Talent.com
Security Incident Response Engineer
Security Incident Response EngineerAcrisure LLC • Atlanta, GA, United States
[error_messages.no_longer_accepting]
Security Incident Response Engineer

Security Incident Response Engineer

Acrisure LLC • Atlanta, GA, United States
[job_card.30_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]
About Acrisure

A global fintech leader, Acrisure empowers millions of ambitious businesses and individuals with the right solutions to grow boldly forward. Bringing cutting-edge technology and top-tier human support together, we connect clients with customized solutions across a range of insurance, reinsurance, payroll, benefits, cybersecurity, mortgage services - and more.

In the last twelve years, Acrisure has grown in revenue from $38 million to almost $5 billion and employs over 19,000 colleagues in more than 20 countries. Acrisure was built on entrepreneurial spirit. Prioritizing leadership, accountability, and collaboration, we equip our teams to work at the highest levels possible.

Job Summary:

Acrisure is seeking a Security Incident Response Engineer to join our growing team. The Security Incident Response Engineer - EDR will support the organization's security operations with a focus on endpoint detection and response (EDR) management and incident response activities. To succeed in this role, the candidate must be adept at coordinating and triaging security incidents, responding promptly and effectively to threats, and managing EDR toolsets at scale. The engineer will proactively monitor, analyze, and resolve security incidents involving endpoints, requiring high attention to detail and the ability to balance multiple urgent tasks. Key to this position is being a self-starter, consistently prioritizing critical tasks, and maintaining strong commitment to operational excellence.

Responsibilities:
  • Detect, analyze, and respond to security incidents detected by EDR, SIEM, and Cloud Security tooling as well as MDR service providers.
  • Lead or participate in investigation and containment efforts for both endpoint and identity related security threats.
  • Develop and implement strategies to remove the root cause of the incident.
  • Conduct forensic data acquisition, log analysis, and root cause determination for endpoint incidents.
  • Develop and maintain incident response playbooks and runbooks specific to EDR technologies.
  • Analyze security alerts and anomalies to determine if they represent actual security incidents.
EDR Deployment and Configuration
  • Oversee deployment, configuration, and ongoing management of EDR on endpoints for comprehensive coverage.
  • Monitor and tune alerting rules/policies to reduce false positives and ensure accurate threat detection.
  • Maintain compliance measures by enforcing configuration to organizational standards.
  • Provide training on EDR usage to incident response teams and end-users.
  • Review security alerts, correlate event data, and identify risks to endpoints.
  • Maintain integration of EDR tools with SIEM and other security solutions.
  • Regularly review and update endpoint security policies based on threat intelligence and incident learnings.
Requirements
  • Proficiency with leading Endpoint Detection and Response platforms (SentinelOne, Microsoft Defender, CrowdStrike, or other toolsets).
  • Strong experience with incident response, digital forensics, and threat hunting on endpoints.
  • Knowledge of endpoint operating systems (Windows, macOS, and Linux).
  • Experience with scripting (PowerShell, Python, or Bash) for automation and log parsing.
  • Excellent analytical and problem-solving skills; ability to work in high-pressure situations.
  • Effective verbal and written communication abilities.
  • Detail-oriented with strong organizational skills and the ability to handle multiple priorities.
  • Ability to work independently and within a collaborative, team-oriented environment.
Education and Experience:
  • Bachelor's degree in Computer Science, Information Security, Cybersecurity, or related discipline (or equivalent experience).
  • Minimum 3 years of progressive information security experience.
  • At least 1-3 years focused on incident response, including hands-on EDR work.
  • Expertise in Infrastructure Security: In-depth understanding of infrastructure security, including Windows, Active Directory, Unix/Linux, Mobile Security, and Privileged Access Management.
  • Experience with Microsoft M365 security including Entra ID, Microsoft Defender for M365, and other toolsets is a plus.
  • Relevant certifications (one or more preferred): GCFA, GCIH, CHFI, CySA+, or similar.
#LI-CH1

Candidates should be comfortable with an on-site presence to support collaboration, team leadership, and cross-functional partnership.

Why Join Us:

At Acrisure, we're building more than a business, we're building a community where people can grow, thrive, and make an impact. Our benefits are designed to support every dimension of your life, from your health and finances to your family and future.

Making a lasting impact on the communities it serves, Acrisure has pledged more than $22 million through its partnerships with Corewell Health Helen DeVos Children's Hospital in Grand Rapids, Michigan, UPMC Children's Hospital in Pittsburgh, Pennsylvania and Blythedale Children's Hospital in Valhalla, New York.

Employee Benefits

We also offer our employees a comprehensive suite of benefits and perks, including:
  • Physical Wellness: Comprehensive medical insurance, dental insurance, and vision insurance; life and disability insurance; fertility benefits; wellness resources; and paid sick time.
  • Mental Wellness: Generous paid time off and holidays; Employee Assistance Program (EAP); and a complimentary Calm app subscription.
  • Financial Wellness: Immediate vesting in a 401(k) plan; Health Savings Account (HSA) and Flexible Spending Account (FSA) options; commuter benefits; and employee discount programs.
  • Family Care: Paid maternity leave and paid paternity leave (including for adoptive parents); legal plan options; and pet insurance coverage.
  • ... and so much more!

This list is not exhaustive of all available benefits. Eligibility and waiting periods may apply to certain offerings. Benefits may vary based on subsidiary entity and geographic location.

Acrisure is an Equal Opportunity Employer. We consider qualified applicants without regard to race, color, religion, sex, national origin, disability, or protected veteran status. Applicants may request reasonable accommodation by contacting leaves@acrisure.com.

California Residents: Learn more about our privacy practices for applicants by visiting the Acrisure California Applicant Privacy Policy.

Recruitment Fraud: Please visit here to learn more about our Recruitment Fraud Notice.

Welcome, your new opportunity awaits you.
[job_alerts.create_a_job]

Security Incident Response Engineer • Atlanta, GA, United States

[internal_linking.similar_jobs]
VP, Senior Incident Response Lead

VP, Senior Incident Response Lead

Synchrony • Alpharetta, GA, United States
[job_card.full_time]
The VP, Senior Incident Response Lead is part of the Synchrony Joint Security Operations Center (JSOC) leadership team.This position is responsible for identifying and leading the implementation of...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
A 44/77 - 750759 - Security Engineer

A 44/77 - 750759 - Security Engineer

Focused HR Solutions • Atlanta, Georgia, United States
[job_card.full_time]
[filters_job_card.quick_apply]
This candidate will be allowed to work remotely.All remote work must be completed in the United States.The contractor may be required to come onsite in Raleigh, NC, or to different healthcare facil...[show_more]
[last_updated.last_updated_30]
Oracle Cloud Security Engineer

Oracle Cloud Security Engineer

Bright Vision Technologies • Atlanta, GA, US
[job_card.full_time]
[filters_job_card.quick_apply]
Oracle Cloud Security Engineer Bright Vision Technologies is a forward-thinking software development company dedicated to building innovative solutions that help businesses automate and optimize th...[show_more]
[last_updated.last_updated_variable_days]
Senior AI Security SA, Security Specialist Solutions Architecture

Senior AI Security SA, Security Specialist Solutions Architecture

Amazon • Atlanta, GA, United States
[job_card.full_time]
Application deadline: Mar 4, 2026.AWS Global Sales drives adoption of the AWS cloud worldwide, enabling customers of all sizes to innovate and expand in the cloud.Our team empowers every customer t...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Senior Application Security Engineer (US Remote)

Senior Application Security Engineer (US Remote)

First Advantage • Atlanta, GA, US
[filters.remote]
[job_card.full_time]
[filters_job_card.quick_apply]
FA), people are at the heart of everything we do.From our customers and partners to our greatest advantage — our team members.Operating with empathy and compassion, First Advantage fosters a global...[show_more]
[last_updated.last_updated_30]
Security Practice Lead (Nationwide)

Security Practice Lead (Nationwide)

Presidio • Atlanta, GA, United States
[job_card.full_time]
Presidio, Where Teamwork and Innovation Shape the Future.AtPresidio, we're at the forefront of a global technology revolution, transforming industries throughcutting-edge digital solutions and next...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Security Consultant - Engineering

Security Consultant - Engineering

SHI GmbH • Atlanta, GA, United States
[job_card.full_time]
Since 1989, SHI International Corp.We've grown every year since, and today we're proud to be a $16 billion global provider of IT solutions and services.Over 17,000 organizations worldwide rely on S...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Cloud Security Solution Architect

Cloud Security Solution Architect

ImagineX • Atlanta, GA, United States
[job_card.full_time]
Lead Cloud Security Engineer (Wiz & Azure).ImagineX is a tech company that deploys AI‑assisted teams to build and secure mission‑critical enterprise solutions with our clients – spanning software, ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Senior Application Security Engineer

Senior Application Security Engineer

ImagineX Consulting • Atlanta, GA, US
[job_card.full_time]
[filters_job_card.quick_apply]
ImagineX is a tech company that deploys AI-assisted teams to build and secure mission-critical enterprise solutions with our clients – spanning software, cybersecurity, data, and AI.Structured like...[show_more]
[last_updated.last_updated_variable_days]
Government Security Operations Architect (Cloud & Compliance)

Government Security Operations Architect (Cloud & Compliance)

Geotab Inc. • Atlanta, GA, United States
[job_card.full_time]
A leading IoT solutions provider is looking for a Government Security Operations Architect to design secure solutions for public sector clients.This role requires strong expertise in cloud security...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
A - 4/7 - 750759 - Security Engineer w/ Healthcare Exp - Remote & Raleigh, NC

A - 4/7 - 750759 - Security Engineer w/ Healthcare Exp - Remote & Raleigh, NC

FHR • Atlanta, GA, US
[filters.remote]
[job_card.full_time]
[filters_job_card.quick_apply]
This candidate will be allowed to work remote.All remote work must be completed in the United States.The contractor may be required to come onsite in Raleigh, NC or to different healthcare faciliti...[show_more]
[last_updated.last_updated_30]
Security Operations Engineer (Levels III - V)

Security Operations Engineer (Levels III - V)

Georgia System Operations Corporation • Tucker, GA, USA
[job_card.full_time]
[filters_job_card.quick_apply]
This Engineer role, part of GSOC's Security Operations department, is responsible for protecting the cyber assets that support GSOC and GTC's digital operations.The position focuses on conducting c...[show_more]
[last_updated.last_updated_30]
Information Security Engineer

Information Security Engineer

Brightwell • Atlanta, GA, US
[job_card.full_time]
[filters_job_card.quick_apply]
What We Do Brightwell is a pioneering payments company dedicated to providing innovative solutions and technology for global money transfers while navigating the intricate landscape of regulatory r...[show_more]
[last_updated.last_updated_30]
Progamming Engineer

Progamming Engineer

SPP Pumps • Norcross, Georgia, US
[job_card.full_time]
Job Description Job Description Position Summary This position focuses on controller programming for the commercial group (Principally Municipal, Irrigation, with support for commercial, HVAC, rain...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Cloud Security Engineer

Cloud Security Engineer

Morgan Stanley • Alpharetta, GA, United States
[job_card.full_time]
Cloud Security Requirements Specialist AI&ML P3 - Director - Cyber Security.Morgan Stanley is a leading global financial services firm providing a wide range of investment banking, securities, weal...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Information Security Architect

Information Security Architect

Syntricate Technologies • Atlanta, GA, United States
[job_card.full_time]
Information Security Architect.Atlanta, GA Contract Role Description: Perform Threat Analysis & Create/Update the Threat Modelling? The Information Security Architect performs threat analyses for c...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Cloud Security Engineer

Cloud Security Engineer

Bright Vision Technologies • Atlanta, GA, US
[job_card.full_time]
[filters_job_card.quick_apply]
Cloud Security Engineer Bright Vision Technologies is a forward-thinking software development company dedicated to building innovative solutions that help businesses automate and optimize their ope...[show_more]
[last_updated.last_updated_variable_days]
Fire Protection Engineer

Fire Protection Engineer

Wiley|Wilson • Atlanta, Georgia, US
[job_card.full_time]
Job Description Job Description Wiley|Wilson, a 100% employee-owned architecture and engineering firm, is seeking an experienced Fire Protection Engineer to join our team in Atlanta, GA.We are look...[show_more]
[last_updated.last_updated_variable_days] • [promoted]