CommunityJobsAdviceEventsReviewsFor EmployersFor Clients
CommunityJobsAdviceEvents

Sr Endpoint Detection and Response Engineer - Remote

company-logo

Lumen

3.9

United States

Why you should apply for a job to Lumen:

  • 4.2/5 in supportive management

  • 71% say women are treated fairly and equally to men

  • 72% would recommend this company to other women

  • 79% say the CEO supports gender diversity

  • Ratings are based on anonymous reviews by Fairygodboss members.
  • Flexible time off policy intended to empower employees to balance personal lives with demands of the business.

  • Access to Care.com membership to provide employees with the help they need – when and where they need it.

  • Paid Parental Leave and Adoption Assistance.

  • Get jobs straight to your inbox

    Anonymous company reviews, virtual recruiting events, and a supportive community for women when you sign up.

    #323732

    Position summary

    About Lumen
    Lumen is guided by our belief that humanity is at its best when technology advances the way we live and work. With 450,000 route fiber miles serving customers in more than 60 countries, we deliver the fastest, most secure global platform for applications and data to help businesses, government and communities deliver amazing experiences. Learn more about Lumen’s network, edge cloud, security and communication and collaboration solutions and our purpose to further human progress through technology at news.lumen.com, LinkedIn: /lumentechnologies, Twitter: @lumentechco, Facebook: /lumentechnologies, Instagram: @lumentechnologies and YouTube: /lumentechnologies.

    The Role

    As an Endpoint Detection and Response (EDR) Engineer, you will play a key role in supporting the design, deployment, configuration, optimization, and operation of a large-scale Endpoint Detection and Response (EDR) deployment solution or similar security products.

    The Main Responsibilities

    • You'll work with cross functional teams to identify the right mix of processes and technology to implement solutions to support the needs of the internal and external customers.
    • Continually work on the optimization of EDR and integrated solutions, including refinement data produced, development of automated workflows or playbooks, and integration of the EDR data with complementary security solutions, including SIEM, SOAR, etc.
    • You will be responsible for establishing technical processes and tools focused on the incident response lifecycle.  Preparation; Detection and Analysis; Containment, Eradication, and Recovery; and Post-Event Activity.
    • Work to integrate cybersecurity data using enterprise or custom tools data aggregation and analysis tools, including Splunk and similar complementary security solutions.
    • Manage projects to completion both individually and in a group as well as mentoring others and orchestrating team efforts for problem solving 
    • Serve as an escalation point to triage and remediate security events in a SOC environment by leveraging data collected from security solutions.
    • Provide support in an operations and maintenance role, including ticket work information updates, issue responses, and remediation.
    • Provide content on deliverables, including written reports and technical documents, SOPs and configuration guides, and training and briefing materials 
    • Collaborate and consult with peers, colleagues, and managers, etc. to resolve issues and achieve goals

    What We Look For in a Candidate

    • 3+ years of experience with deployment, configuration, or maintenance of supporting enterprise EDR solutions, including Carbon Black EDR, CrowdStrike Falcon (is a plus), SentinelOne, FireEye HX, McAfee, Tanium,etc.
    • 3+ years of experience with performing systems administration, including basic troubleshooting and installation, monitoring system performance or availability, performing security upgrades, and optimizing solution configurations to meet the needs of operational users
    • 3+ years of experience in EDR and/or AV; previous work in malware and attack analysis, research, investigation, and response role by performing forensic analysis of logs and packet captures to identify malicious artifacts
    • 2+ years of experience in working with a Security Operations Center (SOC) environment, leveraging EDR tools to support incident response, vulnerability scanning, threat hunting, network monitoring and log management, and compliance management activities
    • +3 years of experience with a solid understanding of the TCP/IP protocol suite, security architecture, and common TTP’s (tactics, techniques, and procedures) used by threat actors
    • Experience in performing and analyzing both log and packet data to perform incident response in a SIEM environment (Splunk, NetWitness, Azure Sentinel, etc.) and identify potential compromises to customer networks.
    • Knowledge of federal information security policies, standards, procedures, directives, frameworks, federal security authorizations, assessment, and risk management processes for enterprise systems
    • Strong verbal/written communication and interpersonal skills are required to document and communicate findings, escalate critical incidents, and interact with customers 
    • Experience using ticketing systems for tracking (WebHelpDesk, Remedy, OpsConsole, ServiceNow, etc.)
    • Candidate must possess, or be willing to pursue, applicable professional/technical certifications, such as Security +, C|EH, OSCP, GCIH, CISSP, GPEN, GWAPT, GISEC, CISM, CrowdStrike Certified Falcon Hunter, Responder, Administrator, or CISA
    • Experience in Automation orchestration technologies: such as SOAR, Ansible, Puppet, Chef
    • Experience in Coding languages: such as Python, PowerShell, Perl, C/C++, Java, etc.
    • Unix/Linux RedHat Administration

    Requisition #: 323732

    EEO Statement
    We are committed to providing equal employment opportunities to all persons regardless of race, color, ancestry, citizenship, national origin, religion, veteran status, disability, genetic characteristic or information, age, gender, sexual orientation, gender identity, marital status, family status, pregnancy, or other legally protected status (collectively, “protected statuses”).  We do not tolerate unlawful discrimination in any employment decisions, including recruiting, hiring, compensation, promotion, benefits, discipline, termination, job assignments or training.

    Disclaimer
    The above job definition information has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities, and qualifications required of employees assigned to this job.  Job duties and responsibilities are subject to change based on changing business needs and conditions.
     

    Salary Range

    Salary Min :

    72540

    Salary Max :

    161520

    This information reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual pay is based on skills, experience and other relevant factors.

    This position is eligible for either short-term incentives or sales compensation. Director and VP positions also are eligible for long-term incentive. To learn more about our bonus structure, you can view additional information here. We're able to answer any additional questions you may have as you move through the selection process.

    As part of our comprehensive benefits package, Lumen offers a broad range of Health, Life, Voluntary Lifestyle and other benefits and perks that enhance your physical, mental, emotional and financial wellbeing. You can learn more by clicking here.

    Note: For union-represented postings, wage rates and ranges are governed by applicable collective bargaining agreement provisions.

    Salary Range

    Salary Min :

    72540

    Salary Max :

    161520

    This information reflects the base salary pay range for this job based on current national market data. Ranges may vary based on the job's location. We offer competitive pay that varies based on individual experience, qualifications and other relevant factors. We encourage you to apply to positions that you are interested in and for which you believe you are qualified. To learn more, you are welcome to discuss with us as you move through the selection process.

    What are Lumen perks and benefits

    Lactation facilities

    Maternity leave coaching

    Fertility

    Backup child care

    Child care subsidies

    Care-taking PTO

    Elder care

    Unconscious bias training

    Sponsorship program

    Networking

    Diversity performance

    Diversity recruiting

    Remote work policy

    Part time policy

    Paid paternity

    Paid maternity

    Unpaid paternity

    Unpaid maternity

    Paid adoptive

    Short term disability

    About the company

    27429

    Lumen

    Industry: Telecommunications

    We are a global company of over 40,000 professionals, dedicated to empowering businesses to produce amazing things. Driven by the challenges and opportunities of the 4th Industrial Revolution, we’re helping to change how people interact and how companies acquire, analyze and act on data with flexible, intelligent, secure and collaborative solutions built for the next generation of business.

    Why you should apply for a job to Lumen:

  • 4.2/5 in supportive management

  • 71% say women are treated fairly and equally to men

  • 72% would recommend this company to other women

  • 79% say the CEO supports gender diversity

  • Ratings are based on anonymous reviews by Fairygodboss members.
  • Flexible time off policy intended to empower employees to balance personal lives with demands of the business.

  • Access to Care.com membership to provide employees with the help they need – when and where they need it.

  • Paid Parental Leave and Adoption Assistance.

  • icon
    © 2023 Fairygodboss. All rights reserved.
    • about
    • careers
    • FAQs
    • privacy policy
    • terms & conditions
    112k
    0k