Senior Engineer, MDR

Posted Yesterday
Hiring Remotely in USA
Remote
110K-164K Annually
Senior level
Insurance
The Role
Lead and mentor an incident response engineering team to deliver digital forensics, malware analysis, and security automation. Build and maintain SOAR/CI/CD solutions, support complex investigations across Windows/Linux/cloud environments, manage client engagements, and improve processes to scale response capabilities and reporting.
Summary Generated by Built In

About Vector3
Vector3, Inc., is an incident response firm supporting TMHCC Cyber and Professional Lines Group (CPLG). Vector3 specializes in responding to Business Email Compromise (BEC) and Ransomware incidents, helping insured organizations investigate, contain, and recover from cyber events.

Job Summary

Join us as a Senior Engineer, MDR and take a lead role in shaping our digital forensics and incident response practice for TMHCC-CPLG insureds. In this player-coach position, you'll combine deep technical expertise with strong leadership to drive complex engineering initiatives that enhance the scale, speed, and precision of our investigations. You'll guide a team of talented engineers through hands-on problem-solving, build scalable solutions for evolving threats, and help refine our consulting capabilities. Your mentorship will elevate team performance, ensuring we continue to deliver exceptional outcomes in high-stakes environments.

Key Responsibilities

Relying on extensive knowledge and leadership skills, this role is accountable for the following responsibilities:

  • Leadership and Mentorship:
    • Assign tasks, delegate responsibilities, and provides mentorship to team members.
    • Support development and maintenance of operating procedures and best practices for engineering team.
    • Maintain positive, professional insured/carrier relationships.
    • Foster a culture of innovation, continuous learning, and skill development within the engineering team.
  • Client Management and Engagement:
    • Understand insured needs and tailor strategies to address specific business risks and compliance requirements.
    • Communicate complex engineering concepts internally and externally.
  • Incident Engineering Operations:
    • Develop and maintain engineering automation in support of incident response plans aligned with industry best practices.
  • Technical Experience:
    • Stay informed about emerging engineering technologies and industry best practices.
    • Understand and be aware of digital forensics methodologies for evidence collection, analysis, and reporting.
    • Provide expert technical guidance on engineering methodologies, automation techniques, software development and recovery techniques.
    • Occasionally, support complex digital forensic investigations, including analysis of system logs, network traffic, and endpoint data.

Competencies

Planning

  • Contribute to the development of both short-term and long-term plans for designated area of the organization.

Communication

  • Communicate team plans or results, internally and externally, at all organizational levels.
  • Write, or is a major contributor to, technical reports or contractual documents.
  • Present informational briefings.

Cost Management

  • Develop innovative ways to improve financials.

Business Controls and Policies

  • Comply with all corporate policies and procedures.

Education Requirements

Minimum 4 year / bachelor’s degree in cyber security, Computer Science, Information Technology related degree or relevant professional work experience

Certification, Licenses, and Designations

3 years former professional experience in leading and managing security engineering teams, developing security automation and/or SOAR capabilities in support of security incident response, digital forensics, malware analysis or threat intelligence. Experience managing active cybersecurity engagements, including security incident response and digital forensics is also required for this role.

Advanced degrees or certifications in security (CISSP, CISM, GCFE, GCFA, GREM, GBFA, GCIH, CFCE, CCE) or cloud engineering (AWS Certified Security, Azure Security Engineer, Google Professional Cloud Security Engineer, CCNA, MCSE) are a plus.

Other

  • Proven track record of success in managing complex engineering initiatives.
  • Experience in conducting security investigations in Linux and Windows environments.
  • Understanding of cloud platforms and security considerations within AWS (Amazon Web Services), Azure, Microsoft 365, and GCP (Google Cloud Platform).
  • Proficient scripting/programming skills: PowerShell, Bash, Python, Go, Rust
  • Proficiency and experience with CI/CD: Jenkins, GitHub Actions, GitLab CI, Circle CI
  • Proficiency and experience with containerization: Docker, Kubernetes
  • Experience working with middleware or SOAR platforms: Tines, Splunk, Swimlane Cortex XSOAR
  • Experience working with RESTful APIs for security automation.
  • Experience with EDR solutions (Defender, SentinelOne, CrowdStrike)
  • Experience with threat intelligence platforms or open-source solutions.
  • Experience with malware analysis methodologies.
  • Experience administering various enterprise grade security tools and databases: SIEM, IAM, EDR, firewalls, IDS/IPS, VPN, data warehouses, DLP
  • Experience with data backup and recovery, data replication, and data archival technologies.
  • Experience with hypervisor technologies: VMWare, MS Hyper-V
  • Strong understanding of legal and regulatory frameworks related to cyber security such as PCI, NIST CSF, or other industry-specific regulations.
  • Excellent communication and presentation skills to clearly and concisely communicate complex technical findings to clients and stakeholders.
  • Strong leadership abilities to motivate and mentor team members.
  • Superior organizational and analytical skills; demonstrated ability to manage multiple tasks simultaneously.
  • Knowledgeable of industry changes, legal updates, and technical developments related to applicable area of the Company’s business to proactively respond to changing business environment.
  • Advanced proficiency and experience using Microsoft Office package (Excel, Access, PowerPoint, Word).

Additional Working Conditions and Physical Conditions

  • Overtime hours may be required to fulfill job responsibilities
  • May be required to remain stationary for extended periods of time
  • May be required to move up to 10 pounds
  • Must be able to operate a computer and other devices
  • Close vision and ability to adjust focus, such as required to read a computer screen
  • Regular travel (up to 15% of time)

The pay range for this position is $109,500-$164,300 which includes geographic adjustments, where applicable. The pay range is the range THMCC, in good faith, believes is the range of compensation for this role at the time of this posting. The hired applicant will be offered pay within the entire range based on the candidate’s geographic location, qualifications, work experience, education, and/or skill level. The Company is fully committed to ensuring equal pay opportunities for equal work regardless of color, race, sex, national origin, sexual orientation, religion, age, veteran status, disability, pregnancy, citizenship status, genetic information, or any other basis protected by federal, state, or local pay equity laws. 

California → Use CA Fair Chance language. 

The Company will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable federal, state and local laws, such as the Violent Crime Control and Law Enforcement Act of 1994 (18 USC § 1033(e) (the “VCCLEA”), which restricts financial institutions and insurers such as TMHCC from employing individuals with certain types of criminal convictions. Where the hiring and employment of individuals is not restricted by the foregoing, the Company will consider qualified applicants with arrest or conviction history in compliance with applicable law such as the California Fair Chance Act, the Los Angeles Fair Chance Initiative for Hiring Ordinance, the Los Angeles County Fair Chance Ordinance, the San Diego Fair Chance Ordinance, and the San Francisco Fair Chance Ordinance. 

As an insurance company, we comply with certain federal, state and local laws such as the Violent Crime Control and Law Enforcement Act of 1994 (18 USC § 1033(e)), which restricts our ability to employ individuals with certain types of criminal convictions. Where not restricted by law and for criminal history not covered by this law, the Company will consider qualified applicants with arrest or conviction history in compliance with applicable law. 

You do not need to disclose your criminal history or participate in a background check until a conditional job offer is made to you. After making a conditional offer and running a background check, if the Company is concerned about a conviction that is directly related to the job, you will be given the chance to explain the circumstances surrounding the conviction or challenge the accuracy of the background report. The Company will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable federal, state and local laws, such as the Violent Crime Control and Law Enforcement Act of 1994 (18 USC § 1033(e) (the “VCCLEA”), which restricts financial institutions and insurers such as TMHCC from employing individuals with certain types of criminal convictions. Where the hiring and employment of individuals is not restricted by the foregoing, the Company will consider qualified applicants with arrest or conviction history in compliance with applicable law such as the California Fair Chance Act, the Los Angeles Fair Chance Initiative for Hiring Ordinance, the Los Angeles County Fair Chance Ordinance, the San Diego Fair Chance Ordinance, and the San Francisco Fair Chance Ordinance.

Applying our Mind Over Risk philosophy to writing insurance allows our customers to take on opportunity with confidence. That philosophy defines our way of thinking, unites us as a team, and differentiates us from our competitors. We are much more than just an insurance company; we are a good company. 

Equal Opportunity Employer 

TMHCC is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity, genetic information, marital status, medical condition, national origin, physical or mental disability, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. 

 #LI-Hybrid  

#CPLG1 

#LI-VA 

Skills Required

  • Bachelor's degree in Cyber Security, Computer Science, Information Technology or equivalent professional experience
  • 3+ years professional experience leading and managing security engineering teams and security automation/SOAR capabilities
  • Experience managing active cybersecurity engagements, including incident response and digital forensics
  • Experience conducting security investigations in Linux and Windows environments
  • Understanding of cloud platforms and security considerations: AWS, Azure, Microsoft 365, GCP
  • Proficient scripting/programming skills: PowerShell, Bash, Python, Go, Rust
  • Experience with CI/CD tools: Jenkins, GitHub Actions, GitLab CI, Circle CI
  • Experience with containerization: Docker, Kubernetes
  • Experience with SOAR or middleware platforms: Tines, Splunk, Swimlane, Cortex XSOAR
  • Experience working with RESTful APIs for security automation
  • Experience with EDR solutions (Microsoft Defender, SentinelOne, CrowdStrike)
  • Experience with threat intelligence platforms and malware analysis methodologies
  • Experience administering enterprise security tools/databases: SIEM, IAM, firewalls, IDS/IPS, VPN, data warehouses, DLP
  • Experience with data backup, recovery, replication, and archival technologies
  • Experience with hypervisor technologies: VMWare, MS Hyper-V
  • Strong understanding of legal and regulatory frameworks such as PCI and NIST CSF
  • Excellent communication and presentation skills; ability to produce technical reports and briefings
  • Advanced degrees or certifications in security or cloud engineering (CISSP, CISM, GCFE, GCFA, GREM, GCIH, CFCE, AWS/Azure/GCP security certs)
  • Advanced proficiency with Microsoft Office suite (Excel, Access, PowerPoint, Word)

Tokio Marine Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Tokio Marine and has not been reviewed or approved by Tokio Marine.

  • Healthcare Strength Medical options include established carriers with PPO and HDHP choices, plus dental, vision, pharmacy, telehealth, and condition‑specific programs for comprehensive access. An employee assistance program and mental‑wellbeing resources further reinforce day‑to‑day support.
  • Retirement Support A 401(k) with company match and employer‑paid life and disability coverage strengthen long‑term financial security. Careers materials and recent updates signal continued attention to retirement and protection benefits.
  • Wellbeing & Lifestyle Benefits Wellness incentives, fitness access, and a holistic “body, mind, wallet, life” framework expand total‑rewards value beyond insurance alone. Paid volunteer time and community programs add lifestyle‑oriented benefits aligned with purpose.

Tokio Marine Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
Houston, Texas
2,600 Employees

What We Do

Tokio Marine HCC can help you or your clients be prepared for unpredictable weather patterns. Event weather insurance protects revenue losses caused by adverse weather conditions that reduce attendance and the sales of concessions, food and parking.

Similar Jobs

Wipfli Logo Wipfli

Consultant

Cloud • Fintech • Software • Business Intelligence • Consulting • Financial Services
Remote or Hybrid
United States
3000 Employees
129K-174K Annually

Liberty Mutual Insurance Logo Liberty Mutual Insurance

Inside Sales Representative

Artificial Intelligence • Fintech • Insurance • Marketing Tech • Software • Analytics
Remote or Hybrid
11 Locations
40000 Employees
45K-100K Annually

Wells Fargo Logo Wells Fargo

Personal Banker Chatsworth

Fintech • Financial Services
Remote or Hybrid
Chatsworth Lake Manor, CA, USA
205000 Employees
23-31 Hourly

Liberty Mutual Insurance Logo Liberty Mutual Insurance

Analyst/Senior Analyst, Advanced Analytics

Artificial Intelligence • Fintech • Insurance • Marketing Tech • Software • Analytics
Remote or Hybrid
4 Locations
40000 Employees
67K-138K Annually

Similar Companies Hiring

Globe Life Thumbnail
Insurance • Financial Services
McKinney, TX
3000 Employees
MassMutual India Thumbnail
Big Data • Fintech • Information Technology • Insurance • Financial Services
Hyderabad, Telangana
Granted Thumbnail
Artificial Intelligence • Healthtech • Insurance • Mobile • Financial Services
New York, New York
23 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account