Jobs

Security Incident Response Engineer

Remote USAUnited StatesNorth AmericaMay 18, 2024

Predictive analytics and machine learning power Socure’s groundbreaking technology and fuel our mission to verify 100% of good identities in real time and completely eliminate identity fraud on the internet. 

Socure is the world leader in digital identity verification and fraud prevention. Our recent awards include Forbes 2022 America’s Best Startup Employers, The Forbes Cloud 100, The Deloitte Technology Fast 500, and Inc. 5000’s fastest growing companies. 

Listen to why some of the world’s top technology investors see the enormous, transformative potential in Socure’s mission and products: 

If the video doesn’t load, you can also find it here: https://www.youtube.com/watch?v=ifM9_jPQCv8  

Reporting to the Senior Manager, Monitoring and Incident Response, the Incident Response Engineer will be a key member of Socure’s security function and key partner to our Product, Engineering, and Data Science teams. In this role, you will support Socure with the security monitoring, alerting, and incident response solutions across all of our products and services.

Socure’s Security teams work hand in hand with our Product, Engineering, and Business teams to ensure the highest security around all of our services and applications. Our Monitoring and Incident Response team is responsible for 24x7x365 security monitoring and rapid incident response across all Socure environments. This team protects the confidentiality, integrity, and availability of company and customer data.  Monitoring and Incident Response drives real-time analysis of security alert data and leads the response to any potential security incidents. Team members will also work on compliance projects, and improvements to detection and incident response capabilities. We have a strong team environment where knowledge sharing is encouraged.

Responsibilities:

  • Provide operational support for all aspects of monitoring and response programs, including cloud environments and SaaS applications
  • Work collaboratively with Product, Engineering, and Security teams to stay abreast of Socure’s operating environment and ways to continually improve monitoring and response capabilities based on risk
  • Assist with tool analysis and recommendations (e.g. evaluating and selecting security products based on functional, security, and operational requirements; reviewing and commenting implementation designs and approaches)
  • Assist with performing risk assessments and ensure threats are continually updated and monitored.  Help to manage any identified risks down to acceptable tolerance levels by working cross-functionally with technical functions and leadership teams
  • Assist with configuration and maintenance of monitoring and alerting systems, as well as identifying ways to continuously improve response processes and capabilities

Required Skills and Experience:

  • 3+ years experience performing enterprise security monitoring, incident response, and root cause analysis
  • Able to support FedRAMP-certified environments (Moderate or higher) and meet U.S. government agency requirements/eligibility
  • Working knowledge of cloud environments (AWS preferred), and technical understanding of cloud-based administration and security controls
  • Knowledge of computer operating systems (Mac OS, Linux, Windows)
  • Technical security background and understanding of network fundamentals and common Internet protocols
  • Robust technical understanding of the information security threat landscape (attack vectors and tools, best practices for securing systems and networks, etc.)
  • Experience with NoSQL databases, such as Elasticsearch or Sumo Logic
  • Experience with one or more programming/scripting languages such as Python, JavaScript, Go, Java, or Rust
  • Familiarity with incident response and security operations within public cloud environments
  • Ability to drive high priority, high transparency incidents to resolution with an appropriate sense of urgency
  • Strong interpersonal and verbal/written communication skills required for coordinating responses to complex incidents with cross-functional stakeholders, including both technical and non-technical staff
  • Professional demeanor even in high stress situations
  • Excellent presentation skills, ability to concisely deliver information to executive leadership
  • Strong problem solving ability to determine solutions to encountered or anticipated challenges
  • Ability to deliver quality work products with ambitious deadlines while balancing multiple priorities
  • Availability for on-call support in a 24x7x365, fast-paced operational environment

Bonus Skills:

  • One or more of the following certifications are recommended: CISSP, CISM, GSEC, CERT CSIH, GCIH or other SANS certifications
  • “Incident Commander” or similar training/experience related to incident management and resolution best practices
  • Operational experience monitoring devices such as network and host-based intrusion detection systems, web application firewalls, database security monitoring systems, firewalls/routers/switches, proxy servers, antivirus systems, file integrity monitoring tools, and operating system logs
  • Operational experience responding to security incidents in a production environment, such as investigating and remediating possible endpoint malware infections
  • System forensics/investigation skills, including analyzing system artifacts (file system, memory, running processes, network connections) for indicators of infection/compromise
  • Previous experience working in environments who adhere to control frameworks and/or regulatory requirements including FedRAMP, NIST CSF, HITRUST, Privacy/GDPR, CSA, etc.

Socure is all about encouraging people to push the boundaries of what’s possible through top-tier performance, innovation, ownership, and shared expertise. 

We empower excellence by providing great perks and benefits to both our fully remote employees in North America and our hybrid teams in India. 

To learn more, check out Socure’s Career Page: https://www.socure.com/company/careers

Socure is an equal opportunity employer and value diversity of all kinds at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

To learn more about how our work is changing the world, check out these articles and videos:

Socure is Forbes' 2022 Best Startup Employer: bit.ly/3fbNw8S

Socure Accelerates Onboarding for 50+ Crypto, Neobanks, and More: https://bit.ly/3dwN2K7 

Socure's Impact on Financial Inclusion: https://www.youtube.com/watch?v=Y6nBc6s1wsU 

Socure's Impact on Fraud Prevention: https://www.youtube.com/watch?v=M46UG8QyKe4 

 Archives & Press Releases: https://learn.socure.com/about/press-release

Cyber Security Jobs by Category

Cyber Security Jobs by Location

Cyber Security Salaries