Security Engineer - Security Operations & Incident Response
AirLife
Job Description
Job Description
COMPANY DESCRIPTION
At AirLife, we are dedicated to improving the quality of every breath. Excellence with Every Breath is not just a tag line, but the way we work and take care of our customers. With a mindset to evolve, innovate, and grow, we are a premier manufacturer of the highest-quality and market-leading breathing consumables. This growth philosophy has positioned us to increase our global footprint and business reach, impacting even more people around the world. Our expanding family of the most trusted brands offers a product portfolio that spans the continuum of care from first responder to home care, with safety, patient comfort, and clinical performance in mind. Collective expertise allows us to provide quality products and experiences to our patients, customers, and our people. Our values of Customer first, Differentiate with our People, Bias for Action, Continuous Improvement and Accountability define who we are and how we work. Join us!
POSITION SUMMARY
The Security Engineer – Security Operations & Incident Response is responsible for monitoring, triaging, and investigating security events across AirLife’s global environment; leading incident response, containment, and recovery efforts; and continuously improving detection rules, alert quality, and security automation. This role operates and integrates AirLife’s SIEM, EDR, vulnerability management, and cloud security tooling, partners with AirLife’s managed detection and response provider (Arctic Wolf) and cross-functional Infrastructure, Cloud, IT, and Application teams on remediation, and helps mature AirLife’s security operations and incident response capabilities.
POSITION QUALIFICATIONS
Knowledge, Skills, & Abilities:
- Strong understanding of security operations concepts, including SIEM platforms, log analysis, and security alert triage.
- Hands-on experience leading incident response activities — detection, containment, eradication, recovery, and post-incident review — in an enterprise environment.
- Experience with detection engineering and alert-rule tuning, including collaborating with an MDR/MSSP provider on tuning and escalation (Arctic Wolf experience preferred).
- Practical knowledge of EDR/endpoint protection platforms (Microsoft Defender preferred), vulnerability management tooling, and cloud security posture management.
- Experience developing and maintaining incident response playbooks, runbooks, and security operations procedures.
- Understanding of Zero Trust architecture principles and their application to security operations and detection design.
- Knowledge of security compliance frameworks (NIST, CIS Controls, ISO 27001, GDPR) with practical application to security operations.
- Familiarity with security automation/orchestration concepts to streamline detection and response workflows.
- Working knowledge of Microsoft Entra ID and Active Directory, including how identity signals inform incident investigation.
- Ability to manage multiple concurrent incidents, projects, and operational tasks in a dynamic environment (Smartsheet experience preferred).
- Strong root cause analysis and technical troubleshooting skills.
- Experience with backup and disaster recovery systems (Rubrik/Azure preferred) as part of recovery operations.
- Experience with KnowBe4 security awareness and phishing simulation administration preferred.
Level of Experience:
- Minimum of 3–5 years of professional IT experience, including 2+ years in a security operations, incident response, or SOC-focused role.
- Experience in a manufacturing, healthcare, or other regulated enterprise environment preferred.
Level of Education:
- Bachelor’s Degree in Cybersecurity, Information Technology, Computer Science, or related field or equivalent experience.
- Relevant security operations/incident response certification preferred (CompTIA Security+, GCIH, GCFA, or equivalent).
Travel:
Up to 10% as required by the business.
ESSENTIAL DUTIES AND RESPONSIBILITIES
- Monitor, triage, and investigate security events and alerts generated by SIEM, EDR, and other security tooling across AirLife’s environment.
- Lead incident response activities — detection, containment, eradication, and recovery — and facilitate post-incident reviews to capture lessons learned and drive corrective actions.
- Improve detection rules, alert quality, and response playbooks to reduce false positives and improve mean time to detect and respond.
- Operate, configure, and integrate SIEM, EDR, vulnerability management, and cloud security tools to strengthen AirLife’s security posture.
- Develop and maintain incident response playbooks, runbooks, and standard operating procedures for common threat scenarios.
- Partner with Arctic Wolf (AirLife’s MDR provider) on alert tuning, escalation handling, and investigation of identified threats.
- Partner with Infrastructure, Cloud, IT, and Application teams to remediate vulnerabilities, coordinate containment actions, and implement security hardening measures.
- Support AirLife’s vulnerability management program, including scan review, prioritization, and remediation tracking.
- Track operational security metrics (e.g., alert volume, dwell time, time to remediate) and identify recurring risks or trends for leadership reporting.
- Participate in an on-call or escalation rotation to support after-hours incident response, as applicable.
- Support KnowBe4 security awareness and phishing simulation administration in coordination with the Security GRC Engineer.
- Contribute to backup and disaster recovery operations (Rubrik/Azure) as part of incident recovery efforts.
- Maintain documentation of security operations architecture, detection logic, and incident response procedures.
OTHER RESPONSIBILITIES
- Uphold and embody AirLife's values in all aspects of work.
- Demonstrate accuracy and thoroughness in daily work; look for ways to improve and promote quality & safety.
- Inspire the trust of others; treat people with respect and dignity and embrace the value of diversity.
- Use time efficiently; perform job accurately, thoroughly, and conserve Company resources to improve profits.
- Contribute to building and maintaining a positive team environment.
- Assure all policies and guidelines are implemented and followed.
QUALITY POLICY
At AirLife, Quality is our promise. It is our commitment to customer satisfaction and our dedication to product excellence in an evolving global healthcare market. This promise is kept through a continuously improving and effective Quality Management System and compliance to Regulatory Requirements.
DEIA STATEMENT
At AirLife, we are committed to building a diverse workforce and an inclusive workplace that reflects the communities and customers we serve. We believe our philosophy on Diversity, Equity, Inclusion, and Advancement (DEIA) encourages excellence and equips us to serve an evolving global marketplace.
Please note: The responsibilities outlined above are not exhaustive and may evolve over time. The role holder may be required to undertake additional duties as reasonably expected to meet the needs of the company.
Benefits
AirLife offers a comprehensive benefits package, including medical, dental, and vision coverage, 401(k), paid time off, paid holidays, bereavement leave, Employee Assistance Program resources, and medical leave benefits, subject to applicable eligibility requirements. Certain positions may also be eligible for bonus, commission, or other incentive compensation.
- ...Position Summary:The Senior Cybersecurity Engineer is a core technical leader within our Security Operations (SecOps) team, responsible for designing, automating, and... ...select security technologies and solutions.Incident & Operational Response:Act as the Tier 2...OperationsFull timeWork at officeMonday to Friday
$105.4k - $207.8k
...will support Next-Generation Security Operations Center (SOC) capabilities... ...Insight Endpoint Detection and Response (EDR), Falcon Fusion SOAR,... ...and threat detection engineers to prioritize, develop, and... ...and recovery across cyber incidents and broader business disruptions...OperationsWork experience placementLocal areaVisa sponsorship- ...Step into a senior network operations leadership role supporting... ...network environment across security, routing, switching, wireless... ...NOC Lead or Senior Network Engineer who work in a Hybrid onsite... ..., and the ability to lead incident response, mentor L1/L2 engineers, improve...OperationsTemporary workRemote workWork from homeNight shift3 days per week
- ...its Cybersecurity Division and seeks skilled Cybersecurity Analysts to operate and manage cyber security platforms. In this critical role, you'll be responsible for security threat monitoring, incident response, risk assessment, and client advisory services.K \n e \...Operations
- ...clients. By combining advanced business and security practitioner knowledge, the Principal AI... ...the Optiv Standardize Sales Operating Processes (SOPs) to achieve consistent successMaintain... ...business proposals, contracts, and response to RFI/RFP’sActively pursue personal...OperationsFull timeLocal areaRemote workWork from home
- ...enterprise networking and network security and helps clients translate... ...business goals, risk, operating requirements, and existing investments... ...leaders, architects, and engineering teams on Cisco strategy,... ..., statements of work, RFP responses, and client-facing recommendations...OperationsFull timeLocal areaRemote workWork from home
- ...Position Summary:The Senior Network Security Engineer responsible for the design, architecture, implementation... ...strategy across hybrid, cloud, and operational technology (OT) environments. Acting... ...leadership during cybersecurity incidents involving network infrastructure,...Full timeWork at officeRemote workWork from homeMonday to FridayFlexible hours
- ...changing threats and operating environments into a clear... ...transform the cyber security services marketplace.... ...Vice President, Engineering Managed Services on the... ...Foundry team, you will be responsible for providing senior... ...for security incidents, strategic risk decisions...OperationsLocal areaVisa sponsorship
- ...and evolve an advanced operational threat defense... ...that keep our clients secure?If yes, then Deloitte... ...you'll doAs an AVP, Engineering Managed Services on the... ...Respond team, you will be responsible for… - Lead end-to-... ...management, and complex incident investigation,...OperationsLocal areaVisa sponsorship
- ...an Associate Vice President, Engineering Managed Services on the Cyber Operate team, you will be responsible for: - Lead end-to-end... ...governance, status reporting, incident response, risk mitigation, and... ...information systems, information security, mathematics, decision...OperationsContract workLocal areaVisa sponsorship
$163.4k - $322.1k
...Senior Manager, Advanced Cyber Threat Response, Forensics and Technical Remediation Integration... ...for, respond to, and recover from cyber incidents. As a Senior Manager, Advanced Cyber... ...(ISO) 27001, or Center for Internet Security (CIS) frameworks.Experience leading teams...Local areaVisa sponsorship$167k - $223k
...Advanced Technology Organization Systems Security Engineering Technical Leader Onsite role in... ...mission management and multi-domain operations at the edge and is looking for a... ...cybersecurity threats, and EMSO. Essential Responsibilities: Provide expertise in systems...OperationsPermanent employmentContract workWork experience placementLocal areaRemote workRelocationRelocation package- ...us! POSITION SUMMARY The Security Engineer – Governance, Risk & Compliance is responsible for establishing and maturing AirLife... ..., and internal policies. Operating in a medical device manufacturing... ...improve the IT Cyber Incident Response Playbook; support the...
$120.75k - $191k
...more! The Information Security Architect partners with... ...organizational strategy. This role is responsible for defining and promoting... ..., DevOps, Infrastructure & Operations, and application development... ...Computer Science, Computer Engineering, Cybersecurity, Information...OperationsWeekly pay$78.68k - $157.88k
...strategic, reputation, and financial risks to operational, cyber, and regulatory risks—to gain... ...SOC 1,2,3)System ImplementationsCyber Security AuditsInternal Control... ...manage multiple projects/assignments/responsibilities in a fast-paced environmentProblem solving...OperationsWork experience placementWork at officeLocal areaVisa sponsorship- ...and change control. When an incident arises, you shift quickly into... ...balance focused build time with responsive collaboration in a work-from-... ...Analyst supports reliable, secure data exchange between key... ...enterprise systems-enabling efficient operations and a consistent customer...OperationsWork at officeWork from homeMonday to FridayFlexible hoursShift workNight shift
- ...As a Senior Network Engineer, you will be a subject... ...champion. You will be responsible for designing, implementing... ...highly available, and secure network systems... ...agreements (SLAs) and operation level agreements (OLAs... ...effectiveness in the event of an incident. Performance...OperationsWork experience placementLocal areaRemote workFlexible hours
- ...Analyst at Independent Bank, you will report to the IT Operations Manager and are responsible for a variety of enterprise support duties. This role requires... ...output requirements and formats that support efficient, secure, and reliable technology solutions.Why You Should Apply:...OperationsWork at officeRemote workFlexible hours
- ...our table for you...Position SummaryThe Response and Recovery Lead leads an organization'... ...accurate and timely. This role ensures operational resilience, protects company assets and... ...operational strategy.What you will do: Incident & Crisis Management Lead: Lead operational...OperationsFull timeWork experience placementWork at officeMonday to FridayWeekend work
- ...EngineerThe Lead Network Engineer serves as the... ...architecture and engineering responsibilities with team leadership,... ..., scalability, and security of the organization's... ...to improve operational processes, prioritize... ...capacity planning, and incident response processes are...Operations
- ...for you...Position Summary:The Cloud Security Engineer defines, documents, and implements infrastructure... ...provisioning, configuration and operational aspects of cloud environmentsWrite... ...to day activitiesOther duties and responsibilities as assignedWhen you will work:Monday...Full timeWork at officeMonday to Friday
- ...Sr. Cloud Engineer A global fintech leader, Acrisure empowers... ...in our Infrastructure Operations group that is responsible for supporting enterprise... ..., EUC, operations, security, business systems, and business... ...for cloud infrastructure incidents, performance issues,...OperationsImmediate startFlexible hours
- ...transactions efficiently and accurately Handle cash and payments responsibly, with attention to detail Communicate clearly and... ...customers to return Support other tasks as needed to keep operations running smoothly In short: you'll turn everyday moments into...OperationsWeekly pay
- ...professionals. Work you’ll do/Responsibilities As a Consultant at Deloitte... ...Functional day to day Incident/ Request/enhancements for US... ...Our Insights, Innovation & Operate Offering is designed to enhance... ...Information Technology, Computer Engineering, or related IT discipline;...Operations
- ...our AVP, AI Platform Engineer, you’ll be at the center... ..., administering, securing, and continuously advancing... ...architecture, and operational support to turn... ...related services, with responsibility for configuration, access... ..., resiliency, and incident response.Monitor platform...OperationsLocal areaFlexible hours
- ...combined business, technology, and engineering experience to deliver these... ...Assistant, Physical Security to support technical design... ...and closeout packages for RFP responses and other phased-construction... ...Project Managers and the Operations Lead to align drawing, submittal...OperationsWork at officeLocal area
$50 - $60 per hour
...impediments, and helping the team meet its commitments. Additional responsibilities include supporting backlog refinement, authoring user... ...and continuous improvement. Infrastructure, networking, or operations experience preferred.Preferred Certification: CSM, PSM, or KMP#LI...OperationsWork experience placement3 days per week- ...you...Position Summary:The Enterprise Information Security Architect leads the definition and implementation... .... In collaboration with other architects, engineers, and IT/Security specialists, this role is responsible for analyzing current Information Technology (IT)...Full timeWork experience placementWork at officeMonday to Friday
$25 - $35 per hour
...Analyst to support end users, IT infrastructure, and operational technology (OT) environments. This role is responsible for troubleshooting desktop systems, supporting... ...in an on-call rotation and respond to critical incidents as needed. Required Qualifications ~3+...OperationsContract workTemporary workRemote work- ...Flex-N-Gate facilities in the US / Canada as directed. Daily Operations would also include other duties assigned by the Director Information... ...Systems or Information Systems Manager. The incumbent is responsible for the awareness, understanding, specific responsibilities...OperationsFlexible hoursWeekend workAfternoon shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Engineer - Security Operations & Incident Response. Be the first to apply!
- sr information security engineer Grand Rapids, MI
- senior application security engineer Grand Rapids, MI
- aba operations Grand Rapids, MI
- operations research Grand Rapids, MI
- dental operations Grand Rapids, MI
- lab operations Grand Rapids, MI
- analyst sales operations Grand Rapids, MI
- marketing operations Grand Rapids, MI
- franchise operations Grand Rapids, MI
- operations support system engineer Grand Rapids, MI




