- Company Name
- PROFICIO
- Job Title
- Managed EDR Engineer I
- Job Description
-
**Job Title**
Managed EDR Engineer I
**Role Summary**
Deploy, configure, and optimize endpoint detection and response (EDR) platforms to protect medium‑to‑large enterprises. Lead threat hunting, incident investigation, and remediation using tools such as Sophos, CrowdStrike Falcon, Microsoft Defender for Endpoint, SentinelOne, and TrendMicro Vision One. Collaborate with engineering, SIEM, sales, and other cross‑functional teams to refine detection rules and enhance security posture.
**Expectations**
* Manage EDR lifecycle – installation, tuning, and maintenance.
* Conduct proactive threat hunting and incident response.
* Translate analytic findings into actionable mitigations for stakeholders.
* Continuously improve detection capabilities and EDR configuration.
* Maintain up‑to‑date knowledge of EDR technologies, threat landscape, and adversary TTPs.
**Key Responsibilities**
* Deploy and maintain EDR solutions (Sophos, CrowdStrike Falcon, Microsoft Defender for Endpoint).
* Administer endpoint security tools (antivirus, web filtering, DLP, spam filtering) and integrate with EDR.
* Perform proactive threat hunting using advanced query tools and behavioral AI.
* Investigate complex compromises, malware, and vulnerabilities; recommend mitigation actions.
* Develop and implement detection/prevention strategies and automated response playbooks.
* Apply adversary TTP knowledge to enhance detection rules across attack surfaces.
* Lead technical communication of insights and recommendations to cross‑functional teams.
* Analyze EDR data trends, adjust configurations, and contribute to new rule creation.
**Required Skills**
* Proficient with EDR platforms (Sophos, CrowdStrike Falcon, Microsoft Defender for Endpoint, SentinelOne, TrendMicro Vision One).
* Strong threat hunting, incident investigation, and root cause analysis abilities.
* Knowledge of antivirus, web filtering, DLP, and spam filtering integration.
* Ability to write and tune detection rules, hunt queries, and automated response playbooks.
* Familiarity with adversary TTP frameworks (MITRE ATT&CK).
* Excellent communication and collaboration skills across technical teams.
**Required Education & Certifications**
* Bachelor’s degree in Computer Science, Cybersecurity, or related field (or equivalent experience).
* Industry certifications such as GCIH, GCIH, or similar advanced threat detection credentials preferred.