Skip to main content

Zscaler

Threat Response & Remediation Engineer

Remote - USA (Remote)From $148kmidAdded today

About this role

Zscaler seeks a Threat Response & Remediation Engineer to investigate and resolve security incidents in customer environments using EDR, network, and identity telemetry. You'll own end-to-end incident response from detection through remediation, collaborate with security teams, and participate in 24/7 on-call coverage.

What you'll do

  • Investigate detected threats using EDR, network, and identity telemetry to analyze, contain, and remediate in customer environments
  • Identify, scope, and manage customer incidents while developing remediation plans and delivering detailed reports
  • Develop and recommend response strategies and tool innovations to strengthen customer security posture
  • Collaborate with Detection Engineering, Intelligence, Research, and Product teams on threat remediation approaches
  • Participate in on-call rotation for 24/7 threat response coverage
  • Provide clear communication of complex security concepts to stakeholders with varying technical expertise

What they're looking for

  • EDR platform expertise (CrowdStrike, Microsoft Defender, SentinelOne, Palo Alto Cortex, or CarbonBlack)
  • Threat investigation and incident response
  • Windows and macOS operating system internals
  • Network communications and security controls
  • Digital Forensics and Incident Response (DFIR)
  • Linux systems knowledge
  • Technical communication and reporting
  • AI tool integration and problem-solving
Apply on the employer's site

Opens the official application on the employer’s site. No login required.

Zscaler

Zscaler builds Zero Trust security platforms and managed detection and response (MDR) services that protect endpoints and cloud infrastructure while processing massive transaction volumes. The company is hiring threat response engineers for security operations, sales engineers to support enterprise customers, and production/reliability engineers to maintain their scalable cloud infrastructure.

View all jobs at Zscaler

Likely interview questions

  • Walk us through your approach to investigating a complex, multi-stage threat detected across EDR and network telemetry.
  • Describe your experience with at least two EDR platforms and how you've used them to contain and remediate threats.