Skip to main content
Vector3, Inc.

Senior Engineer, MDR

RemoteUnited States only
Published
Role
Security
Experience
Senior
Employment
Full-time
Company size
Enterprise
$117.2k–$175.8k/yr
Check eligibility

Open to US only. Set where you work from to check your eligibility.

No BS summary

Senior security engineer for a US-remote MDR team. Needs 4+ years in security engineering/security automation or SOAR, strong Python plus Bash/PowerShell, and experience with EDR, detection engineering, threat hunts, and enterprise security environments.

Core skills

Bash/Python/PowerShell/GoEDRSecurity automation

Required skills

APIsSOARCrowdStrike/Sophos/SentinelOneActive Directory/Microsoft Intune/MDMAWS/Azure/Microsoft 365/GCP

Optional skills

VueJavaScriptTypeScriptAG GridCISSPCISMGCFEGCFA

What you'll do

  • Design, build, and maintain scalable security applications, integrations, and automation frameworks that enhance Managed Detection and Response (MDR) services and improve operational efficiency.
  • Lead complex engineering initiatives from design through deployment, delivering innovative solutions to address evolving security threats and operational challenges.
  • Identify repetitive processes, operational bottlenecks, and manual tasks across security operations, then develop automation to reduce toil, increase consistency, and improve response times.
  • Develop and maintain scripts, APIs, and tooling using Python, PowerShell, Bash, Go, and related technologies to streamline security operations and infrastructure management.
  • Engineer and deploy software, security tools, and automation solutions across diverse enterprise environments, ensuring reliability, scalability, and maintainability.
  • Foster a culture of innovation, continuous learning, and skill development within the engineering team.
  • Support the maintenance of operating procedures and best practices for the engineering team.
  • Maintain positive, professional insured/carrier relationships.
  • Communicate complex engineering concepts internally and externally.
  • Stay informed about emerging engineering technologies and industry best practices.
  • Provide expert technical guidance on engineering methodologies, automation techniques and software development.
  • Occasionally, support complex digital forensic investigations, including analysis of system logs, network traffic, and endpoint data.
  • Contribute to the development of both short-term and long-term plans for designated area of the organization.
  • Write, or is a major contributor to, technical reports and documentation.
  • Peer review complex code to organizational architectural standards.
  • Develop innovative ways to improve financials.
  • Comply with all corporate policies and procedures.

What they require

  • Minimum 4 Year's bachelor's degree in cyber security, Computer Science, information Technology related degree.
  • 4+ years former professional experience in security engineering teams, developing security automation and/or SOAR capabilities in support of security incident response, detection engineering, EDR platform support, or vulnerability management.
  • Experience in building robust applications in Python and fluent scripting in Bash and PowerShell.
  • Proven track record of success in executing complex engineering initiatives.
  • Experience deploying and administering Endpoint Detection and response tooling such as Crowdstrike, Sophos, or SentinelOne.
  • Ability to architect, develop, and execute automated threat hunts across an enterprise.
  • Experience in advanced detection engineering and tuning signals across a wide array of data sources.
  • Background in automating rote security and IT tasks.
  • Programming experience in Bash, Python, PowerShell, or Go.
  • Experience in deploying software and scripts across diverse IT environments.
  • Experience with Active Directory, Microsoft Intune, or other MDM solutions.
  • Understanding of cloud platforms and security considerations within AWS (Amazon Web Services), Azure, Microsoft 365, and GCP (Google Cloud Platform).
  • Superior organizational and analytical skills; demonstrated ability to manage multiple tasks simultaneously.
  • Excellent communication and presentation skills to clearly and concisely communicate complex technical concepts to stakeholders.
  • 2 years in leading active cybersecurity engagements, developing security automation and/or SOAR capabilities in support of security incident response, digital forensics, malware analysis or threat intelligence.
  • Experience architecting performant asynchronous microservices with robust testing and observability built-in.
  • Overtime hours may be required to fulfill job responsibilities.
  • May be required to remain stationary for extended periods of time.
  • May be required to move up to 10 pounds.
  • Must be able to operate a computer and other devices.
  • Close vision and ability to adjust focus, such as required to read a computer screen.
  • Regular travel (up to 50% of time).
  • Preferred: Preferred advanced degrees or certifications (CISSP, CISM, GCFE, GCFA, GREM, GBFA, GCIH, CFCE, CCE) are a plus.
  • Preferred: Advanced degrees or certifications in security (CISSP, CISM, GCFE, GCFA, GREM, GBFA, GCIH, CFCE, CCE) or cloud engineering (AWS Certified Security, Azure Security Engineer, Google Professional Cloud Security Engineer, CCNA, MCSE are a plus.

Benefits

  • Competitive compensation.
  • Comprehensive benefits.
  • Professional growth opportunities within a global organization.
  • Subsidized medical, prescription, dental, vision and basic life and disability insurance.
  • Employee assistance program.
  • Paid parental leave.
  • 401(k) plan with Company matching contributions.
  • Educational/loan assistance.
  • At least 20 days of PTO, prorated for the current year based on date of hire, and/or paid sick leave.
  • Approximately 11 paid holidays.
  • One paid volunteer day.
  • Two paid floating holidays.
  • The strength, stability, growth, and profitability that comes from being a member of the Tokio Marine Group of Companies.

Vector3, Inc., is an incident response firm supporting TMHCC Cyber and Professional Lines Group (CPLG). Vector3 specializes in responding to Business Email Compromise (BEC) and Ransomware incidents, helping insured organizations investigate, contain, and recover from cyber events.

🇺🇸 United StatesCybersecurityEnterprise
$117.2k–$175.8k/yr