Perform investigations into detected threats using EDR, Network, and Identity telemetry to analyze, contain, and remediate threats in customer environments
Identify, scope, and manage ongoing customer incidents, developing remediation plans and providing thorough reports
Collaborate with Detection Engineering, Intelligence, Research, and Product Management teams to develop new approaches to threat remediation
Perform investigations into detected threats and leverage security products to analyze, contain, and remediate threats in customer environments.
Provide customers with thorough reports of actions taken to ensure clarity on environment cleanup and protection strategies.
Collaborate with Detection Engineering, Threat Hunting, Intel, and Product teams to develop innovative methods for timely threat remediation.
Zscaler accelerates digital transformation by providing a cloud-native Zero Trust Exchange platform that secures users, devices, and applications from cyberattacks and data loss. The company fosters a culture of execution centered on customer obsession, collaboration, ownership, and accountability, with a focus on innovation and transparency.
Investigate and analyze security alerts and incidents across endpoint, network, cloud, and identity environments.
Conduct proactive threat hunting, malware analysis, and deobfuscation of suspicious scripts.
Collaborate with senior analysts, document findings, and provide remediation recommendations.
The company operates a global Managed Detection and Response environment, protecting organizations from cyber threats. It has a remote-first culture with a collaborative team and opportunities for professional growth.
Monitor logs, alerts, and telemetry to detect threats across infrastructure and cloud environments.
Perform in-depth security analysis and investigations to assess risk and identify root causes.
Coordinate and execute incident response efforts including containment, mitigation, and recovery.
Binance.US is a licensed and regulated U.S. crypto platform providing secure access to over 190 cryptocurrencies. As a remote-first team, we innovate to bridge traditional finance and Web3, helping bring financial freedom within reach for all.
Monitor and triage security alerts from SIEM, EDR, and other sources to identify threats.
Perform initial investigations to validate alerts, assess severity, and determine root cause.
Document findings and communicate with clients and internal teams for effective incident response.
Netrix Global provides holistic IT solutions to help businesses run and scale securely. The company is a top system integrator ranked in the CRN VAR500, with a culture focused on ownership, collaboration, and respect.
Monitor and investigate security alerts and events across enterprise environments
Perform proactive threat hunting and support incident response efforts
Use Splunk SIEM for log analysis and work with EDR technologies like CrowdStrike and Cisco AMP
Cyderes builds practical Identity & Access Management and Exposure Management programs, helping organizations stop active threats fast with Managed Detection & Response integrated with existing tools. The company is a Great Place to Work® Certified™ global team operating across the United States, Canada, United Kingdom, and India.
Lead and mentor a team of Incident Response analysts during active security incidents.
Serve as the primary customer-facing lead during investigations and crisis situations.
Coordinate incident triage, containment, eradication, and recovery efforts.
Check Point Software Technologies is the world's leading vendor of cyber security, facing the most sophisticated threats and attacks. The company has been recognized by Time Magazine, Newsweek, and Forbes as a top employer, with a global team of driven and innovative employees.
Analyze, investigate, document, and report on security alerts or potential incidents in customer environments.
Process security investigation cases thoroughly and timely, and serve as an incident coordinator for urgent response and remediation.
Provide continuous feedback on process improvements and stay up-to-date on security training and emerging threats.
CyberSheath is a rapidly growing managed security services provider focused on cybersecurity for the Defense Industrial Base. They have a small but expanding team and emphasize a fully remote work culture.
Investigate security alerts using tools such as CrowdStrike Falcon Suite and Microsoft Sentinel to determine scope and impact.
Support incident response activities, including containment, remediation, and post-incident documentation.
Collaborate with cross-functional teams to improve detection quality, workflows, and response readiness.
Commvault is the gold standard in cyber resilience, empowering customers to uncover, take action, and rapidly recover from cyberattacks. For over 25 years, more than 100,000 organizations and a vast partner ecosystem have relied on Commvault to reduce risks and improve governance.
Handle complex security incidents, leading deep investigations and driving remediation actions.
Participate in a 24/7 on-call rotation to ensure timely response to critical security incidents.
Mentor L1/L2 analysts and drive improvements in detection capabilities and incident readiness.
Eurofins is an international life sciences company providing analytical testing services to ensure products are safe and authentic. With over 65,000 staff across 950+ laboratories in 59 countries, it offers a multicultural and entrepreneurial work environment.
Perform incident response and forensic analysis of compromised systems, identifying and recommending remediation.
Formulate and direct incident response efforts, prioritizing actions and creating detailed reports on compromise vectors and attacker methodologies.
Build incident response plans, playbooks, and attack scenarios for customer tabletop exercises, maintaining sandbox environments to evaluate malicious code.
Check Point Software Technologies is the world's leading vendor of cyber security, facing sophisticated threats and attacks. Honored by Time Magazine as one of the World's Best Companies and on Forbes' list of the World's Best Places to Work, we have a global team of driven and innovative people.
Own, administer, and optimize SIEM and EDR platforms, including detection content and automation workflows.
Design SOAR playbooks and integrations across security tools to streamline triage, enrichment, and containment.
Investigate security events, conduct threat hunts, and support incident response alongside CSIRT Analysts.
Vultr provides high-performance cloud infrastructure for enterprises and AI innovators worldwide, with 33 global data centers. As the world's largest privately-held cloud infrastructure company, Vultr has grown significantly and values inclusion, offering comprehensive benefits and professional development.
Monitor security alerts and assist in triaging suspicious activity using SIEM tools.
Collaborate with senior analysts to investigate potential threats and support incident response efforts.
Participate in threat hunting and vulnerability review exercises to identify and mitigate risks.
HealthEdge provides software solutions for the healthcare industry. They have a Center of Excellence structure with experienced security professionals, fostering a collaborative and growth-oriented culture.
Protect on-premise and cloud infrastructure, detect and respond to advanced threats, and improve security posture through risk analysis and vulnerability management.
Manage and optimize security tools like SIEM, EDR, and IDS/IPS, and perform proactive threat hunting to anticipate new attack techniques.
Assess security controls for compliance, analyze threat trends, and participate in infrastructure initiatives to adhere to industry best practices.
Clear Capital is a national real estate analytics, data solutions, and valuation technology company. Since 2001, the company has focused on building confidence in real estate decisions, with a team that values integrity, kindness, and attention to detail.
Responsible for daily incident management of customer incidents, including incident response and forensic analysis of compromised systems.
Formulate and direct incident response efforts, prioritize response actions, and create legible incident reports describing compromise vectors and attacker methodologies.
Build and maintain incident response plans, playbooks, and sandbox/test lab environments to evaluate malicious code.
We protect over 100,000 organizations worldwide from increasingly sophisticated cyber and AI-driven threats, securing their AI transformation with a prevention-first approach. We are recognized by TIME, Newsweek, and Forbes for our excellence and workplace culture, and we value ownership, curiosity, and solving complex problems.
Monitor IT infrastructure and analyze alerts from SIEM and EDR systems.
Perform malware analysis and behavioral analysis to detect anomalies.
Support proactive threat hunting using AI-based tools and document findings.
RTB House is a demand-side platform that uses proprietary Deep Learning AI algorithms to help brands grow. Founded in 2012, it operates in 90+ markets and embraces a private-by-design, innovative culture.
Identify innovative ways to detect Windows OS threats and develop cross-platform features leveraging telemetry from OS subsystems.
Collaborate with Product, Engineering, and Security teams to implement detection logic and address gaps in product coverage.
Apply AI to improve research quality and speed, and mentor team members to advance technical expertise.
Huntress is a cybersecurity company founded by former NSA operators that provides enterprise-grade cybersecurity to businesses of all sizes. They are a remote-first team securing over 5 million endpoints and 11 million identities, with a culture focused on collaboration and making a meaningful impact.
Perform investigations of security incidents using digital forensics and data analytics.
Build automation and detection models to identify anomalous activity and mitigate threats at scale.
Partner with engineering teams to develop advanced detection solutions and complex investigations.
This is a leading global travel technology marketplace that connects users with travel services worldwide. The company culture emphasizes collaboration, mentorship, and calm problem-solving in high-stakes security operations.
Monitor, investigate, and respond to security detections across the SIEM, driving alerts to resolution.
Develop, tune, and maintain SIEM use cases and correlation rules to improve detection coverage.
Build and deliver operational reports and dashboards from available SIEM log source data.
Authentic8 provides Silo, a cloud-native platform that enables digital analysts to conduct secure, anonymous investigations across the globe. They serve over 750 of the world's most sophisticated organizations, from government agencies to commercial entities, with a culture of integrity, collaboration, and transparency.
Monitor the threat landscape and deliver actionable intelligence through Flash Reports.
Administer the Threat Intelligence Platform and automate intelligence collection with Python.
Support incident response and collaborate on Purple Team exercises to improve defenses.
GitLab provides an intelligent orchestration platform for DevSecOps, enabling organizations to increase developer productivity and improve security. With over 50 million users and more than 50% of the Fortune 100 as customers, GitLab fosters a high-performance culture driven by values and continuous knowledge exchange.
Manage and optimize SIEM use cases to enhance threat detection and incident response.
Analyze security events and lead threat hunting activities to identify emerging risks.
Investigate incidents and produce technical documentation for corrective actions.
Inetum is a European leader in digital services, helping businesses and public sector entities achieve digital transformation. With 28,000 consultants and specialists across 19 countries, the company generated €2.5 billion in sales in 2023 and fosters a collaborative and innovative culture.