What you will do
- Manage operational tasks and provide day-to-day oversight for the InfoSec Engineering team
- Oversee engineers in their investigation and response activities when security incidents arise to determine possible cause and resolution
- Prioritize daily work tasks and delegate responsibilities as a means of adhering to service level targets (SLTs)
- Effectively communicate information to stakeholders of all levels
- Act as a lead throughout incident scenarios and provide subject matter expertise in cybersecurity incident response
- Successfully execute incident handling procedures as well as direct response to cyber security incidents
- Maintain current knowledge and recognition of attacker tools, tactics, and procedures to produce indicators of compromise (IOCs) that can be utilized during active and future investigations
- Conduct regular quality checks on cases and calls to ensure compliance with case handling procedures, thereby maintaining operational efficiency and adherence to standards
- Assess cyber threat intelligence/open-source intelligence and operationalizing that information
- Identify current and emerging threats and application of such research
- Assess cyber threat intelligence/open-source intelligence and operationalizing that information
- Identify current and emerging threats and application of such research
What you will bring
- 5-10 years of experience within a cybersecurity environment; experience in a leadership role is preferred
- Experience in a security operations center, or similar environment, and identifying indications of compromise or attack and responding to incidents
- Endpoint and network security experience required; IDS, IPS, EDR, ATP, Malware defenses and monitoring experience
- Threat hunting experience preferred
- Knowledge of common adversary tactics and techniques, e.g., obfuscation, persistence, defense evasion, etc.
- Knowledge of Mitre ATT&CK framework preferred
- Working knowledge of incident response procedures
- Experience with SQL query construction preferred
- Experience with OSQuery is a plus
- Experience administering and supporting Windows OS (both workstations and server) and one of the following: Apple or Linux-based operating systems (e.g. XP, Windows 7, 2003, 2008, OS X)
- Fundamental understanding of network traffic analysis including TCP/IP, routing, switching, protocols, etc.
- Strong understanding of Windows event log analysis
- Experience with enterprise information security data management - SIEM experience a plus
- Programming and scripting skills - proficient knowledge of Powershell is a plus
- Excellent troubleshooting and analytical thinking skills
- Strong documentation and communication skills
- Advanced Cyber Security certifications preferred but not required
- Excellent customer service skills
- Passion for all things information technology and information security
- Natural curiosity and ability to learn new skills quickly
- Ability to think outside the box
- Innovative mindset
Other Jobs from Sophos
Software Engineer (SDET- MSG)
Senior DevOps Engineer (Build & Release)
Technical Support Engineer L2 x 2 (Network Security)
Senior Software Development Engineer In Test
Similar Jobs
Senior Data Engineer
System and Memory Development Engineer
Sr. Software Engineer - Indexing
Product Data Analyst
(Senior) Fullstack Engineer
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 401 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say