Level 3 End User Security Engineer

InnoCore Solutions, Inc.
Dallas, TX, United States
2 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Command-Line Interface Cyber Security Network Connections Phishing Kusto Query Language SAP Security User Environment Management Software Vulnerability Management Malware Cyber Threat Analysis Azure Security Center
+3 more
Information Technology Cybercrime Windows Security

Job description

We are looking for a highly skilled Level 3 End User Security Engineer responsible for administering, troubleshooting, monitoring, and enhancing endpoint security using Microsoft Defender for Endpoint (MDE). This role will serve as a senior escalation point for complex endpoint security incidents and will work closely with Security Operations, Infrastructure, Identity, and End User Computing teams., * Serve as the Level 3 escalation point for complex endpoint security incidents, problems, and vulnerabilities.

  • Administer, monitor, and optimize Microsoft Defender for Endpoint (MDE) across enterprise Windows endpoints.
  • Investigate and respond to malware, ransomware, phishing, suspicious processes, credential theft, and other endpoint security threats.
  • Perform advanced threat hunting and incident investigation using Microsoft Defender Advanced Hunting and KQL.
  • Analyze endpoint timelines, process trees, command-line activity, file/registry changes, network connections, and other security telemetry.
  • Perform endpoint containment and remediation activities, including device isolation, antivirus scans, Live Response, and remote remediation.
  • Develop KQL queries, custom detections, dashboards, and threat-hunting queries to identify suspicious activity across the enterprise.
  • Participate in security incident response, vulnerability remediation, security projects, and continuous improvement initiatives.
  • Maintain appropriate documentation, audit trails, metrics, and reporting for endpoint security operations.

Requirements

  • 5+ years of experience in endpoint security, Windows security, cybersecurity, or related IT infrastructure roles.
  • 3+ years of hands-on experience with Microsoft Defender for Endpoint (MDE) in a medium-to-large enterprise environment.
  • Ability to develop KQL queries for threat hunting, investigation, detection, and security analytics.
  • Experience working in an L3 escalation/support environment and independently resolving complex technical issues.
  • Strong understanding of security incident response processes and evidence preservation.
  • Excellent troubleshooting, analytical, communication, documentation, and problem-solving skills.

Education:

  • Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, Engineering or a related field.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:01 min

Handling container constraints and fileless malware

Dimitrij Klesev +1 ¡ LIVE

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa ¡ LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa ¡ LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

6:18 min

Architecting asynchronous malware scanning for uploaded file contents

Austin Gil ¡ LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin ¡ World Congress 2022

Videos

See all

Related articles

See all