Relomote
Remote JobsRelocation Jobs
Add companySaved
Relomote

Relomote is a job board for remote, hybrid, and relocation jobs — every listing AI-classified for the countries it actually hires from, or the visa and relocation support it offers.

LinkedInCrunchbase

Remote jobs by category

  • Remote Engineering & Development jobs
  • Remote Customer Support jobs
  • Remote Design jobs
  • Remote Marketing jobs
  • Remote Sales jobs
  • Remote Product jobs
  • Remote Data & Analytics jobs
  • Remote People & Talent jobs
  • Remote Writing & Content Creation jobs
  • Remote Finance jobs
  • Remote Legal & Compliance jobs
  • Remote Operations & Admin jobs
  • Remote Data Entry jobs
  • Remote Virtual Assistant jobs
  • Remote Education/Training jobs
  • Remote Healthcare/Clinical jobs
  • Remote Other jobs

Remote jobs by location

  • Work from anywhere jobs
  • Remote jobs in Africa
  • Remote jobs in Asia
  • Remote jobs in Europe
  • Remote jobs in Latin America
  • Remote jobs in Middle East
  • Remote jobs in North America
  • Remote jobs in Oceania
  • All remote jobs →

Relocation & visa sponsorship

  • Visa sponsorship jobs
  • Relocation package jobs
  • Relocate to Europe
  • Relocate to Germany
  • Relocate to Netherlands
  • Relocate to Spain
  • Relocate to Portugal
  • Relocate to Greece
  • Relocate to United Kingdom
  • Relocate to Canada
  • Relocate to Australia
  • Relocate to Sweden
  • Relocate to Switzerland
  • Relocate to Japan
  • Relocate to United Arab Emirates
  • All relocation jobs →

© 2026 RelomoteAboutPrivacyTerms

Contact [email protected] · Built by Mahmoud

Relomote
Remote JobsRelocation Jobs
Add companySaved
Fragomen logo

Cybersecurity Engineer - Incident Response & Threat Detection

Fragomen
Posted 4 weeks ago
🇺🇸United States🏠Remote📁Engineering & Development
Is this job info correct?

Job Description Fragomen, an AmLaw 100 Firm and the leading global immigration services provider, is seeking a Cyber Security Engineer with strong experience in Incident Response, digital forensics, and threat detection to join our Information Security & Cyber Security team. Our industry-leading, immigration-specific technology and infrastructure is undergoing significant transformation, and security is critical to its success. We are seeking a professional who is passionate about protecting the organization, capable of leading response efforts during security incidents, and eager to mature enterprise-wide incident detection, investigation, and response capabilities. You will join a team of security engineers who make security a differentiator in our technology offerings. The successful candidate will play a key role in detecting, investigating, containing, and remediating cyber incidents, while helping to strengthen Fragomen’s overall security posture. How Will You Make a Difference at Fragomen? As a Security Engineer focused on Incident Response, you will: Lead and support end-to-end incident response activities, including detection, analysis, containment, eradication, and recovery. Monitor, investigate, and correlate security alerts using SIEM, EDR, and forensic tools. Perform digital forensic investigations across endpoints, servers, cloud, and network environments. Triage and escalate security events in accordance with established incident response procedures. Develop, maintain, and continuously improve incident response playbooks, SOPs, and workflows. Improve alert quality and response effectiveness through root cause analysis and post-incident reviews. Partner with IT, Legal, Compliance, Privacy, and Risk teams during security incidents. Support regulatory, legal, and client-driven incident response and reporting requirements. Participate in and facilitate incident response tabletop exercises and simulations. Contribute to the design and enhancement of detection, logging, and monitoring capabilities. Provide technical guidance and mentorship to junior analysts and security team members. Required Qualifications 1+ years of experience in cybersecurity, incident response, or security operations. Hands-on experience responding to security incidents in enterprise environments. Strong ability to analyze security events and perform technical investigations. Working knowledge of: TCP/IP, DNS, HTTP/S, VPNs, firewalls, and proxy technologies Windows and Linux operating systems Identity and access systems and authentication mechanisms Experience using SIEM and security platforms such as: Splunk, Microsoft Sentinel, QRadar, ArcSight, ELK, or similar Ability to identify and respond to: Phishing and business email compromise Malware and ransomware Credential compromise Lateral movement and persistence mechanisms Brute-force and privilege escalation attacks Strong written and verbal communication skills, especially during high-pressure incidents. Demonstrated ability to follow structured processes while continuously improving them. Preferred Qualifications Experience with EDR, SOAR, and forensic tooling (e.g., CrowdStrike, Defender, Carbon Black, EnCase, Velociraptor, etc.). Experience supporting investigations involving legal, compliance, or regulatory stakeholders. Knowledge of MITRE ATT&CK and modern adversary tactics. Experience with cloud and SaaS incident response (Azure, M365, AWS, etc.). Relevant certifications, including: GIAC (GCIH, GCFA, GCIA) Offensive Security (OSCP, OSCE, OSEE) Vendor certifications (Splunk, Sentinel, CrowdStrike, etc.) All offers and/or employment contracts are contingent upon the successful completion of the Firm’s pre-employment screening process. This process may include verifying the candidate’s identity, confirming legal authorization to work in the offered position’s location, and conducting a comprehensive background check, where permitted by local regulations. We use limited AI‑assisted tools for administrative screening purposes only - never for decision‑making. All hiring decisions are made by people. Applicants may have rights to information and explanations regarding the use of such tools, or request human review, as required by applicable regional laws.

Similar jobs

Similar jobs

SkyePoint Decisions logo

Threat Detection & Response Analyst

SkyePoint Decisions

🇺🇸United StatesYesterday
Blackbaud logo

Principal AI Threat Detection Engineer - Insider Threat

Blackbaud

🇺🇸United StatesYesterday
Homedepot logo

Cybersecurity Senior Analyst | Threat Detection & Response (Remote)

Homedepot

🇺🇸United States2 weeks ago
Datadog logo

Group Product Manager - Threat Detection and Incident Response (Cloud SIEM)

Datadog

🇺🇸United States3 weeks ago
Maleda Tech logo

Senior Security Engineer, Threat Detection and Response

Maleda Tech

🇺🇸United States3 weeks ago
Costar logo

Threat Detection Security Engineer

Costar

🇺🇸United StatesJul 2, 2026, 8:43 AM UTC