Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Alert, Detection, and Response Engineer, Associate - Blackstone Cybersecurity

$110k - $170k

Blackstone Group

Blackstone is the world’s largest alternative asset manager. Blackstone seeks to deliver compelling returns for institutional and individual investors by strengthening the companies in which the firm invests. Blackstone’s over $1.3 trillion in assets under management include global investment strategies focused on real estate, private equity, credit, infrastructure, life sciences, growth equity, secondaries and hedge funds. Further information is available at . Follow @blackstone on LinkedIn, X (Twitter), and Instagram. Business Unit Overview: Blackstone Technology & Innovations (BXTI) is the technology team at the core of each of Blackstone's businesses and new growth initiatives. Serving both internal and external clients, we work to build the next generation of systems that manage risk, create efficiency and improve transparency within the firm and across our broad community of investors and portfolio companies. BXTI is fast paced and entrepreneurial: our open, iterative design processes and rapid pace of development mean that everyone on the team has the opportunity to make an impact from day one. We are problem solvers who can take projects from idea to implementation. We believe in active mentoring and developing excellence. We collaborate to find the best answers for our customers and for Blackstone. We are critical to the firm maintaining its competitive edge. Position Overview: The Alert, Detection, and Response Associate is a Tier 2 incident responder on the Alert, Detection & Response team, the front line of Blackstone's cyber defense. The Associate is responsible for detecting, investigating, and responding to information security incidents across, but not limited to, email, endpoint, identity, network, and cloud. The Associate must have strong working knowledge of incident response procedures, the technology used to execute them, as well as an understanding of how to leverage AI tools effectively. The Associate manages an incident queue, carrying cases from intake through investigation, containment, and closure, and handles the escalations raised by Tier 1 analysts. Day to day the Associate works alongside the Tier 1 and Tier 2 incident response analysts on the team, taking on the harder cases and bringing in additional responders as an investigation grows. The Associate is also expected to turn what each case teaches the team into lasting improvement, feeding findings back into detections, playbooks, and automation so the same problem does not have to be worked twice. Analysts and Associates on this team are expected to play an active role in shaping investigative processes and detection capabilities, with the opportunity to see innovative ideas quickly translated into operational solutions. Responsibilities: Manage an incident queue, carrying cases from intake through investigation, containment, and closure across, but not limited to, email, endpoint, identity, network, and cloud Handle escalations raised by Tier 1 analysts, taking on the more complex investigations and bringing in additional responders as scope grows Investigate in the firm's SIEM, writing and refining searches to pivot across endpoint, authentication, email, network, and cloud telemetry Conduct endpoint investigation, host containment, and live response in the firm's EDR platform, including process lineage, persistence review, and artifact collection Investigate email threats end to end, covering phishing, business email compromise, and malicious attachments and links, using header and message trace analysis to scope who was targeted and drive remediation across affected mailboxes Investigate cloud and identity compromise, covering credential misuse, role and privilege abuse, session hijacking, and multi-factor bypass Investigate third-party and SaaS provider compromise, questioning the provider's incident response team to establish containment status and what Blackstone data was affected, independently scoping the firm's exposure by hunting provider indicators across endpoint, email, network, and cloud telemetry, and coordinating findings and remediation with legal and compliance, vendor risk, and the business owners of the affected service Serve as a core member of the incident response team, scoping intrusions, driving containment and eradication, briefing stakeholders, and escalating in line with the firm's severity model Author and tune detections from investigation findings, developing the logic and validating it against historical and live data, then taking it through review into production and confirming afterward that it fires on real activity without generating unacceptable noise Work alongside agentic AI investigation tooling on first-pass triage and enrichment, judging its conclusions, escalating what it gets wrong, and feeding corrections back so coverage improves Help extend detection and response coverage across the firm's growing use of AI, an emerging and fast-moving part of the attack surface Turn investigation findings into lasting coverage by authoring and tuning detections, reducing false positives on noisy ones, and building automation that removes repetitive steps from triage, enrichment, and response Mentor Tier 1 analysts on investigation technique, sharing tradecraft through case reviews and hands-on coaching Document investigations and incidents to a standard that holds up under scrutiny, maintain evidence handling and chain of custody, and communicate findings clearly to technical teams and senior stakeholders Contribute to threat hunts and purple team exercises, using red team activity and threat intelligence to find gaps before an adversary does Participate in incident response and the SOC on-call rotation (occasional, roughly quarterly) to respond to escalated security incidents Qualifications: 2+ years of hands-on experience in security operations, incident response, or a comparable technical security role Demonstrated experience running security investigations end to end, from alert through root cause and containment, in a SOC or IR setting Hands-on SIEM experience with experience writing and troubleshoot your own queries; experience with a major enterprise SIEM and its native query language (for example Splunk/SPL, Microsoft Sentinel/KQL, or Elastic) Hands-on EDR experience conducting endpoint investigation and containment; experience with a leading EDR platform (for example CrowdStrike, SentinelOne, or Microsoft Defender for Endpoint) Working knowledge of cloud and identity investigation, including cloud audit logging, IAM, and SSO, and identity providers such as Okta or Microsoft Entra ID Practical understanding of attacker behavior across the intrusion lifecycle, including phishing and business email compromise, credential theft, privilege escalation, lateral movement, persistence, and exfiltration Familiarity with the security technologies an investigation touches: email security, endpoint protection, proxies and firewalls, DLP, and vulnerability data Working knowledge of MITRE ATT&CK and experience mapping observed activity to technique Experience scripting in Python and/or PowerShell for enrichment, parsing, and automation of repetitive analysis Demonstrated hands-on use of AI tooling in real work, with experience speaking in detail about several projects, professional or otherwise, where you used AI to automate or accelerate a task, and sound judgment about where its output cannot be trusted Clear technical writing, with experience explaining an incident and its impact to both engineers and non-technical stakeholders Experience self-organizing, prioritizing under time pressure, and staying accurate during a live incident Preferred Qualifications:Detection engineering experience: authoring or tuning SIEM correlation searches, EDR custom rules, or Sigma content, and measuring whether a detection actually worksExperience with detection-as-code practices, including Git-based workflows, peer review, and CI validation of detection contentSOAR automation experience (Torq, Splunk SOAR, Tines, or similar)Digital forensics capability in memory, disk, or network analysis, or hands-on malware triage and sandboxingExperience with agentic AI or LLM-assisted security tooling, and with AI security monitoring platformsThreat hunting experience, particularly hypothesis-driven hunts against endpoint or cloud telemetryWorking knowledge of at least one major cloud platform (AWS, Azure, or GCP), including how its logging, identity, and access services are used to investigate activity in the environmentExperience in financial services or another heavily regulated, globally distributed environmentAt least one active security certification such as Security+, GCIH, GCFA, GCIA, GCED, CySA+, or a vendor SIEM certificationB.S. in Computer Science, Cybersecurity, Information Systems, or a related technical fieldThe duties and responsibilities described here are not exhaustive and additional assignments, duties, or responsibilities may be required of this position. Assignments, duties, and responsibilities may be changed at any time, with or without notice, by Blackstone in its sole discretion.Expected annual base salary range:$110,000 - $170,000Actual base salary within that range will be determined by several components including but not limited to the individual's experience, skills, qualifications and job location. For roles located outside of the US, please disregard the posted salary bands as these roles will follow a separate compensation process based on local market comparables.Additional compensation and benefits offered in connection with the roleconsist of comprehensive health benefits, including but not limited to medical, dental, vision, and FSA benefits; paid time off; life insurance; 401(k) plan; and discretionary bonuses. Certain employees may also be eligible for equity and other incentive compensation at Blackstone’s sole discretion.Blackstone is committed to providing equal employment opportunities to all employees and applicants for employment without regard to race, color, creed, religion, sex, pregnancy, national origin, ancestry, citizenship status, age, marital or partnership status, sexual orientation, gender identity or expression, disability, genetic predisposition, veteran or military status, status as a victim of domestic violence, a sex offense or stalking, or any other class or status in accordance with applicable federal, state and local laws. This policy applies to all terms and conditions of employment, including but not limited to hiring, placement, promotion, termination, transfer, leave of absence, compensation, and training. All Blackstone employees, including but not limited to recruiting personnel and hiring managers, are required to abide by this policy.If you need a reasonable accommodation to complete your application, please contact Human Resources at View phone number on click.appcast.io (US), View phone number on click.appcast.io (EMEA) or View phone number on click.appcast.io (APAC).Depending on the position, you may be required to obtain certain securities licenses if you are in a client facing role and/or if you are engaged in the following:Attending client meetings where you are discussing Blackstone products and/or and client questions; Marketing Blackstone funds to new or existing clients; Supervising or training securities licensed employees; Structuring or creating Blackstone funds/products; andAdvising on marketing plans prepared by a sales team or developing and/or contributing information for marketing materials. Note: The above list is not the exhaustive list of activities requiring securities licenses and there may be roles that require review on a case-by-case basis. Please speak with your Blackstone Recruiting contact with any questions.To submit your application please complete the form below. Fields marked with a red asterisk * must be completed to be considered for employment (although some can be answered "prefer not to say"). Failure to provide this information may compromise the follow-up of your application. When you have finished click Submit at the bottom of this form.SummaryLocation: MiamiType: Full time

Vacancy posted 1 hour ago
Similar jobs that could be interesting for youBased on the Alert, Detection, and Response Engineer, Associate - Blackstone Cybersecurity in Miami, FL vacancy
  • $127.2k - $246.9k

     ...Manager, Content Development, Detection Engineering & Automation to join our...  ...Services organization.Responsibilities:Execute the end-to-end engineering...  ...detection rules, analytic alerts, and threat-hunting...  ...intelligence enrichment, and other cybersecurity functions to drive down... 
    Suggested
    H1b
    Local area

    KPMG

    Miami, FL
    4 days ago
  •  ...Specific Essential Duties and Responsibilities: - Experience...  ...network monitoring tools and alert triage processes - Ability...  ...- Bachelor's degree in Cybersecurity, Information Technology, Computer...  ...supporting alert triage, threat detection, and initial response... 
    Suggested
    Minimum wage
    Contract work
    Temporary work
    Work experience placement
    Remote work

    MAXIMUS

    Miami, FL
    15 hours ago
  • $169.6k - $233.2k

     ...place.Who We AreIn order to be the cybersecurity partner of choice, we must trailblaze...  ...CareerAs a Cortex Transformation Engineer, you are a critical part of the Global...  ...on native platform workflows, alert triage, incident response, Agentic-AI and automated playbooks... 
    Suggested
    Full time
    Remote work
    Visa sponsorship
    Work visa

    Palo Alto Networks

    Miami, FL
    1 day ago
  • Cybersecurity Engineer We work with companies protecting modern digital systems—and we're looking to connect with Cybersecurity Engineers...  ...resilient systems—we'd love to hear from you. Responsibilities: Monitor, detect, and respond to security threats Implement security... 
    Suggested

    Rempli

    Miami, FL
    2 days ago
  • $26.59 - $46.54 per hour

     ...Description: Parsons is looking for an amazingly talented Associate Roadway Engineer to join our team! What You\'ll Be Doing: Working under...  ...provide initial review tasks of technicians or designers Responsible for managing timely completion of multiple assigned tasks... 
    Suggested
    Contract work
    Temporary work
    Local area
    Flexible hours

    Parsons

    Miami, FL
    4 days ago
  •  .... From breaches and social engineering to stolen private keys and...  ...it, you will fit here. Responsibilities Own the test strategy...  ...critical paths, and time to detection. Contribute to release...  ...blockchain, smart contracts, and cybersecurity. Bonus Points... 
    Contract work
    Temporary work
    Local area
    Work visa
    Shift work

    Halborn

    Miami, FL
    15 hours ago
  •  ...centers for next‑generation computing workloads. As an Associate Project Engineer, you will support our lead engineer in all phases of the...  ...execution in a fast‑paced, cutting‑edge industry. Key Responsibilities Collaborate on the design and engineering of custom cooling... 
    Full time
    Temporary work
    For contractors

    Hut 8

    Miami, FL
    4 days ago
  • $104.8k - $192.2k

     ...Identity Verification Engineer with hands-on...  ...integrations. This role will be responsible for designing,...  ...verification, liveness detection, verifiable credentials...  ...1Kosmos BlockID and associated services. Manage user...  ...with IAM architects, cybersecurity teams, application... 
    For contractors
    Summer holiday
    Flexible hours

    EY

    Miami, FL
    3 days ago
  • $165k - $175k

     ...Operations Center (SOC) Cloud Engineer is responsible for monitoring, detecting, and responding to...  ...to, the roles and associated responsibilities, a candidate...  ...effective detection, alerting, and investigation....  .... Bachelor's degree in Cybersecurity, Computer Science, or related... 
    Work experience placement
    Local area
    Remote work
    Night shift

    Bayview Asset Management

    Miami, FL
    2 days ago
  • $105.4k - $207.8k

     ...Alto Networks Security Engineer/ Senior Consultant,...  ...opportunities businesses face in cybersecurity. Join our team to...  ...team, you will be responsible for…Designing,...  ...prevention system/intrusion detection system (IPS/IDS),...  ...differential associated with the location at... 
    Work experience placement
    Local area
    Remote work

    Deloitte

    Miami, FL
    4 days ago
  •  ...organizations prepare, protect, detect, respond, and recover...  ...security lifecycle. Cybersecurity challenges are...  ...Cybersecurity Forward Deployed Engineer is a production...  ..., automated threat response tooling, security assessment...  ...work experience. (If Associate’s Degree, must have... 
    Full time
    Work experience placement
    Live in
    Work at office
    Local area

    Accenture

    Miami, FL
    4 days ago
  • $77k - $202k

     ...The Opportunity As a GenAI Python Systems Engineer - Senior Associate, you will play a pivotal role in transforming raw data into actionable...  ...data to inform insights and recommendations. Responsibilities Designing and optimizing algorithms and models to enhance... 
    H1b

    PwC

    Miami, FL
    4 days ago
  • $80k - $95k

     ...awareness of technology initiatives across the firm. Specific Responsibilities Strategic Communications Planning: Assist in planning...  ...visibility engagements. Coordinate communications across email, Blackstone’s intranet, and other internal channels. Content Development... 
    Work at office
    Local area

    The Blackstone Group L.P.

    Miami, FL
    6 days ago
  •  ...empowered, then we invite you to apply to our Cyber Incident Response Associate Attorneyposition in our Miami Office. This position...  ...Key Responsibilities: Incident response for cybersecurity and data privacy incidents Analysis of state, federal,... 
    Work at office
    Flexible hours

    Wilson Elser

    Miami, FL
    2 days ago
  •  ...Associate Vice President, IT & AI Governance About the Company An investment management...  ...compliance. The AVP will also be responsible for embedding AI governance into various...  ...of IT infrastructure, applications, and cybersecurity principles. The position requires... 

    Confidential

    Coral Gables, FL
    6 days ago
  • Parsons is seeking an Associate Roadway Engineer in Miami, FL to analyze and prepare roadway and TTCP designs for Expressway and arterial routes. You will develop 3D models using GEOPAK and Open Roads, propose innovative solutions, and prepare reports for licensed engineers... 
    Flexible hours

    Parsons

    Miami, FL
    2 days ago
  •  ...empowered to do your best work. Job Summary: The Capacity Engineer Senior Associate resolves a variety of data management, design, and drawings for installations within a moderate scope. Responsibilities Space Planning & Design Creates standard Cage-Cabinet... 
    Full time
    Work at office

    Equinix

    Miami, FL
    11 days ago
  •  ...Job Description   Job Title: AV / VTC Engineer – Unified Communications (UC) Engineer...  ...across the EUCOM and AFRICOM Areas of Responsibility. This role designs, implements,...  ...connectivity, servers, and AV systems. Cybersecurity & Compliance ~ Ensure UC and AV... 
    Full time
    Overseas

    Interagency C5i Corporation

    Miami, FL
    a month ago
  • BCG Attorney Search seeks a Data Privacy and Cybersecurity Associate Attorney in Miami, FL. The ideal candidate has 3-6 years of experience advising on privacy compliance, incident response, and regulatory matters. Responsibilities include drafting and negotiating privacy... 

    BCG Attorney Search

    Miami, FL
    3 days ago
  •  ...empowered, then we invite you to apply to our Cyber Incident Response Associate Attorney position in our Miami Office. This position...  ...The Position Key Responsibilities Incident response for cybersecurity and data privacy incidents Analysis of state, federal, and... 
    Work at office
    Flexible hours

    Wilson Elser Moskowitz Edelman & Dicker LLP

    Miami, FL
    6 days ago
  • $106k - $170k

    Blackstone is the world’s largest alternative asset manager...  ...Blackstone Security Operations - Engineering team is growing to...  ...security needs. The Associate Security Engineer is responsible for providing Security Information...  ...SIEM (e.g. Splunk) for detection and security... 
    Full time
    Work at office
    Local area
    Flexible hours

    Blackstone Group

    Miami, FL
    2 days ago
  • Postdoctoral Associate Pool in Civil and Environmental Engineering Join to apply for the Postdoctoral Associate Pool in Civil and Environmental Engineering role at Florida International University Florida International University is a Top 50, preeminent public research... 
    Full time
    Internship
    Work at office

    Florida International University

    Miami, FL
    4 days ago
  • Postdoctoral Associate Pool in Mechanical and Materials Engineering 1 week ago Be among the first 25 applicants About FIU Florida International University is a Top 50 preeminent public research university with 55,000 students from all 50 states and more than 140 countries... 
    Work at office

    Florida International University

    Miami, FL
    4 days ago
  • $110k - $150k

    Blackstone is the world’s largest alternative asset manager. Blackstone seeks to deliver...  ...and Analytics team is looking for an Associate to support the Private Equity group. The...  ...monitoring and reporting.Job Responsibilities:Prepare valuation models reviews, presentations... 
    Full time
    Local area

    Blackstone Group

    Miami, FL
    2 days ago
  • $82.6k - $162.8k

     ...opportunities businesses face in cybersecurity. Join our team to deliver...  ...6.Work you'll doAs a Security Engineer on the Deloitte Cyber team, you will be responsible for:Supporting the design and...  ...applicable geographic differential associated with the location at which the... 
    Local area
    Visa sponsorship

    Deloitte

    Miami, FL
    4 days ago
  •  ...experienced Malware Reverse Engineer to an already outstanding team...  ...organizations prepare, protect, detect, respond to, and recover...  ...You thrive in high-pressure response scenarios, can move seamlessly...  ...infrastructure overlap, or TTPs associated with advanced threat actors... 
    Full time
    Work experience placement
    Live in
    Work at office
    Local area

    Accenture

    Miami, FL
    1 day ago
  •  ...KaseyaKaseya is the leading provider of AI-powered IT management and cybersecurity software, serving Managed Service Providers (MSPs) and...  ...plays a role in shaping the future of IT: whether you're in engineering, product, sales, marketing, customer support, or operations,... 
    Second job
    Remote work
    Worldwide

    Kaseya

    Miami, FL
    1 day ago
  • $16 - $18 per hour

     ...Supply Chain Associate Pay Range: $16.00 to $18.00 per hour Employment eligibility...  ...work in a fast-paced environment. Key Responsibilities Load, unload, and organize...  ...cold, rain, and snow Good hearing to detect warning signals and communicate effectively... 
    Hourly pay
    Shift work

    RED WHITE AND BLUE THRIFT STORE

    Miami, FL
    4 days ago
  •  ...are cuurenty contracting driven, highly disciplined Explosive Detection Canine (EDC) Owner-Handlers to execute tactical threat...  ...explosive hazards in fast-paced operational settings. Primary Responsibilities Targeted Screening: Execute proactive canine screening for... 
    Contract work
    Temporary work
    For contractors
    Immediate start
    Shift work
    Night shift

    Nation Security

    Miami, FL
    3 days ago
  • $15 - $17 per hour

     ...Select how often (in days) to receive an alert: Culinary Services Group is hiring immediately for full time PATIENT DINING ASSOCIATE positions. Schedule : Full time schedule....  ...trays. They are part of the caregiving team, responsible for patient safety and satisfaction goals... 
    Full time
    Part time
    Local area
    Immediate start
    Remote work
    Flexible hours

    Compass Group USA

    Miami, FL
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Alert, Detection, and Response Engineer, Associate - Blackstone Cybersecurity. Be the first to apply!