Sr. Engineer, Cybersecurity - Threat Response

Posted 4 Days Ago
Be an Early Applicant
3 Locations
In-Office
103K-186K Annually
Senior level
Other • Utilities
The Role
Lead detection and response activities: analyze alerts and threat intelligence, serve as Incident Commander, coordinate containment/recovery, drive remediation with engineering teams, improve detection via automation and tuning, mentor teammates, and participate in on-call rotation.
Summary Generated by Built In

At T-Mobile, we invest in YOU!  Our Total Rewards Package ensures that employees get the same big love we give our customers.  All team members receive a competitive base salary and compensation package - this is Total Rewards. Employees enjoy multiple wealth-building opportunities through our annual stock grant, employee stock purchase plan, 401(k), and access to free, year-round money coaches. That’s how we’re UNSTOPPABLE for our employees!

This role is essential for protecting digital assets and maintaining the integrity of cybersecurity infrastructure within the organization. It involves developing and implementing security strategies, tools, and technologies to defend against cyber threats and vulnerabilities. The role is distinguished by its focus on proactive risk identification and deployment of mitigation measures to safeguard systems and data. Success is measured by the effectiveness of security improvements and alignment with organizational goals and regulatory requirements. The work enhances organizational resilience to cyber incidents and supports overall security posture for internal and external team members.
Our team is dynamic where no day is the same, and we are a diverse and inclusive team passionate about growth and innovation! If you're up to the challenge, apply today!

Job Responsibilities

  • Conduct analysis of security alerts, incidents, and threat intelligence to identify potential risks and assess impact to systems and business operations.
  • Lead and support cybersecurity incident response activities, including detection, investigation, containment, eradication, recovery, and post-incident review.
  • Serve as Incident Commander during cybersecurity incidents, coordinating multi-functional response efforts, driving decision-making, managing communications, and ensuring timely resolution of security events.
  • Conduct proactive investigations to identify emerging threats, validate security controls, and improve detection and response capabilities.
  • Develop and implement response procedures and mitigation strategies to reduce organizational risk.
  • Collaborate with internal technology teams and business partners to investigate security events and drive remediation efforts.
  • Partner closely with network, cloud, infrastructure, and application teams to investigate security incidents impacting enterprise and telecommunications environments.
  • Document incident findings, root cause analysis, response actions, and lessons learned in accordance with company policies and regulatory requirements.
  • Communicate incident status, technical findings, and remediation recommendations to leadership and key collaborators.
  • Contribute to continuous improvement of detection and response capabilities through process enhancements, tuning opportunities, automation, and knowledge sharing.
  • Monitor evolving threat activity and apply industry standards to improve organizational resilience.
  • Provide technical guidance and mentoring to peers and junior team members.
  • Participate in cybersecurity initiatives and projects assigned by management.
  • Participate in an on-call rotation to provide after-hours support for cybersecurity incident escalations originating from the Security Operations Center (SOC).

Qualifications

  • Bachelor's Degree plus 5 years of related work experience OR Advanced degree with 3 years of related experience. Acceptable areas of study include Computer Science or Information Technology. (required)
  • 4-7 years experience with security related software and/or business process design.
  • 4-7 years experience in technical project management and leading multi-functional solution design teams.
  • 4-7 years experience in network information security, including firewall policy design, SSL certificate management, and vulnerability analysis and mitigation.
  • Experience supporting cybersecurity operations, security investigations, or incident response activities.
  • Experience with enterprise security technologies and security monitoring platforms.

Preferred Qualifications

  • Experience serving as an Incident Commander, Incident Lead, or similar coordination role during major cybersecurity incidents or enterprise outages.
  • Knowledge of telecommunications, carrier, service provider, or large-scale network environments, including core networking concepts, network protocols, and network security principles.
  • Experience investigating network-based attacks, telecommunications infrastructure security events, or incidents involving enterprise and carrier-grade technologies.
  • Experience conducting digital forensics investigations and knowledge of forensic tools such as Axiom, KAPE, EnCase, X-Ways, Cellebrite, or similar platforms.
  • Experience with MITRE ATT&CK, Cyber Kill Chain, and NIST/SANS Incident Handling frameworks.
  • Experience with SOAR platforms and security automation development.
  • Knowledge of cloud security and enterprise-scale environments.
  • Experience with SIEM, IDS/IPS, EDR, and security monitoring technologies.
  • Solid understanding of network security, routing, switching, DNS, TCP/IP, telecommunications technologies, threat detection, and incident response methodologies.
  • Strong knowledge of enterprise networking concepts, including TCP/IP, DNS, routing, switching, firewalls, network protocols, and network-based threat detection and response
  • Knowledge of adversary tactics, techniques, and procedures (TTPs), threat-informed defense methodologies, and proactive investigation techniques
  • Knowledge of scripting tools (Python, Perl, Shell, HTML, PHP)
  • Strong analytical, troubleshooting, and problem-solving skills.
  • Ability to communicate technical findings to both technical and non-technical audiences.

Knowledge, Skills and Abilities

  • Cybersecurity Technologies, Engineering, Testing
  • Security Incident Management
  • Threat Modeling
  • Security Automation
  • Escalation Management
  • Stakeholder Management
  • Artificial Intelligence (AI) awareness and emerging security implications

Licenses and Certifications(preferred)

  • CISSP, CISM, CRISC, CCSP, CCSK, CISA, GCIH, GCFA, GCFE, GNFA, GCIA, GREM, or similar certifications.

• At least 18 years of age
• Legally authorized to work in the United States

Travel:
Travel Required (Yes/No):Yes
DOT Regulated:
DOT Regulated Position (Yes/No):No
Safety Sensitive Position (Yes/No):No

Base Pay Range: $103,400 - $186,400

Corporate Bonus Target: 15%

The pay range above is the general base pay range for a successful candidate in the role. The successful candidate’s actual pay will be based on various factors, such as work location, qualifications, and experience, so the actual starting pay will vary within this range.

At T-Mobile, employees in regular, non-temporary roles are eligible for an annual bonus or periodic sales incentive or bonus, based on their role. Most Corporate employees are eligible for a year-end bonus based on company and/or individual performance and which is set at a percentage of the employee’s eligible earnings in the prior year. Certain positions in Customer Care are eligible for monthly bonuses based on individual and/or team performance. To find the pay range for this role based on hiring location, https://paylookup.t-mobile.com/paylookup?reqID=REQ355548¶dox=1

At T-Mobile, our benefits exemplify the spirit of One Team, Together! A big part of how we care for one another is working to ensure our benefits evolve to meet the needs of our team members. Full and part-time employees have access to the same benefits when eligible. We cover all of the bases, offering medical, dental and vision insurance, a flexible spending account, 401(k), employee stock grants, employee stock purchase plan, paid time off and up to 12 paid holidays - which total about 4 weeks for new full-time employees and about 2.5 weeks for new part-time employees annually - paid parental and family leave, family building benefits, back-up care, enhanced family support, childcare subsidy, tuition assistance, college coaching, short- and long-term disability, voluntary AD&D coverage, voluntary accident coverage, voluntary life insurance, voluntary disability insurance, and voluntary long-term care insurance. We don't stop there - eligible employees can also receive mobile service & home internet discounts, pet insurance, and access to commuter and transit programs! To learn about T-Mobile’s amazing benefits, check out www.t-mobilebenefits.com.

Never stop growing!
As part of the T-Mobile team, you know the Un-carrier doesn’t have a corporate ladder–it’s more like a jungle gym of possibilities! We love helping our employees grow in their careers, because it’s that shared drive to aim high that drives our business and our culture forward. By applying for this career opportunity, you’re living our values while investing in your career growth–and we applaud it. You’re unstoppable!
T-Mobile USA, Inc. is an Equal Opportunity Employer. All decisions concerning the employment relationship will be made without regard to age, race, ethnicity, color, religion, creed, sex, sexual orientation, gender identity or expression, national origin, religious affiliation, marital status, citizenship status, veteran status, the presence of any physical or mental disability, or any other status or characteristic protected by federal, state, or local law. Discrimination, retaliation or harassment based upon any of these factors is wholly inconsistent with how we do business and will not be tolerated.
Talent comes in all forms at the Un-carrier. If you are an individual with a disability and need reasonable accommodation at any point in the application or interview process, please let us know by emailing [email protected] or calling 1-844-873-9500. Please note, this contact channel is not a means to apply for or inquire about a position and we are unable to respond to non-accommodation related requests.

Skills Required

  • Bachelor's Degree in Computer Science or Information Technology plus 5 years related experience OR advanced degree plus 3 years
  • 4-7 years experience with security-related software and/or business process design
  • 4-7 years experience in technical project management and leading multi-functional solution design teams
  • 4-7 years experience in network information security, including firewall policy design, SSL certificate management, vulnerability analysis and mitigation
  • Experience supporting cybersecurity operations, security investigations, or incident response activities
  • Experience with enterprise security technologies and security monitoring platforms (SIEM, EDR, IDS/IPS)
  • At least 18 years of age
  • Legally authorized to work in the United States
  • Experience serving as an Incident Commander or Incident Lead during major cybersecurity incidents
  • Knowledge of telecommunications, carrier or large-scale network environments and network security principles
  • Experience conducting digital forensics and familiarity with Axiom, KAPE, EnCase, X-Ways, Cellebrite
  • Familiarity with MITRE ATT&CK, Cyber Kill Chain, and NIST/SANS Incident Handling frameworks
  • Experience with SOAR platforms and security automation development
  • Knowledge of cloud security and enterprise-scale environments
  • Experience with SIEM, IDS/IPS, EDR, and security monitoring technologies
  • Knowledge of adversary TTPs, threat-informed defense, and proactive investigation techniques
  • Knowledge of scripting tools: Python, Perl, Shell, HTML, PHP
  • Relevant certifications (preferred): CISSP, CISM, CRISC, CCSP, CCSK, CISA, GCIH, GCFA, GCFE, GNFA, GCIA, GREM

T-Mobile Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about T-Mobile and has not been reviewed or approved by T-Mobile.

  • Healthcare Strength Health coverage includes multiple medical plan types alongside dental and vision, with virtual care and mental‑health options included. LiveMagenta support and dedicated health‑care advocates provide accessible guidance and care navigation.
  • Equity Value & Accessibility Equity participation includes annual stock grants for eligible roles and a 15%‑discount ESPP with a lookback, extending value beyond base pay. Feedback suggests these equity programs are a meaningful component of total rewards.
  • Parental & Family Support Family‑building and caregiving support spans paid parental and family leave, Progyny fertility, adoption/surrogacy reimbursements, doula support, and backup care. Income‑based childcare subsidies further ease costs for eligible employees.

T-Mobile Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Bellevue, WA
89,016 Employees

What We Do

T-Mobile U.S. Inc. (NASDAQ: TMUS) is America’s supercharged Un-carrier, delivering an advanced 4G LTE and transformative nationwide 5G network that will offer reliable connectivity for all. T-Mobile’s customers benefit from its unmatched combination of value and quality, unwavering obsession with offering them the best possible service experience and undisputable drive for disruption that creates competition and innovation in wireless and beyond. Based in Bellevue, Wash., T-Mobile provides services through its subsidiaries and operates its flagship brands, T-Mobile, Metro by T-Mobile and Sprint.

Similar Jobs

PNC Bank Logo PNC Bank

Business Systems Analyst

Machine Learning • Payments • Security • Software • Financial Services
Remote or Hybrid
USA
55000 Employees
75K-125K Annually

Boeing Logo Boeing

Operations Specialist

Aerospace • Information Technology • Software • Cybersecurity • Design • Defense • Manufacturing
In-Office
Seattle, WA, USA
170000 Employees
127K-173K Annually

Boeing Logo Boeing

Associate Facilities Plant Civil Engineer

Aerospace • Information Technology • Software • Cybersecurity • Design • Defense • Manufacturing
In-Office
Renton, WA, USA
170000 Employees
91K-123K Annually

Boeing Logo Boeing

Engineering Manager

Aerospace • Information Technology • Software • Cybersecurity • Design • Defense • Manufacturing
In-Office
Everett, WA, USA
170000 Employees
147K-199K Annually

Similar Companies Hiring

KUBRA Thumbnail
Artificial Intelligence • Information Technology • Mobile • Payments • Software • App development • Utilities
Mississauga, Ontario
600 Employees
Sierra Space Thumbnail
Aerospace • Hardware • Information Technology • Robotics • Defense • Utilities
Louisville, CO
1600 Employees
Energy CX Thumbnail
Greentech • Professional Services • Business Intelligence • Consulting • Energy • Financial Services • Utilities
Chicago, IL
108 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account