microsoft customers safe. Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond. Responsibilities - Participate in security reviews to identify and mitigate risk in Microsoft products, including design reviews, code reviews, and fuzzing. - Be the security contact for teams building new innovative products and technologies in the next version of Windows and devices. - Identify security vulnerabilities in a wide variety of key OS features such as network protocols, security features, and Microsoft devices. - Leverage a broad and current understanding of security to devise new protections. - Interact with the external security community and security researchers. - Collaborate with product teams to improve security, and articulate the business value of security investments. Qualifications Required Qualifications: - Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 1+ year(s) experience in security or related field - OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 2+ years experience in security or related field - OR equivalent experience. Other Requirements: Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include but are not limited to the following specialized security screenings: - Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter. Preferred qualification: - 2+ years identifying vulnerabilities in operating systems and/or native (C/C++) applications. - 5+ years of experience in a software engineering or security-related engineering. - Public track record of relevant security research, especially around vulnerability discovery. - Experience exploiting bugs and bypassing security mitigations in operating systems. - Familiarity with Microsoft Windows architecture. #W+DJOBS Penetration Testing IC3 - The typical base pay range for this role across the U.S. is USD $100,600 - $199,000 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $131,400 - $215,400 per year. Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here: https://careers.microsoft.com/us/en/us-corporate-pay This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled. Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.
• Engineer and operate modern security platforms. • Implement, run, and optimize enterprise-level security tooling across detection, identity, cloud, endpoint, and governance technologies. • Conduct deep-dive security assessments. • Evaluate systems, configurations, and architecture through hands-on testing and analysis—delivering actionable insights that directly influence engineering and business decisions. • Strengthen core security operations. • Support and mature processes such as: - Malware response and remediation - Vulnerability management and patch governance - SIEM log analysis, correlation, and monitoring - Incident documentation, reporting, and lifecycle management • Improve systems by design—not by accident. • Embed security into applications, infrastructure, and business initiatives from the outset, partnering with IT and engineering teams to identify risks and drive effective mitigations. • Contribute through data, insights, and experimentation. • Analyze trends, surface patterns, and help refine the firm’s Information Security Program through continuous improvement and cross-functional engagement.



