> Markdown version of [/jobs/ext/2310510-cybersecurity-engineer-threat-management](https://www.wearedevelopers.com/jobs/ext/2310510-cybersecurity-engineer-threat-management). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Engineer - Threat Management - **Company:** Cognizant Technology Solutions Corporation - **Location:** New York, NY, United States - **Experience:** Experienced - **Salary:** $114,500.0 - $134,000.0 - **Contract:** Permanent contract - **Skills:** ARM Architecture, Cloud Computing, Cyber Security, Issue Tracking Systems, Intrusion Detection and Prevention, Network Security, Security Information and Event Management, Software Vulnerability Management, Mitre Att&ck, QRadar, Cyber Threat Analysis, Cybercrime, Microsoft Sentinel, Splunk, Servicenow - **Published:** August 30, 2026 - **Apply:** https://dejobs.org/x/x/53146D7805D7496A935C41B2FB157F42/job/ ## About the Role 3-7 years of experience in Security Operations, Threat Management, Threat Hunting, SOC, or Cybersecurity Monitoring roles. Strong knowledge of threat monitoring, incident triage, SIEM analysis, log correlation, and security investigation methodologies. Hands-on experience with SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, or similar technologies. Experience working with EDR and threat detection tools such as CrowdStrike, Microsoft Defender, Cortex XDR, or equivalent solutions. Understanding of threat intelligence, IOC analysis, attack techniques, malware indicators, and adversary tactics. Familiarity with MITRE ATT&CK, NIST Cybersecurity Framework, incident response processes, and SOC operations. Experience using ServiceNow, ticketing systems, and security operational workflows. Strong analytical, troubleshooting, communication, and documentation skills. Experience supporting security incident escalation, reporting, and operational handoffs in a 24x7 or managed security environment. Security certifications such as Security+, CySA+, GSEC, CEH, SC-200, or equivalent are preferred. ## Description We are seeking a Threat Management Associate to support enterprise security operations by monitoring, triaging, investigating, and escalating cybersecurity threats across diverse technology environments. This role will be responsible for analyzing security events from SIEM, EDR, cloud, and network security platforms, validating potential threats, and coordinating incident response activities. The ideal candidate will possess strong experience in threat monitoring, incident triage, threat intelligence analysis, and SOC operations. This position requires strong analytical skills, attention to detail, and the ability to operate effectively in a fast-paced security operations environment. Please note, this role is not able to offer visa transfer or sponsorship now or in the future In this role, you will: · Monitor and analyze security alerts generated from SIEM, EDR, cloud, network, and enterprise security platforms. · Perform initial triage and investigation of security events to determine validity, severity, business impact, and escalation requirements. · Analyze indicators of compromise (IOCs), threat intelligence feeds, attack patterns, and anomalous activity to identify potential threats. · Correlate logs, events, and telemetry across multiple security tools to support security investigations and threat detection activities. · Escalate confirmed security incidents to L2/L3 teams and support incident response processes according to established procedures. · Conduct threat monitoring, threat hunting, and situational awareness activities to identify emerging risks and attack techniques. · Document investigation findings, response actions, incident evidence, and operational metrics accurately and consistently. · Support shift handovers, operational reporting, and communication of security incidents and threats to relevant stakeholders. · Leverage MITRE ATT&CK, threat intelligence, and security frameworks to improve threat detection and response effectiveness. · Collaborate with SOC, Incident Response, Vulnerability Management, and Security Engineering teams to strengthen overall security operations. ## Related Videos - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)