Talent.com
Senior Security Incident Response Engineer
Senior Security Incident Response EngineerAcrisure LLC • Atlanta, GA, United States
Senior Security Incident Response Engineer

Senior Security Incident Response Engineer

Acrisure LLC • Atlanta, GA, United States
1 day ago
Job type
  • Full-time
Job description

About Acrisure

A global fintech leader, Acrisure empowers millions of ambitious businesses and individuals with the right solutions to grow boldly forward. Bringing cutting-edge technology and top-tier human support together, we connect clients with customized solutions across a range of insurance, reinsurance, payroll, benefits, cybersecurity, mortgage services - and more.

In the last eleven years, Acrisure has grown in revenue from $38 million to almost $5 billion and employs over 19,000 colleagues in more than 20 countries. Our culture is defined by our entrepreneurial spirit and all that comes with it : innovation, client centricity and an indomitable will to win.

Job Summary :

The Senior Incident Response Engineer will lead advanced security incident response efforts, focusing on Microsoft E5 security capabilities and Data Loss Prevention (DLP). This role combines technical expertise with leadership responsibilities, ensuring robust detection, containment, and remediation of threats while driving proactive security measures across the enterprise.

Responsibilities : Incident Response :

  • Detect, analyze, and respond to security incidents detected by EDR, SIEM, and Cloud Security tooling as well as MDR service providers.
  • Lead post-incident reviews and drive process improvements.
  • Perform advanced threat hunting using Microsoft Defender and related tools.
  • Integrate threat intelligence and adapt detection strategies based on real world threats observed by the organization.
  • Conduct forensic data acquisition, log analysis, and root cause determination for endpoint incidents.
  • Develop and maintain incident response playbooks and runbooks across the security operations toolset.
  • Collaborate with analysts and other IR engineers to identify opportunities for improvement and tuning of detection rules.
  • Collaborate with IT, legal, HR, communications, and other business units

Microsoft Security & Policy Design :

  • Collaborate on the design, implementation, and maintenance of security policies for Microsoft security components, including :
  • Defender for Endpoint

  • Defender for Cloud Apps
  • Microsoft Purview DLP
  • Intune
  • Conditional Access & Information Protection
  • Regularly review and update policies based on evolving threats and lessons learned.
  • Collaborate with compliance and IT teams to enforce security standards and regulatory requirements.
  • Requirements :

  • Proficiency with Microsoft 365 Security Suite as well as other security tooling such as SentinelOne, Google SecOps, Abnormal Security, and others.
  • Strong experience with incident response, digital forensics, and threat hunting across a hybrid environment.
  • Knowledge of endpoint operating systems (Windows, macOS, and Linux).
  • Experience with cloud environments such as Azure, AWS, and GCP.
  • Experience with scripting (PowerShell, Python, or Bash) for automation and log parsing desired.
  • Embrace a metric-driven approach to continuous improvement.
  • Excellent analytical and critical thinking skills; ability to work in high-pressure situations.
  • Effective verbal and written communication abilities.
  • Meticulous with strong organizational skills and the ability to handle multiple priorities.
  • Ability to work independently and within a collaborative, team-oriented environment.
  • Education and Experience :

  • Minimum 5 years of progressive information security experience.
  • At least 4 years focused on incident response, including investigations across different security domains (endpoint, application, DLP, and more).
  • Expertise in Infrastructure Security : In-depth understanding of infrastructure security, including Windows, Active Directory, Unix / Linux, Mobile Security, and Privileged Access Management.
  • Relevant certifications (one or more preferred) : GCFA, GCIH, CHFI, CySA+, MS SC-200, MS SC-400 or similar.
  • #LI-CH1

    Candidates should be comfortable with an on-site presence to support collaboration, team leadership, and cross-functional partnership.

    Why Join Us :

    At Acrisure, we're building more than a business, we're building a community where people can grow, thrive, and make an impact. Our benefits are designed to support every dimension of your life, from your health and finances to your family and future.

    Making a lasting impact on the communities it serves, Acrisure has pledged more than $22 million through its partnerships with Corewell Health Helen DeVos Children's Hospital in Grand Rapids, Michigan, UPMC Children's Hospital in Pittsburgh, Pennsylvania and Blythedale Children's Hospital in Valhalla, New York.

    Employee Benefits

    We also offer our employees a comprehensive suite of benefits and perks, including :

  • Physical Wellness : Comprehensive medical insurance, dental insurance, and vision insurance; life and disability insurance; fertility benefits; wellness resources; and paid sick time.
  • Mental Wellness : Generous paid time off and holidays; Employee Assistance Program (EAP); and a complimentary Calm app subscription.
  • Financial Wellness : Immediate vesting in a 401(k) plan; Health Savings Account (HSA) and Flexible Spending Account (FSA) options; commuter benefits; and employee discount programs.
  • Family Care : Paid maternity leave and paid paternity leave (including for adoptive parents); legal plan options; and pet insurance coverage.
  • ... and so much more!
  • This list is not exhaustive of all available benefits. Eligibility and waiting periods may apply to certain offerings. Benefits may vary based on subsidiary entity and geographic location.

    Acrisure is an Equal Opportunity Employer. We consider qualified applicants without regard to race, color, religion, sex, national origin, disability, or protected veteran status. Applicants may request reasonable accommodation by contacting leaves@acrisure.com.

    California Residents : Learn more about our privacy practices for applicants by visiting the Acrisure California Applicant Privacy Policy.

    Recruitment Fraud : Please visit here to learn more about our Recruitment Fraud Notice.

    Welcome, your new opportunity awaits you.

    Create a job alert for this search

    Incident Response Engineer • Atlanta, GA, United States

    Related jobs
    Senior Security Incident Response Engineer

    Senior Security Incident Response Engineer

    Acrisure • Atlanta, Georgia, USA
    Full-time
    A global fintech leader Acrisure empowers millions of ambitious businesses and individuals with the right solutions to grow boldly forward. Bringing cutting-edge technology and top-tier human suppor...Show more
    Last updated: 1 day ago • Promoted
    Security Engineer

    Security Engineer

    TCS CT USAAvance Consulting • Atlanta, GA, United States
    Full-time
    As a Senior Staff Information Security Engineer, this position will take on complex and autonomous roles, often leading initiatives to improve system reliability and efficiency.This role will contr...Show more
    Last updated: 4 days ago • Promoted
    Enterprise Security Engineer, IAM (US Remote)

    Enterprise Security Engineer, IAM (US Remote)

    First Advantage • Atlanta, GA, US
    Remote
    Full-time
    Quick Apply
    FA), people are at the heart of everything we do.From our customers and partners to our greatest advantage — our team members. Operating with empathy and compassion, First Advantage fosters a ...Show more
    Last updated: 28 days ago
    Customs and Border Protection Officer - Entry Level

    Customs and Border Protection Officer - Entry Level

    U.S. Customs and Border Protection • Peachtree City, GA, United States
    Full-time
    Customs and Border Protection Officer (CBPO).Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of high...Show more
    Last updated: 30+ days ago • Promoted
    Senior Security Engineer II

    Senior Security Engineer II

    RELX Group plc • Alpharetta, GA, United States
    Part-time
    Do you possess an understanding of security controls and their implementation within complex IT environments?.Do you have demonstrated experience in implementing and managing continuous monitoring ...Show more
    Last updated: 10 days ago • Promoted
    Senior Security Engineer (US Remote)

    Senior Security Engineer (US Remote)

    First Advantage • Atlanta, GA, US
    Remote
    Full-time
    Quick Apply
    FA), people are at the heart of everything we do.From our customers and partners to our greatest advantage — our team members. Operating with empathy and compassion, First Advantage fosters a ...Show more
    Last updated: 30+ days ago
    Senior Process Engineer

    Senior Process Engineer

    Medline Industries - Transportation & Operations • McDonough, GA, US
    Full-time
    Under limited direction, utilizing engineering and lean methodologies, to perform engineering work at operational sites.This work includes analyzing operational bottlenecks, troubleshooting, and de...Show more
    Last updated: 19 days ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    Unum • Atlanta, GA, United States
    Full-time
    Our Fortune 500 company is driving a digital transformation and looking for forward-thinking innovators to disrupt how our industry thinks about and uses technology. As one of the world's leading em...Show more
    Last updated: 14 days ago • Promoted
    Senior Security Engineer II

    Senior Security Engineer II

    RELX • Alpharetta, GA, United States
    Part-time
    Do you possess an understanding of security controls and their implementation within complex IT environments?.Do you have demonstrated experience in implementing and managing continuous monitoring ...Show more
    Last updated: 14 days ago • Promoted
    Senior Information Security Engineer, Identity Security Engineering

    Senior Information Security Engineer, Identity Security Engineering

    JLL • Atlanta, Georgia, USA
    Full-time
    JLL empowers you to shape a brighter way.Our people at JLL and JLL Technologies are shaping the future of real estate for a better world by combining world class services advisory and technology fo...Show more
    Last updated: 3 days ago • Promoted
    Plan Review Consultant

    Plan Review Consultant

    FM • LAWRENCEVILLE, Georgia, United States
    Full-time
    FM is a leading property insurer of the world's largest businesses, providing more than one-third of FORTUNE 1000- size companies with engineering-based risk management and property insurance solut...Show more
    Last updated: 9 days ago • Promoted
    Security Incident Response Engineer

    Security Incident Response Engineer

    Acrisure • Atlanta, Georgia, USA
    Full-time
    A global fintech leader Acrisure empowers millions of ambitious businesses and individuals with the right solutions to grow boldly forward. Bringing cutting-edge technology and top-tier human suppor...Show more
    Last updated: 3 days ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    Unum Group • Atlanta, GA, United States
    Full-time
    Our Fortune 500 company is driving a digital transformation and looking for forward-thinking innovators to disrupt how our industry thinks about and uses technology. As one of the world's leading em...Show more
    Last updated: 3 days ago • Promoted
    Security Incident Response Engineer

    Security Incident Response Engineer

    Acrisure LLC • Atlanta, GA, United States
    Full-time
    A global fintech leader, Acrisure empowers millions of ambitious businesses and individuals with the right solutions to grow boldly forward. Bringing cutting-edge technology and top-tier human suppo...Show more
    Last updated: 1 day ago • Promoted
    Senior Security Engineer II

    Senior Security Engineer II

    LexisNexis • Alpharetta, GA, United States
    Part-time
    Do you possess an understanding of security controls and their implementation within complex IT environments?.Do you have demonstrated experience in implementing and managing continuous monitoring ...Show more
    Last updated: 14 days ago • Promoted
    Lead Adversarial Security Engineer

    Lead Adversarial Security Engineer

    Trellix • Atlanta, GA, United States
    Full-time
    Lead Adversarial Security Engineer.Trellix, the trusted CISO ally, is redefining the future of cybersecurity and soulful work. Our comprehensive, GenAI-powered platform helps organizations confronte...Show more
    Last updated: 3 days ago • Promoted
    Level 1 & Level 2 Data / Access Control Technician

    Level 1 & Level 2 Data / Access Control Technician

    Personnel Options Inc • McDonough, GA, US
    Full-time
    Level l & Level ll Low Voltage, Data Access Control Technician.The role of the Low Voltage Control Technician will be responsible for the following duties : . Pulling and terminating fiber cable.Knowl...Show more
    Last updated: 30+ days ago • Promoted
    Security Engineer

    Security Engineer

    Zoom Corporation • Atlanta, GA, United States
    Full-time
    The Security Engineer is responsible for security design and reviews across our products and services, with a specific focus on Platform services and core infrastructure components.The ideal candid...Show more
    Last updated: 2 days ago • Promoted