Relomote
Remote JobsRelocation Jobs
Add companySaved
Relomote

Relomote is a job board for remote, hybrid, and relocation jobs — every listing AI-classified for the countries it actually hires from, or the visa and relocation support it offers.

LinkedInCrunchbase

Remote jobs by category

  • Remote Engineering & Development jobs
  • Remote Customer Support jobs
  • Remote Design jobs
  • Remote Marketing jobs
  • Remote Sales jobs
  • Remote Product jobs
  • Remote Data & Analytics jobs
  • Remote People & Talent jobs
  • Remote Writing & Content Creation jobs
  • Remote Finance jobs
  • Remote Legal & Compliance jobs
  • Remote Operations & Admin jobs
  • Remote Data Entry jobs
  • Remote Virtual Assistant jobs
  • Remote Education & Training jobs
  • Remote Healthcare & Nursing jobs
  • Remote Construction & Built Environment jobs
  • Remote Skilled Trades & Field Service jobs
  • Remote Research & Science jobs
  • Remote Real Estate & Property jobs
  • Remote Retail & Merchandising jobs
  • Remote Other jobs

Remote jobs by location

  • Work from anywhere jobs
  • Remote jobs in Africa
  • Remote jobs in Asia
  • Remote jobs in Europe
  • Remote jobs in Latin America
  • Remote jobs in Middle East
  • Remote jobs in North America
  • Remote jobs in Oceania
  • All remote jobs →

Relocation & visa sponsorship

  • Visa sponsorship jobs
  • Relocation package jobs
  • Relocate to Europe
  • Relocate to Germany
  • Relocate to Netherlands
  • Relocate to Spain
  • Relocate to Portugal
  • Relocate to Greece
  • Relocate to United Kingdom
  • Relocate to Canada
  • Relocate to Australia
  • Relocate to Sweden
  • Relocate to Switzerland
  • Relocate to Japan
  • Relocate to United Arab Emirates
  • All relocation jobs →

© 2026 RelomoteAboutPrivacyTermsLogos provided by Logo.dev

Contact mahmoud@relomote.com · Built by Mahmoud

Relomote
Remote JobsRelocation Jobs
Add companySaved
Pearl Consulting Group logo

Engineer - Security Operations and Incident Response

Pearl Consulting Group
Posted 12 hours ago
🇺🇸United States🏠Remote📁Engineering & Development
Is this job info correct?

Job Title: Engineer - Security Operations and Incident Response Location: USA or Canada (Remote or Hybrid) Description This role is a critical function responsible for the ongoing transformation of the organization’s Security Operations & Incident Response program. With a focus on maintaining resilience and protecting the global enterprise from cybersecurity threats, the team operates an advanced security operations and incident response program focused on the identification, analysis, and eradication of cybersecurity threats and incidents across the global enterprise. In support of the rapid growth of this critical program, we are looking for an experienced, passionate, and highly organized engineer who will drive operational delivery excellence and continuous advancement across processes and technologies. Primary Responsibilities Expert-level support for deep dive investigations, including digital forensics (memory, network, and malware analysis). Author and refine IR playbooks and operational guidelines to ensure the team remains agile in an evolving threat landscape. Develop and maintain threat models, incorporating findings from penetration tests into detection strategies. Design, implement, and refine complex detection rules and automated remediation workflows to identify adversarial behavior. Utilize threat intelligence and the MITRE ATT&CK framework to identify gaps in visibility and proactively mitigate emerging risks. Maintain comprehensive documentation of detection strategies, active investigations, and incident timelines. Work with the SIEM team to continuously tune SIEM rules to maximize detection fidelity while minimizing alert fatigue. Review and tune threat intelligence systems, including brand protection and dark web monitoring. Proficiency in scripting and query building using Python, XQL, PowerShell, or Bash, and experience with automation and/or orchestration (SOAR) tools. Support IR leadership as backup on IR-related activities. Qualifications Bachelor’s degree and 5+ years of relevant experience in incident response and SOC tooling. In-depth knowledge of SIEM/SOAR platforms (e.g., Microsoft Sentinel, Palo Alto Cortex XSIAM/XSOAR) and incident response processes in hybrid cloud environments (GCP, Azure). Experience leading incident response as incident commander, performing root cause analysis and continuous optimization for SOC tools and processes. Familiarity with scripting languages (Python, PowerShell, Bash, XQL) is highly preferred. Understanding of regulatory compliance and frameworks such as MITRE ATT&CK, NIST, or ISO. Ability to prioritize tasks effectively, manage multiple priorities, and work both independently and as part of a team. Strong communication skills, with the ability to translate sophisticated technical issues or concepts to non-technical audiences in a clear and concise manner that focuses on business value.

Similar jobs

Similar jobs

Internaljobs logo

Senior Information Security Engineer - Incident Response

Internaljobs

🇺🇸United States3 days ago
ClickHouse logo

Incident Response Security Engineer

ClickHouse

🌍Asia, Oceania, United States1 weeks ago
FF

Principal Security Engineer - Incident Response

Ffive

🇺🇸United States2 weeks ago
FF

Security Engineer - Incident response

Ffive

🇺🇸United States2 weeks ago
Fico logo

Senior/Lead Cyber Security - Incident Response Engineer

Fico

🇺🇸United States3 weeks ago
Snowflake logo

Senior Security Engineer, Incident Response

Snowflake

🇺🇸United States4 weeks ago