Cyber Threat Engineer - Global Threat Operations
LevelBlue
Cyber Threat Engineer
LevelBlue reduces risk and builds lasting resilience so organizations can innovate and advance their mission with confidence. As the world's most analyst-recognized and largest pure-play managed security services provider, LevelBlue elevates client outcomes that matter: stronger defense, faster response, and sustained business continuity. LevelBlue combines AI-powered security operations, advanced threat intelligence, and elite human expertise to provide the most comprehensive portfolio of strategic advisory, managed security, offensive security, and incident response services.
A Cyber Threat Engineer is a member of the Threat Detection and Response (TDR) team within LevelBlue Managed Security Services (MSS). This team specifically will act as the monitoring and response extension of a Digital Forensics and Incident Response Services (DFIR) team to provide 24/7 monitoring. In addition to possessing technical knowledge, a Threat Engineer interacts extensively with customers and partners using polite professional etiquette and serves as a technical point of escalation within TDR. Cyber Threat Engineers perform the following duties:
- Analyze escalated, complex cases involving a pattern of security events from endpoint detection and response technologies.
- Resolve intractable technical problems within managed security solutions as part of a sustained improvement project.
- Create, improve, and document processes for the management and monitoring of security solutions.
- Tune devices for blocking and reporting based on customer business need.
- Baseline threat detection devices for complex and potentially breached customer environments.
- Test and improve endpoint detection, protection, and response policies.
- Take responsibility for customer satisfaction and overall success of managed services.
- Timely respond to questions and concerns of the DFIR and client security teams concerning incident investigation and response.
- Adhere to policies, procedures, and security best practices.
- Resolve problems independently and understand appropriate documentation and escalation procedures.
- Perform rotating on-call duties (nights/weekend rotations).
- Act as a mentor and escalation point for analysts within the Threat Detection and Response team.
Skills & Knowledge Requirements: Must have intermediate skills/knowledge in some of the following:
- Cyber investigation and incident handling best practices
- Endpoint Detection and Response
- Unix/Linux and Windows system administration
- Current exploit and remediation techniques
- Threat Hunting and Investigation
- Web Services Administration
- Log collection and analysis tools
Desired experience:
- Advanced Palo Alto Cortex XDR
- Intrusion analysis experience
- Incident handling and documentation
- Excellent customer service skills
- Excellent analytical thinking and problem-solving skills
- Strong oral and written communication skills
- Self-managed and team oriented
- Deadline and detail oriented
- Highly motivated
Preferred:
- Intermediate to advanced experience in Information Security related areas
- Certified in Security related Industry, Vendor or Professional Certification- GCIA, GCIH, Security+, OSCP, or CEH preferred.
- Certified in Vendor Specific Incident Handling and Investigation Certifications:
- Palo Alto Networks Systems Engineer: Cortex Associate
- Palo Alto Networks Systems Engineer: Cortex Professional
- Palo Alto Networks Certified Detection and Remediation Analyst (PCDRA)
- SentinelOne Incident Response
- Crowdstrike Certified Falcon Responder (CCFR)
Education:
- A high school diploma or equivalent is required; a college or university degree is a plus.
This role is open to candidates legally authorized to work in the Philippines. At LevelBlue, including teams that previously operated as Trustwave, we support flexible work and bring people together in person for key moments based on role, team, and business needs.
LevelBlue is committed to a culture of respect, inclusion, and equal opportunity. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age, or any other status protected under applicable law.
$100k - $120k
...Cyber Threat Detection & Response Engineer UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security operations solutions... ...in McLean, Virginia, with global offices across the U.S. and in India...OperationsTemporary workRemote work$230k - $385k
...technical in what we build but are operational in how we do our work, and... ...the Role As a Security Engineer you will join our OpenAI... ...emphasis on detecting insider threats and influencing controls to safeguard... ...via this link. OpenAI Global Applicant Privacy Policy...Operations$202k - $230k
...customers by proactively addressing threats and fostering a culture of security throughout our product and operations. We are looking for a Security Engineer, Threat Response to join our... ...models to ensure that every one of our global team members can work together effortlessly...OperationsTemporary workWork at officeLocal areaWork from homeWorldwide$140k - $195k
As a Security Engineer 2 on the Cyber Threat Intelligence team, you will help Datadog stay ahead of evolving... ...making during both steady-state operations and active security incidents. This... ...before they impact customers. Trusted globally by Fortune 500 companies and high-...OperationsWork at office$86.9k - $198k
Cybersecurity Threat and Exploitation Analyst Job Number: R0231414 Cybersecurity Threat... ...Analyst The Opportunity: As a cyber warfare engineer, you know how critical it is to stay ahead... ...'ll use your understanding of cyber operations to apply emerging technologies, uncover...OperationsFull timeContract workPart timeLocal areaRemote work- ...Principal Security Engineer - Threat Intelligence At Snowflake, we are... ...As we continue to scale globally, we are investing in security... ...contributor role for someone who can operate strategically and... ...experience in threat intelligence, cyber threat research,...OperationsRemote work
$168k - $240k
...the Company Gemini is a global crypto and Web3 platform founded... ...impact. The Department: Threat Detection & Response In... ...From security architecture and engineering to maintenance of cold... ...including IT, development, and operations, to address security concerns...OperationsWork at officeRemote workFlexible hours$104k - $166k
Peraton is seeking a Cyber Software Engineer to join the Army Cyber Command in Fort Gordon, GA. This hands-on role involves developing Python analytics, conducting threat hunting operations, and translating complex threat data into actionable insights for leadership. Ideal...Operations- 4344 Insider Threat Security Engineer 4344 | Top Secret Job Description: OVERVIEW: A specialized security professional responsible... ...threats. Collaborates with threat intelligence, security operations, and engineering teams to translate risk insights into...Operations
- ...Description Cyber Threat Analyst Level 3 Altamira Technologies... ...other companies. Threat Operations and Intelligence Analyst (TOPI... ...understanding of key global areas of interest that pose... ...done. Join our team of experts as we engineer national security!OperationsWorldwide
- Asana is seeking a Security Engineer, Threat Response in New York City to ensure the security of employees and customers. You will lead incident... ...candidate will have over 5 years of experience in security operations, with strong knowledge of SIEM platforms and a passion for...Operations
$100k - $124k
...leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and... ...SkyePoint Decisions is seeking a Cyber Threat Analyst to support the Diplomatic... ...a strong grasp of the current global cyber threat landscape....OperationsContract workRemote workOverseas- ...a dynamic team at the pulse of global markets, where we deliver innovative... .... Summary: The Senior Cyber Threat Analyst will lead efforts to... ...diverse group of teams including engineering, security, and network & system operations to ensure effective adoption of...OperationsRemote workFlexible hours
- ...now. We are currently seeking a Cyber Security Threat Analyst (Onsite Hybrid) to join our... ...guidance. Develop and publish tactical, operational, and strategic threat intelligence... ...reporting templates. Ability to work with global teams and support stakeholders across...OperationsWork experience placementWork at officeRemote workFlexible hours
$187.7k - $275.28k
...Us: Proofpoint is a global leader in human- and agent... ...Proofpoint to stop threats, prevent data loss, and... ...organizations and individuals from cyber threats through... ...Information Security Engineer to help lead and evolve... ...Information Security Operation. In this role, you’ll shape...OperationsWork at officeFlexible hours$120k - $135k
A global multi-manager hedge fund is seeking a Cybersecurity Analyst to enhance security... ..., incident response, and security operations. This role requires expertise in utilizing... ...security and an ability to adapt to emerging threats are essential. The base pay is between $...Operations$226k - $339.7k
...technical Vice President to lead our global Cyber Exposure Management / Cyber Engineering & Architecture organization... ...cloud, AI-enabled technologies, operational technology, and enterprise platforms... ...leadership on emerging cyber threats and AI security implications....Operations- McDonald's Corporation is seeking a Director of Threat Operations & Offensive Security responsible for defining and leading a global cybersecurity program. You will manage a distributed team and set strategic direction to enhance risk reduction capabilities. This role...Operations
- ...Cyber Threat Intelligence Analyst Location: United Kingdom - Remote In this... ...balance work and life as part of our global team. Find out more at computershare... ...sources to support Security Engineering and Security Operations in delivering further proactive and...OperationsRemote workFlexible hours
$141.6k - $212.4k
Senior Security Engineer - Detection and Response IT & Security At Klaviyo, we value... ...and response lifecycle and support with threat response operations. As a Senior Security Engineer, you... ...as code Respond to security alerts, cyber threats, and security incidents Drive...Operations- ...Cyber Security Threat Engineer Comtech is a woman-owned small business founded in 1998 and headquartered in Reston, VA. We offer IT solutions... ...Library (ITIL) v.3 Framework across enterprise infrastructure operations. These methodologies and processes are reinforced through...Operations
- ...mission-driven and detail-oriented Cyber Threat Intelligence (CTI) Analyst to support operations for one of our clients. In this... ...a deep understanding of the global cyber threat landscape.... ...intelligence back into detection engineering and threat hunting efforts....Operations
- ...seeking a Cybersecurity Threat Analyst - Journeyman... ...ARNG) Enterprise Network Operations and Cybersecurity... ...strengthen proactive cyber defense across the ARNG... ...including the NETCOM Global Cyber Center and DISA... ...Technology, or Software Engineering Experience analyzing...OperationsContract work
$111.6k - $235.6k
...responsible for enterprise IT global cyber security, server security,... ...security assessments, security operations, and security vulnerability... ...workflows. - Conduct threat and scenario-driven threat hunts... ...Partner with CTI and detection engineers to operationalize threat...OperationsTemporary workLocal area$110k - $186k
...Fiserv. We're Fiserv, a global leader in Fintech and payments... ...at Fiserv. Job Title Cyber Threat Intelligence Analyst What... ...member of our Cybersecurity Operations team, responsible for identifying... ...the SOC and Detection Engineering teams. Intelligence-Driven...OperationsFull timeContract workTemporary workH1b$231.09k - $265.93k
6Sense in Seattle is hiring a Staff Security Engineer to join their Security Operations and Threat Management team. The role involves addressing complex security incidents, developing automation, and collaborating effectively across teams. Candidates should have over 5...OperationsRemote job- ...Analyst to lead advanced threat hunting, digital forensics, and cyber investigations within a dynamic security operations environment. This role is... ...collaborate closely with security engineers and analysts to enhance... ...aggregating and analyzing global threat data Collaborate...Operations
$93.12k - $131.04k
...IT department is seeking a Cyber Threat Intelligence Analyst (SrITSS... ...within the Information Security Operations and Intelligence Division.... ...ongoing research into global cyber threats, campaigns, and... ...Work closely with security engineering and incident response teams...OperationsFull timeTemporary workWork at officeRemote workNight shiftAfternoon shiftEarly shift$157.5k - $283.5k
...Parsons is looking for a detail-oriented Threat Operations and Intelligence Analyst to join our... ...intelligence to support proactive defensive cyber activities. This role requires strong... .... Specific understanding of key global areas of interest that pose threats to...OperationsFlexible hours$68.59 - $109.75 per hour
Cyber Security Consultant - Threat Intelligence - Sutter Health, Sacramento, CA Organization: SHSO - Sutter... ...targeting the organization or its industry. Operational Support: Provide intelligence-driven... ...Improvement: Stay updated on global and regional cyber threats,...OperationsHourly payFull timeWork at officeLocal areaRemote workMonday to FridayShift workWeekend work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Threat Engineer - Global Threat Operations. Be the first to apply!
- security infrastructure engineer United States
- electronic security engineer United States
- senior cloud security engineer United States
- azure security engineer United States
- senior application security engineer United States
- java security engineer United States
- lead security engineer United States
- physical security engineer United States
- security engineering manager United States
- endpoint security engineer United States

