Cybersecurity Senior Engineer (Customer Cyber Threat Response)

Job Posted 11 Days Ago Reposted 11 Days Ago
North Hills, NY
Hybrid
119K-198K Annually
Senior level
Automotive • Cloud • Greentech • Information Technology • Other • Software • Cybersecurity
Empowering people today to build a better future for the next generation.
The Role
The Cybersecurity Senior Engineer will focus on customer security operations, incident response, threat analysis, and improving security monitoring and response capabilities.
Summary Generated by Built In
We are seeking a skilled and detail-oriented Cybersecurity Senior Security engineer, who will be focused on customer-related security operations and incident response. This role is critical in detecting, analyzing, and responding to security incidents impacting our customers and products. The ideal candidate will leverage their expertise in Security Operations (SecOps), Incident Response (IR), and threat detection to ensure mitigation and resolution of security threats.
Security Operations
  • Conducts threat analysis and alert triage using various security tools (e.g., SIEM, EDR, Intelligence platforms).
  • Investigates and responds to escalations involving phishing, account takeovers, data breaches, and other security issues.
  • Performs threat hunting to proactively identify malicious and fraudulent activity.
  • Analyzes threat intelligence to identify and mitigate emerging threats to businesses and customers.
  • Creates investigation workflows and steps, aligned to threat resolution.
  • Continuously improves and maintains investigation workflows, achieving process optimization and improved threat detection.
  • Collaborates with various teams and MSS, continuously improving cybersecurity capabilities (prevention, detection, response).
  • Supports customer-facing teams and relevant business stakeholders for various security issues.
  • Proposes and helps review security plans and policies to improve organizational security posture.
  • Provides off-hour support as needed for security administration, detection, and response activities.

Incident Response
  • Investigates and responds to customer impacting security incidents (e.g., Denial of Service, data breaches).
  • Investigates tactics, techniques, and procedures (TTPs) used by threat actors conducting malicious activity.
  • Correlates incident data to identify threat trends and specific vulnerabilities.
  • Conducts root cause analysis and develops remediation strategies to prevent incident recurrence.
  • Documents response activities and mitigation measures for internal and external stakeholders.
  • Plans, implements, and maintains incident handling procedures, continuously improving response effectiveness.

Service Desk and Incident Management
  • Supports investigations and resolution of customer-based security issues.

Project Responsibilities
  • Partners with teams, designs, implements, and refines customer-focused detection rules and processes.
  • Defines KPIs, builds dashboards, and reports on detection and response performance.

Professional Technology Skills (the professional technology skills you need to be able to do the job)
Ability to:
  • Work with technical teams along with external MSSPs, for security monitoring of DDoS Protection, Email systems, Application logs, Intelligence platforms, and Endpoint security technologies.
  • Perform data analytics, security event correlation, and issue triage.
  • Apply security Threat Intelligence to respond appropriately to security events.
  • Work on projects to improve security monitoring and response capabilities.
  • Demonstrate a strong understanding of Zero Trust and security best practices.
  • Demonstrate a strong security engineering and architecture background.
  • Demonstrate effective communication of security issues to management and peers.
  • Maintain security monitoring guidelines and standards.
  • Perform incident response and forensic activities for internal and external threats.
  • Work with internal teams (IT, business), MSSPs, and external forensic services while responding to incidents.
  • Ensure all identified incidents are promptly and thoroughly investigated and remediated.
  • Ensure security incidents are documented accurately and thoroughly.

Knowledge, Experience & Qualifications
Essential
  • Bachelor's degree in Computer Science and 4+ years of industry related professional experience and education.
  • Multi-cloud security experience AWS, Azure, GCP
  • Expert level knowledge on WAF, Web Security, DDoS protection, data analytics, and Bot Mgmt.
  • Working experience with Information Security, Network Security, Security Monitoring and Incident Response.
  • Working experience with industry standard security technologies and services including Threat Intelligence, IPS, Endpoint Security, SIEM/SOAR.
  • Strong ability in investigative skills and problem solving.

Desirable
  • GSEC, GCIA, GFE, GCFA, CISA, CISSP, CISM, or CIA certification(s).
  • Dev Ops / Engineering / Network / System Administration experience.
  • Experience with various querying and scripting languages.

USD 118,800.00 - 198,000.00 per year
Compensation:
Compensation includes a base salary of $118,800.00 - $198,000.00. The base salary may vary within the anticipated base pay range based on factors such as the ultimate location of the position and the selected candidate's knowledge, skills, and abilities. Position may be eligible for additional compensation that may include an incentive program.
Benefits:
The Company offers eligible employees the flexibility to take as much vacation with pay as they deem consistent with their duties, the company's needs, and its obligations; seven paid holidays throughout the calendar year; and up to 160 hours of paid wellness annually for their own wellness or that of family members. Employees are also eligible for additional paid time off in the form of bereavement leave, time off to vote, jury duty leave, volunteer time off, military leave, and parental leave.

Top Skills

AWS
Azure
Ddos Protection
Edr
Endpoint Security
GCP
Intelligence Platforms
Ips
SIEM
Siem/Soar
Threat Intelligence
Waf
Web Security

What the Team is Saying

Person1
Belinda
Manager of Network Automation
“I like that I’m able to voice my opinion on projects and my leaders are very supportive of things I want to try. At Cox, I feel like I’ve made an impact and that I’m valued. There’s a path for my career here.“
Belinda
Tonya
Chris
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Atlanta, GA
50,000 Employees
Hybrid Workplace
Year Founded: 1898

What We Do

For well over a century, Cox Enterprises has been shaping the future with daring ideas and values-driven thinking.

Since our founding in 1898, our relentless spirit of innovation has driven us to disrupt industries and enhance the quality of life in the communities we serve. Through our major divisions — Cox Communications, Cox Automotive and Cox Farms — our people have countless opportunities to grow and make an impact in the communications and automotive industries, as well as in new ventures in agriculture, cleantech, digital media and more.

As a privately-held, family-owned business, we know that people are our most valuable asset. We offer a supportive and inclusive environment with flexible career growth, amazing benefits and work-life balance at the forefront.

Our mission, our ways of working and our commitment to people are what make our workplace culture remarkably flexible and resilient. Join us to build a better future and make your mark.

Why Work With Us

At our core, Cox is a technology company that values human relationships. We know people feel most empowered when their work has meaning, when they feel respected and have opportunities to grow. “Career satisfaction” is not enough at Cox — we’re here to help you find balance, live well and achieve your career goals even as they change over time.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

Cox Enterprises Teams

Team
Product & Tech
Team
B2B & Cloud Sales
About our Teams
Option 1 of 1

Cox Enterprises Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

Every person has different working styles and preferences — and we aim to empower teams to work where they are most comfortable. Some roles require in-person work, but for those that can be performed remotely, we offer flexibility.

Typical time on-site: Flexible
Company Office Image
HQAtlanta, GA
Company Office Image
Austin, TX
Company Office Image
Burlington, VT
Company Office Image
Foothill Ranch, CA
Las Vegas, NV
Company Office Image
North Hills, NY
Company Office Image
Oklahoma City, OK
Company Office Image
Omaha, NE
Company Office Image
Phoenix, AZ
Company Office Image
Raleigh, NC
Company Office Image
San Diego, CA
South Jordan, UT
Learn more
Option 1 of 11

Similar Jobs

Cox Enterprises Logo Cox Enterprises

Lead Network Engineer (RapidScale)

Automotive • Cloud • Greentech • Information Technology • Other • Software • Cybersecurity
Hybrid
New York, NY, USA
109K-181K Annually

Cox Enterprises Logo Cox Enterprises

Principal Security Solutions Architect Principal Security Solutions Architect - Field CISO (RapidScale)

Automotive • Cloud • Greentech • Information Technology • Other • Software • Cybersecurity
Remote
Hybrid
New York, NY, USA
145K-242K Annually

Cox Enterprises Logo Cox Enterprises

Lead Network Support Specialist (RapidScale)

Automotive • Cloud • Greentech • Information Technology • Other • Software • Cybersecurity
Hybrid
New York, NY, USA
38-57

Cox Enterprises Logo Cox Enterprises

Senior Cybersecurity WAF Engineer

Automotive • Cloud • Greentech • Information Technology • Other • Software • Cybersecurity
Hybrid
New York, NY, USA
99K-165K Annually
By clicking Apply you agree to share your profile information with the hiring company.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account