Talent.com
Security Incident Response Engineer
Security Incident Response EngineerAcrisure LLC • Atlanta, GA, United States
Security Incident Response Engineer

Security Incident Response Engineer

Acrisure LLC • Atlanta, GA, United States
5 days ago
Job type
  • Full-time
Job description

About Acrisure

A global fintech leader, Acrisure empowers millions of ambitious businesses and individuals with the right solutions to grow boldly forward. Bringing cutting-edge technology and top-tier human support together, we connect clients with customized solutions across a range of insurance, reinsurance, payroll, benefits, cybersecurity, mortgage services - and more.

In the last twelve years, Acrisure has grown in revenue from $38 million to almost $5 billion and employs over 19,000 colleagues in more than 20 countries. Acrisure was built on entrepreneurial spirit. Prioritizing leadership, accountability, and collaboration, we equip our teams to work at the highest levels possible.

Job Summary :

Acrisure is seeking a Security Incident Response Engineer to join our growing team. The Security Incident Response Engineer - EDR will support the organization's security operations with a focus on endpoint detection and response (EDR) management and incident response activities. To succeed in this role, the candidate must be adept at coordinating and triaging security incidents, responding promptly and effectively to threats, and managing EDR toolsets at scale. The engineer will proactively monitor, analyze, and resolve security incidents involving endpoints, requiring high attention to detail and the ability to balance multiple urgent tasks. Key to this position is being a self-starter, consistently prioritizing critical tasks, and maintaining strong commitment to operational excellence.

Responsibilities :

  • Detect, analyze, and respond to security incidents detected by EDR, SIEM, and Cloud Security tooling as well as MDR service providers.
  • Lead or participate in investigation and containment efforts for both endpoint and identity related security threats.
  • Develop and implement strategies to remove the root cause of the incident.
  • Conduct forensic data acquisition, log analysis, and root cause determination for endpoint incidents.
  • Develop and maintain incident response playbooks and runbooks specific to EDR technologies.
  • Analyze security alerts and anomalies to determine if they represent actual security incidents.

EDR Deployment and Configuration

  • Oversee deployment, configuration, and ongoing management of EDR on endpoints for comprehensive coverage.
  • Monitor and tune alerting rules / policies to reduce false positives and ensure accurate threat detection.
  • Maintain compliance measures by enforcing configuration to organizational standards.
  • Provide training on EDR usage to incident response teams and end-users.
  • Review security alerts, correlate event data, and identify risks to endpoints.
  • Maintain integration of EDR tools with SIEM and other security solutions.
  • Regularly review and update endpoint security policies based on threat intelligence and incident learnings.
  • Requirements

  • Proficiency with leading Endpoint Detection and Response platforms (SentinelOne, Microsoft Defender, CrowdStrike, or other toolsets).
  • Strong experience with incident response, digital forensics, and threat hunting on endpoints.
  • Knowledge of endpoint operating systems (Windows, macOS, and Linux).
  • Experience with scripting (PowerShell, Python, or Bash) for automation and log parsing.
  • Excellent analytical and problem-solving skills; ability to work in high-pressure situations.
  • Effective verbal and written communication abilities.
  • Detail-oriented with strong organizational skills and the ability to handle multiple priorities.
  • Ability to work independently and within a collaborative, team-oriented environment.
  • Education and Experience :

  • Bachelor's degree in Computer Science, Information Security, Cybersecurity, or related discipline (or equivalent experience).
  • Minimum 3 years of progressive information security experience.
  • At least 1-3 years focused on incident response, including hands-on EDR work.
  • Expertise in Infrastructure Security : In-depth understanding of infrastructure security, including Windows, Active Directory, Unix / Linux, Mobile Security, and Privileged Access Management.
  • Experience with Microsoft M365 security including Entra ID, Microsoft Defender for M365, and other toolsets is a plus.
  • Relevant certifications (one or more preferred) : GCFA, GCIH, CHFI, CySA+, or similar.
  • #LI-CH1

    Candidates should be comfortable with an on-site presence to support collaboration, team leadership, and cross-functional partnership.

    Why Join Us :

    At Acrisure, we're building more than a business, we're building a community where people can grow, thrive, and make an impact. Our benefits are designed to support every dimension of your life, from your health and finances to your family and future.

    Making a lasting impact on the communities it serves, Acrisure has pledged more than $22 million through its partnerships with Corewell Health Helen DeVos Children's Hospital in Grand Rapids, Michigan, UPMC Children's Hospital in Pittsburgh, Pennsylvania and Blythedale Children's Hospital in Valhalla, New York.

    Employee Benefits

    We also offer our employees a comprehensive suite of benefits and perks, including :

  • Physical Wellness : Comprehensive medical insurance, dental insurance, and vision insurance; life and disability insurance; fertility benefits; wellness resources; and paid sick time.
  • Mental Wellness : Generous paid time off and holidays; Employee Assistance Program (EAP); and a complimentary Calm app subscription.
  • Financial Wellness : Immediate vesting in a 401(k) plan; Health Savings Account (HSA) and Flexible Spending Account (FSA) options; commuter benefits; and employee discount programs.
  • Family Care : Paid maternity leave and paid paternity leave (including for adoptive parents); legal plan options; and pet insurance coverage.
  • ... and so much more!
  • This list is not exhaustive of all available benefits. Eligibility and waiting periods may apply to certain offerings. Benefits may vary based on subsidiary entity and geographic location.

    Acrisure is an Equal Opportunity Employer. We consider qualified applicants without regard to race, color, religion, sex, national origin, disability, or protected veteran status. Applicants may request reasonable accommodation by contacting leaves@acrisure.com.

    California Residents : Learn more about our privacy practices for applicants by visiting the Acrisure California Applicant Privacy Policy.

    Recruitment Fraud : Please visit here to learn more about our Recruitment Fraud Notice.

    Welcome, your new opportunity awaits you.

    Create a job alert for this search

    Security Engineer • Atlanta, GA, United States

    Related jobs
    Security Engineer

    Security Engineer

    TCS CT USAAvance Consulting • Atlanta, GA, United States
    Full-time
    As a Senior Staff Information Security Engineer, this position will take on complex and autonomous roles, often leading initiatives to improve system reliability and efficiency.This role will contr...Show more
    Last updated: 8 days ago • Promoted
    Senior Security Engineer - Data Loss Prevention Operations

    Senior Security Engineer - Data Loss Prevention Operations

    Oracle Defunct • Atlanta, GA, United States
    Full-time
    Our rapidly growing team specializes in threat hunting, analyzing indicators of compromise (IOCs), investigating security incidents, managing incident responses, and conducting digital forensics ac...Show more
    Last updated: 19 days ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    JSC Nexus • Atlanta, GA, United States
    Full-time
    This role will assist in evaluating, creating, and implementing security standards, processes, and procedures related to access control, application security, cloud security, endpoint security, and...Show more
    Last updated: 15 days ago • Promoted
    Security Engineer

    Security Engineer

    Greensky Credit • Atlanta, GA, United States
    Full-time
    Headquartered in Atlanta, Georgia, GreenSky is a leading U.Powering Commerce at the Point of Sale® for a growing ecosystem of merchants, consumers, and banks. Our highly scalable, proprietary, and p...Show more
    Last updated: 14 days ago • Promoted
    Senior Security Engineer II

    Senior Security Engineer II

    RELX Group plc • Alpharetta, GA, United States
    Part-time
    Do you possess an understanding of security controls and their implementation within complex IT environments?.Do you have demonstrated experience in implementing and managing continuous monitoring ...Show more
    Last updated: 15 days ago • Promoted
    Comcast Cybersecurity : Cybersecurity Incident Response Engineer

    Comcast Cybersecurity : Cybersecurity Incident Response Engineer

    Comcast Corporation • Atlanta, GA, United States
    Full-time
    Make your mark at Comcast a Fortune 30 global media and technology company.From the connectivity and platforms we provide, to the content and experiences we create, we reach hundreds of millions...Show more
    Last updated: 2 days ago • Promoted
    Security Engineer

    Security Engineer

    Nutanix • Atlanta, GA, United States
    Full-time
    Hungry, Humble, Honest, with Heart.Are you a forward-thinking security professional with a passion for implementing cutting-edge technology and a strong understanding of Zero Trust principles? If s...Show more
    Last updated: 3 days ago • Promoted
    Security Engineer

    Security Engineer

    Artech • Atlanta, GA, United States
    Full-time
    Competitive, based on experience.We are seeking a highly skilled professional with expertise in programming, networking, and security. This role demands strong leadership and communication abilities...Show more
    Last updated: 6 days ago • Promoted
    Lead Security Engineer - Application Runtime Protection

    Lead Security Engineer - Application Runtime Protection

    ADP • Alpharetta, GA, United States
    Full-time
    Lead Security Engineer - Application Runtime Protection.Unlock Your Career Potential : Global Security Organization at ADP. Do you have a passion for going on the offensive to safeguard critical info...Show more
    Last updated: 19 days ago • Promoted
    Security Engineer

    Security Engineer

    Accenture • Atlanta, GA, United States
    Full-time
    Accenture Flex offers you the flexibility of local fixed-duration project-based work powered by Accenture, a leading global professional services company. Accenture is consistently recognized on FOR...Show more
    Last updated: 3 days ago • Promoted
    Security Engineer

    Security Engineer

    Concord IT Systems • Atlanta, GA, United States
    Full-time
    Own and deliver all facets of security assessments of new tools, applications, and systems to identify gaps against Delta's Information Security Standards and industry best practices and document f...Show more
    Last updated: 15 days ago • Promoted
    Detection & Response Security Engineer, Threat Intelligence

    Detection & Response Security Engineer, Threat Intelligence

    META • Atlanta, GA, United States
    Full-time
    Meta Security is looking for a threat intelligence investigator with extensive experience in investigating cyber threats with an intelligence-driven approach. You will be proactively responding to a...Show more
    Last updated: 19 days ago • Promoted
    Security Engineer II

    Security Engineer II

    Trustmark • Atlanta, GA, United States
    Full-time
    Trustmark's mission is to improve wellbeing - for everyone.It is a mission grounded in a belief in equality and born from our caring culture. It is a culture we can only realize by building trust.Tr...Show more
    Last updated: 19 days ago • Promoted
    Lead Adversarial Security Engineer

    Lead Adversarial Security Engineer

    Trellix • Atlanta, GA, United States
    Full-time
    Lead Adversarial Security Engineer.Trellix, the trusted CISO ally, is redefining the future of cybersecurity and soulful work. Our comprehensive, GenAI-powered platform helps organizations confronte...Show more
    Last updated: 8 days ago • Promoted
    Senior Security Engineer - DevSecOps

    Senior Security Engineer - DevSecOps

    CirrusLabs • Alpharetta, GA, United States
    Full-time
    Our vision is to become the world's most sought-after niche digital transformation company that helps customers realize value through innovation. Our mission is to co-create success with our custome...Show more
    Last updated: 15 days ago • Promoted
    Security Engineer

    Security Engineer

    Zoom Corporation • Atlanta, GA, United States
    Full-time
    The Security Engineer is responsible for security design and reviews across our products and services, with a specific focus on Platform services and core infrastructure components.The ideal candid...Show more
    Last updated: 6 days ago • Promoted
    Security Engineer

    Security Engineer

    Prestige Staffing Information Technology Job • Atlanta, GA, United States
    Full-time
    Location : 100% remote, EST or CST preferred.Schedule : M-F, normal business hours.One of the fastest growing cloud solution providers in Europe with a lot of projects ongoing.We are searching for a ...Show more
    Last updated: 16 days ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    Diverse Lynx • Atlanta, GA, United States
    Full-time
    Responsible for the design, testing, evaluation, implementation, support, management, and deployment of security systems / devices used to safeguard the organization's information assets.Also respons...Show more
    Last updated: 30+ days ago • Promoted