Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Threat Engineer - Global Threat Operations

LevelBlue

Cyber Threat Engineer

LevelBlue reduces risk and builds lasting resilience so organizations can innovate and advance their mission with confidence. As the world's most analyst-recognized and largest pure-play managed security services provider, LevelBlue elevates client outcomes that matter: stronger defense, faster response, and sustained business continuity. LevelBlue combines AI-powered security operations, advanced threat intelligence, and elite human expertise to provide the most comprehensive portfolio of strategic advisory, managed security, offensive security, and incident response services.

A Cyber Threat Engineer is a member of the Threat Detection and Response (TDR) team within LevelBlue Managed Security Services (MSS). This team specifically will act as the monitoring and response extension of a Digital Forensics and Incident Response Services (DFIR) team to provide 24/7 monitoring. In addition to possessing technical knowledge, a Threat Engineer interacts extensively with customers and partners using polite professional etiquette and serves as a technical point of escalation within TDR. Cyber Threat Engineers perform the following duties:

  • Analyze escalated, complex cases involving a pattern of security events from endpoint detection and response technologies.
  • Resolve intractable technical problems within managed security solutions as part of a sustained improvement project.
  • Create, improve, and document processes for the management and monitoring of security solutions.
  • Tune devices for blocking and reporting based on customer business need.
  • Baseline threat detection devices for complex and potentially breached customer environments.
  • Test and improve endpoint detection, protection, and response policies.
  • Take responsibility for customer satisfaction and overall success of managed services.
  • Timely respond to questions and concerns of the DFIR and client security teams concerning incident investigation and response.
  • Adhere to policies, procedures, and security best practices.
  • Resolve problems independently and understand appropriate documentation and escalation procedures.
  • Perform rotating on-call duties (nights/weekend rotations).
  • Act as a mentor and escalation point for analysts within the Threat Detection and Response team.

Skills & Knowledge Requirements: Must have intermediate skills/knowledge in some of the following:

  • Cyber investigation and incident handling best practices
  • Endpoint Detection and Response
  • Unix/Linux and Windows system administration
  • Current exploit and remediation techniques
  • Threat Hunting and Investigation
  • Web Services Administration
  • Log collection and analysis tools

Desired experience:

  • Advanced Palo Alto Cortex XDR
  • Intrusion analysis experience
  • Incident handling and documentation
  • Excellent customer service skills
  • Excellent analytical thinking and problem-solving skills
  • Strong oral and written communication skills
  • Self-managed and team oriented
  • Deadline and detail oriented
  • Highly motivated

Preferred:

  • Intermediate to advanced experience in Information Security related areas
  • Certified in Security related Industry, Vendor or Professional Certification- GCIA, GCIH, Security+, OSCP, or CEH preferred.
  • Certified in Vendor Specific Incident Handling and Investigation Certifications:
  • Palo Alto Networks Systems Engineer: Cortex Associate
  • Palo Alto Networks Systems Engineer: Cortex Professional
  • Palo Alto Networks Certified Detection and Remediation Analyst (PCDRA)
  • SentinelOne Incident Response
  • Crowdstrike Certified Falcon Responder (CCFR)

Education:

  • A high school diploma or equivalent is required; a college or university degree is a plus.

This role is open to candidates legally authorized to work in the Philippines. At LevelBlue, including teams that previously operated as Trustwave, we support flexible work and bring people together in person for key moments based on role, team, and business needs.

LevelBlue is committed to a culture of respect, inclusion, and equal opportunity. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age, or any other status protected under applicable law.

Vacancy posted 13 hours ago
Similar jobs that could be interesting for youBased on the Cyber Threat Engineer - Global Threat Operations in United States vacancy
  • $100k - $120k

     ...Cyber Threat Detection & Response Engineer UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security operations solutions...  ...in McLean, Virginia, with global offices across the U.S. and in India... 
    Operations
    Temporary work
    Remote work

    UltraViolet Cyber

    United States
    13 hours ago
  • $230k - $385k

     ...technical in what we build but are operational in how we do our work, and...  ...the Role As a Security Engineer you will join our OpenAI...  ...emphasis on detecting insider threats and influencing controls to safeguard...  ...via this link. OpenAI Global Applicant Privacy Policy... 
    Operations

    OpenAI

    San Francisco, CA
    1 day ago
  • $202k - $230k

     ...customers by proactively addressing threats and fostering a culture of security throughout our product and operations. We are looking for a Security Engineer, Threat Response to join our...  ...models to ensure that every one of our global team members can work together effortlessly... 
    Operations
    Temporary work
    Work at office
    Local area
    Work from home
    Worldwide

    Asana

    New York, NY
    2 days ago
  • $140k - $195k

    As a Security Engineer 2 on the Cyber Threat Intelligence team, you will help Datadog stay ahead of evolving...  ...making during both steady-state operations and active security incidents. This...  ...before they impact customers. Trusted globally by Fortune 500 companies and high-... 
    Operations
    Work at office

    Datadog

    New York, NY
    3 days ago
  • $86.9k - $198k

    Cybersecurity Threat and Exploitation Analyst Job Number: R0231414 Cybersecurity Threat...  ...Analyst The Opportunity: As a cyber warfare engineer, you know how critical it is to stay ahead...  ...'ll use your understanding of cyber operations to apply emerging technologies, uncover... 
    Operations
    Full time
    Contract work
    Part time
    Local area
    Remote work

    Phase2 Technology

    San Diego, CA
    3 days ago
  •  ...Principal Security Engineer - Threat Intelligence At Snowflake, we are...  ...As we continue to scale globally, we are investing in security...  ...contributor role for someone who can operate strategically and...  ...experience in threat intelligence, cyber threat research,... 
    Operations
    Remote work

    Streamlit

    United States
    13 hours ago
  • $168k - $240k

     ...the Company Gemini is a global crypto and Web3 platform founded...  ...impact. The Department: Threat Detection & Response In...  ...From security architecture and engineering to maintenance of cold...  ...including IT, development, and operations, to address security concerns... 
    Operations
    Work at office
    Remote work
    Flexible hours

    Gemini

    New York, NY
    2 days ago
  • $104k - $166k

    Peraton is seeking a Cyber Software Engineer to join the Army Cyber Command in Fort Gordon, GA. This hands-on role involves developing Python analytics, conducting threat hunting operations, and translating complex threat data into actionable insights for leadership. Ideal... 
    Operations

    Peraton

    New York, NY
    4 days ago
  • 4344 Insider Threat Security Engineer 4344 | Top Secret Job Description: OVERVIEW: A specialized security professional responsible...  ...threats. Collaborates with threat intelligence, security operations, and engineering teams to translate risk insights into... 
    Operations

    Procession Systems

    Reston, VA
    4 days ago
  •  ...Description Cyber Threat Analyst Level 3 Altamira Technologies...  ...other companies. Threat Operations and Intelligence Analyst (TOPI...  ...understanding of key global areas of interest that pose...  ...done. Join our team of experts as we engineer national security!
    Operations
    Worldwide

    Altamira Technologies

    Annapolis, MD
    1 day ago
  • Asana is seeking a Security Engineer, Threat Response in New York City to ensure the security of employees and customers. You will lead incident...  ...candidate will have over 5 years of experience in security operations, with strong knowledge of SIEM platforms and a passion for... 
    Operations

    Asana

    New York, NY
    2 days ago
  • $100k - $124k

     ...leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and...  ...SkyePoint Decisions is seeking a Cyber Threat Analyst to support the Diplomatic...  ...a strong grasp of the current global cyber threat landscape.... 
    Operations
    Contract work
    Remote work
    Overseas

    SkyePoint Decisions

    Arlington, VA
    4 days ago
  •  ...a dynamic team at the pulse of global markets, where we deliver innovative...  .... Summary: The Senior Cyber Threat Analyst will lead efforts to...  ...diverse group of teams including engineering, security, and network & system operations to ensure effective adoption of... 
    Operations
    Remote work
    Flexible hours

    Donnelley Financial, LLC

    Rockville, MD
    3 days ago
  •  ...now.   We are currently seeking a Cyber Security Threat Analyst (Onsite Hybrid) to join our...  ...guidance. Develop and publish tactical, operational, and strategic threat intelligence...  ...reporting templates. Ability to work with global teams and support stakeholders across... 
    Operations
    Work experience placement
    Work at office
    Remote work
    Flexible hours

    The Nippon Telegraph and Telephone Corporation (NTT)

    Charlotte, NC
    2 days ago
  • $187.7k - $275.28k

     ...Us: Proofpoint is a global leader in human- and agent...  ...Proofpoint to stop threats, prevent data loss, and...  ...organizations and individuals from cyber threats through...  ...Information Security Engineer to help lead and evolve...  ...Information Security Operation. In this role, you’ll shape... 
    Operations
    Work at office
    Flexible hours

    Proofpoint

    Sunnyvale, CA
    3 days ago
  • $120k - $135k

    A global multi-manager hedge fund is seeking a Cybersecurity Analyst to enhance security...  ..., incident response, and security operations. This role requires expertise in utilizing...  ...security and an ability to adapt to emerging threats are essential. The base pay is between $... 
    Operations

    Schonfeld

    New York, NY
    1 day ago
  • $226k - $339.7k

     ...technical Vice President to lead our global Cyber Exposure Management / Cyber Engineering & Architecture organization...  ...cloud, AI-enabled technologies, operational technology, and enterprise platforms...  ...leadership on emerging cyber threats and AI security implications.... 
    Operations

    Mass Digital Health

    Chicago, IL
    2 days ago
  • McDonald's Corporation is seeking a Director of Threat Operations & Offensive Security responsible for defining and leading a global cybersecurity program. You will manage a distributed team and set strategic direction to enhance risk reduction capabilities. This role... 
    Operations

    McDonald's Corporation

    Chicago, IL
    1 day ago
  •  ...Cyber Threat Intelligence Analyst Location: United Kingdom - Remote In this...  ...balance work and life as part of our global team. Find out more at computershare...  ...sources to support Security Engineering and Security Operations in delivering further proactive and... 
    Operations
    Remote work
    Flexible hours

    Computershare

    United States
    13 hours ago
  • $141.6k - $212.4k

    Senior Security Engineer - Detection and Response IT & Security At Klaviyo, we value...  ...and response lifecycle and support with threat response operations. As a Senior Security Engineer, you...  ...as code Respond to security alerts, cyber threats, and security incidents Drive... 
    Operations

    Klaviyo Inc.

    Denver, CO
    3 days ago
  •  ...Cyber Security Threat Engineer Comtech is a woman-owned small business founded in 1998 and headquartered in Reston, VA. We offer IT solutions...  ...Library (ITIL) v.3 Framework across enterprise infrastructure operations. These methodologies and processes are reinforced through... 
    Operations

    Comtech LLC

    Washington DC
    13 hours ago
  •  ...mission-driven and detail-oriented Cyber Threat Intelligence (CTI) Analyst to support operations for one of our clients. In this...  ...a deep understanding of the global cyber threat landscape....  ...intelligence back into detection engineering and threat hunting efforts.... 
    Operations

    iQuasar

    Los Angeles, CA
    4 days ago
  •  ...seeking a Cybersecurity Threat Analyst - Journeyman...  ...ARNG) Enterprise Network Operations and Cybersecurity...  ...strengthen proactive cyber defense across the ARNG...  ...including the NETCOM Global Cyber Center and DISA...  ...Technology, or Software Engineering Experience analyzing... 
    Operations
    Contract work

    ECS

    Fairfax, VA
    7 hours ago
  • $111.6k - $235.6k

     ...responsible for enterprise IT global cyber security, server security,...  ...security assessments, security operations, and security vulnerability...  ...workflows. - Conduct threat and scenario-driven threat hunts...  ...Partner with CTI and detection engineers to operationalize threat... 
    Operations
    Temporary work
    Local area

    Tik Tok

    San Jose, CA
    13 hours ago
  • $110k - $186k

     ...Fiserv. We're Fiserv, a global leader in Fintech and payments...  ...at Fiserv. Job Title Cyber Threat Intelligence Analyst What...  ...member of our Cybersecurity Operations team, responsible for identifying...  ...the SOC and Detection Engineering teams. Intelligence-Driven... 
    Operations
    Full time
    Contract work
    Temporary work
    H1b

    Fiserv

    Columbus, OH
    3 days ago
  • $231.09k - $265.93k

    6Sense in Seattle is hiring a Staff Security Engineer to join their Security Operations and Threat Management team. The role involves addressing complex security incidents, developing automation, and collaborating effectively across teams. Candidates should have over 5... 
    Operations
    Remote job

    6Sense

    Seattle, WA
    4 days ago
  •  ...Analyst to lead advanced threat hunting, digital forensics, and cyber investigations within a dynamic security operations environment. This role is...  ...collaborate closely with security engineers and analysts to enhance...  ...aggregating and analyzing global threat data Collaborate... 
    Operations

    Vets Hired

    Boston, MA
    2 days ago
  • $93.12k - $131.04k

     ...IT department is seeking a Cyber Threat Intelligence Analyst (SrITSS...  ...within the Information Security Operations and Intelligence Division....  ...ongoing research into global cyber threats, campaigns, and...  ...Work closely with security engineering and incident response teams... 
    Operations
    Full time
    Temporary work
    Work at office
    Remote work
    Night shift
    Afternoon shift
    Early shift

    Phoenix Police Department

    Phoenix, AZ
    6 hours ago
  • $157.5k - $283.5k

     ...Parsons is looking for a detail-oriented Threat Operations and Intelligence Analyst to join our...  ...intelligence to support proactive defensive cyber activities. This role requires strong...  .... Specific understanding of key global areas of interest that pose threats to... 
    Operations
    Flexible hours

    Parsons Company

    Annapolis, MD
    1 day ago
  • $68.59 - $109.75 per hour

    Cyber Security Consultant - Threat Intelligence - Sutter Health, Sacramento, CA Organization: SHSO - Sutter...  ...targeting the organization or its industry. Operational Support: Provide intelligence-driven...  ...Improvement: Stay updated on global and regional cyber threats,... 
    Operations
    Hourly pay
    Full time
    Work at office
    Local area
    Remote work
    Monday to Friday
    Shift work
    Weekend work

    Payfuture Technologies

    Sacramento, CA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Threat Engineer - Global Threat Operations. Be the first to apply!