Senior Endpoint Security Engineer

Barracuda Networks
Anywhere
Workplace: RemoteFull timeUSD 110,000 - 135,000 annuallyFunction: CybersecurityExperience: 5+ yearsEducation: bachelorsSkills: ["Client-facing communication","Investigative problem-solving","Documentation for technical and non-technical audiences","Stakeholder management","Rapid threat containment"]

Lead endpoint incident response in a fast-paced, multi-tenant MSSP environment. Manage SentinelOne XDR investigations from triage through remediation, conduct host-based forensics with Binalyze AIR, and design detection rules. Investigate Microsoft 365 and Entra ID security incidents, perform threat hunting using Elastic and Databricks, and document executive-ready incident reporting. Build automation with Python and Tines while serving as the primary IR point of contact for clients.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Barracuda Networks
Barracuda Networks
3 days ago

Senior Endpoint Security Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 11 hours agoStatus: Live

Job Summary

Lead endpoint incident response in a fast-paced, multi-tenant MSSP environment. Manage SentinelOne XDR investigations from triage through remediation, conduct host-based forensics with Binalyze AIR, and design detection rules. Investigate Microsoft 365 and Entra ID security incidents, perform threat hunting using Elastic and Databricks, and document executive-ready incident reporting. Build automation with Python and Tines while serving as the primary IR point of contact for clients.
Location: Anywhere
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Lead end-to-end incident response engagements across diverse client environments, from triage through remediation and lessons learned
  • •Perform host-based forensics using Binalyze AIR for remote evidence acquisition, triage, and analysis at scale
  • •Investigate SentinelOne alerts using Deep Visibility hunting, threat timeline reconstruction, and MITRE ATT&CK mapping
  • •Analyze Microsoft 365 security incidents (BEC, OAuth abuse, mailbox rule manipulation, Azure AD/Entra ID attacks) and perform threat hunting in Elastic
  • •Develop automation and detection improvements using Python scripts, workflow automation in Tines, and detection rules in Elastic and SentinelOne

Pay and Benefits

Salary: USD 110,000 - 135,000 annually
Equity and Bonus:Equity
Perks:Health InsuranceRetirementPaid LeaveEquity

Key Requirements

  • •Bachelor’s degree in computer science and 5+ years of hands-on experience in incident response, digital forensics, or security operations
  • •GIAC certification required (GCIH, GCFA, GCFE, GNFA) or equivalent certifications (OSCP, eCIR, eCDFP, EnCE, SC-200, AZ-500)
  • •Expert knowledge of SentinelOne for end-to-end incident response, including triage, containment, remediation, and lessons learned
  • •Experience performing host-based forensics using Binalyze AIR and investigating incidents across Windows, macOS, and Linux
  • •Strong investigation and analytics skills using Elastic and Databricks, plus scripting/automation with Python and workflow automation in Tines
Experience:5+ yearsIncident responseDigital forensicsSecurity operationsMSSPMDRConsulting
Education:Bachelor's
Skills:Client-facing communicationInvestigative problem-solvingDocumentation for technical and non-technical audiencesStakeholder managementRapid threat containment
Certifications:GIACGCIHGCFAGCFEGNFAOSCPECIRECDFPEnCESC-200AZ-500
Tech Stack:SentinelOneXDRBinalyze AIRWindowsMacOSLinuxElasticDatabricksPythonSQLJupyter notebooksTinesMITRE ATT&CKMicrosoft 365DefenderSafe LinksSafe AttachmentsEntra IDOAuthEntra ID attacks

Company Brief

Barracuda Networks
Provides cloud-enabled security and data protection solutions including email protection, network and application security, and backup and recovery services for businesses, service providers, and government organizations worldwide.
Industry: Cybersecurity
Company Size: Enterprise (1,001+ employees)
Revenue: USD 250M to 500M
Growth: Established Company
Funding: Private Equity Backed
Headquarters: Campbell, United States
Founded: 2003
WebsiteLinkedIn