Security Incident Response Engineer - SOAR

Company:  Acrisure, LLC
Location: Grand Rapids
Closing Date: 06/11/2024
Salary: £100 - £125 Per Annum
Hours: Full Time
Type: Permanent
Job Requirements / Description

Security Incident Response Engineer - SOAR

Job Title: Security Incident Response Engineer - SOAR

Department: Information Security

Location: Remote or Hybrid (Grand Rapids, MI)

About Acrisure

Acrisure is a global Fintech leader that combines the best of humans and high tech to offer multiple financial products and services to millions of businesses and individual clients. We connect clients to solutions that help them protect and grow what matters, including Insurance, Reinsurance, Cyber Services, Mortgage Origination and more.

Acrisure employs over 17,000 entrepreneurial colleagues in 21 countries and has grown from $38 million to $4.3 billion in revenue in just over ten years. Our culture is defined by our entrepreneurial spirit and all that comes with it: innovation, client centricity and an indomitable will to win.

Responsibilities:

Incident Detection and Eradication:

  1. Conduct a thorough analysis of the incident, including its origins and impact.
  2. Collaborate with other teams to identify vulnerabilities and weaknesses in the security infrastructure and recommend improvements.
  3. Develop and implement strategies to remove the root cause of the incident.
  4. Ensure all malicious artifacts are eliminated from the environment.
  5. Use security tools and monitoring systems to identify and detect security incidents.
  6. Analyze security alerts and anomalies to determine if they represent actual security incidents.

Security Orchestration, Automation, and Response:

  1. Proficiency in designing and implementing end-to-end workflows within the SOAR platform.
  2. Ability to map out and optimize security incident response workflows within the SOAR platform.
  3. Experience working with APIs to integrate security tools and platforms seamlessly.
  4. Experience integrating SOAR solutions with cloud-based security services and platforms.
  5. Understanding of data normalization techniques to ensure consistency in data formats across integrated security tools.
  6. Knowledge of APIs provided by major cloud service providers (AWS, Azure, Google Cloud) for security automation.
  7. Proficient in developing metrics and reports to measure the effectiveness of automated processes.
  8. Ability to generate reports on key performance indicators (KPIs) related to incident response and automation.

Communication and Documentation:

  1. Communicate with stakeholders, including management, IT teams, and legal departments, to provide updates on the incident response process.
  2. Maintain detailed records of incident response activities, including timelines, actions taken, and outcomes.
  3. Prepare incident reports for management and other stakeholders.
  4. Coordinate with external parties, such as law enforcement or third-party incident responders.

Education/Experience:

  1. 3 to 5 years of experience in Information Security.
  2. 1-3 years of experience in incident response and SOAR.
  3. Proven experience with Endpoint Detection and Response (EDR) tools such as SentinelOne, Microsoft Defender, CrowdStrike, or others.
  4. In-depth understanding of infrastructure security, including Windows, Active Directory, Unix/Linux, Mobile Security, and Privileged Access Management.
  5. DFIR certifications, such as GCIH, GCFA, CHFI, or CCFP are a plus.

Benefits & Perks:

  1. Competitive Compensation
  2. Industry Leading Healthcare
  3. Savings and Investments
  4. Charitable Giving Programs
  5. Hybrid work option
  6. Opportunities for Growth
  7. Parental Leave
  8. Generous time away

Acrisure is committed to making an impact in our communities by giving back, with millions committed to children’s health with Helen Devos Children’s Hospital and UPMC Children's Hospital of Pittsburgh.

For more, visit .

Acrisure is committed to employing a diverse workforce. All applicants will be considered for employment without attention to race, color, religion, age, sex, sexual orientation, gender identity, national origin, veteran, or disability status.

#J-18808-Ljbffr
Apply Now
Share this job
Acrisure, LLC
  • Similar Jobs

  • Security Incident Response Engineer - SOAR

    Grand Rapids
    View Job
  • Security Incident Response Engineer - SOAR

    Grand Rapids
    View Job
  • Security Incident Response Engineer - SOAR

    Grand Rapids
    View Job
  • Electrical Engineer

    Grand Rapids
    View Job
  • Plastics Engineer

    Grand Rapids
    View Job
An error has occurred. This application may no longer respond until reloaded. Reload 🗙