1,000,951open jobs
59,599companies
166,217added this week
Browse all
Salary
≈ $112k – $220k per year (Estimated)
Location
In office (United States)
Seniority
Senior · 7+ years exp

Confirmed on the employer's own hiring board on Oct 1, 2026. First seen by Alion on Jul 22, 2026. Eaton scores A on the Alion truth index.

Overview
Company
Impact
Profile match
Eaton is a power management company founded in 1911 as a truck axle maker and now incorporated in Dublin with operational headquarters in Beachwood, Ohio. Its largest business by far is electrical, supplying circuit breakers, switchgear, uninterruptible power supplies and distribution equipment, a portfolio that has become unusually valuable as data centre construction and grid electrification accelerate demand for power infrastructure. The group also builds aerospace hydraulic and fuel systems, electric vehicle powertrain components and vehicle drivetrain products, and sells the Brightlayer software suite that monitors and optimises the equipment it manufactures.

Eaton’s Corporate Sector division is currently seeking a IT - Incident Response Engineer. The expected annual salary range for this role is $113000 - $165000 a year. This role can sit out of any US Eaton site, however remote candidates will be considered.

Please note the salary information shown above is a general guideline only. Salaries are based upon candidate skills, experience, and qualifications, as well as market and business considerations.

Job summary:

Identify, analyze, and respond to advanced cyber threats and incidents - across on-premises, hybrid, and multi-cloud environments - as a senior member of Eaton's Cyber Security Incident Response Team (CSIRT). Serve as a force-multiplier within the Prevent-Detect-Respond strategy, applying deep incident response and cloud security expertise while advancing the team's next-generation capabilities in agentic AI, automation, detection engineering, and insider threat program. Protect Eaton's intellectual property, operational technology, cloud workloads, and brand across a highly complex, global, multi-technology, regulated, and diversified business environment. This role requires hands-on response capabilities and the aptitude to elevate the broader team's technical maturity.

Job responsibilities

Responsible for the engineering, health, and continuous improvement of detection and response capabilities across cloud and on-premises estates - investigating, analyzing, containing, and remediating cyber threats and security incidents that could impact the organization, while building the automation and AI-enabled tooling that scales the Security Operations Center (SOC)

What you'll do:

Incident Response & Threat Hunting

  • Provide 24/7/365 (on-call rotation) cyber security incident response, with a focus on responding to, containing, remediating, and recovering from cyber incidents across the global enterprise, including cloud-native and hybrid environments
  • Respond to, investigate, and resolve information security issues in accordance with compliance, regulatory, and investigative standards
  • Manage and coordinate response to malicious cyber activity inside or targeting Eaton's assets, including IT, cloud, and operational technology (OT) environments
  • Perform proactive threat hunting based on emerging indicators of compromise, vulnerabilities, and threat intelligence
  • Lead detection, investigation, and response for cloud security incidents across major platforms (Microsoft Azure, AWS, and/or Google Cloud), including identity, workload, container, and SaaS compromise scenarios
  • Develop and tune cloud-native detections using cloud logging and telemetry
  • Apply knowledge of cloud identity and access management, misconfigurations, and cloud attack paths to strengthen detection coverage and reduce exposure
  • Partner with cloud platform and engineering teams to embed security into cloud architecture and support Cloud Security Posture Management (CSPM) and workload protection initiatives
  • Track threat actors and campaigns relevant to Eaton's industry and geography; enrich incidents with contextual intelligence to drive faster, higher-confidence decisions
  • Design, build, and enable agentic AI and automation workflows (SOAR, scripting, AI agents) to accelerate triage, investigation, containment, and reporting across cloud and on-premises estates
  • Develop and maintain automated playbooks that reduce mean time to detect and respond and eliminate repetitive manual effort
  • Contribute to securing Eaton's adoption of AI - assessing AI/LLM systems and agents for security risk, and supporting evaluation of AI-enabled SOC and managed services capabilities
  • Conduct digital forensic analysis and eDiscovery in support of incident response, internal investigations, and legal/compliance requests, preserving evidence to investigative and chain-of-custody standards across endpoint and cloud sources
  • Provide security engineering services, including deployment, configuration, management, and updating of the security tool stack across cloud and on-premises
  • Develop advanced queries, correlation rules, and detections to enhance the organization's detection coverage and security posture
  • Contribute to SIEM architecture - including cloud log onboarding, normalization, content lifecycle, and tuning to focus detection operations and reduce false positives

Qualifications:

Basic (required) Qualifications:

  • Bachelor’s Degree from an accredited institution
  • Minimum seven (7) years in security operations, incident response, cloud security, e-Discovery, insider threat, security engineering or related field
  • This position requires use of information or access to hardware which may be subject to the International Traffic in Arms Regulations (ITAR). All applicants must be U.S. persons within the meaning of ITAR. ITAR defines a U.S. person as a U.S. Citizen, U.S. Permanent Resident (i.e. 'Green Card Holder'), Political Asylee, or Refugee.
  • Must be legally authorized to work in the United States without company sponsorship both now and in the future

Preferred Qualifications:

  • Demonstrated hands-on experience leading or performing cyber security incident response, including containment, remediation, and recovery
  • Hands-on cloud security experience with one or more major platforms
  • Experience correlating events from multiple sources - including cloud-native sources - to detect suspicious and/or malicious activity
  • Detection engineering experience and SIEM content development and architecture
  • Experience building automation and/or agentic AI workflows (SOAR, scripting in Python/PowerShell, AI agents) to streamline security operations
  • Working knowledge of AI/LLM security concepts and the risks associated with enterprise AI adoption
  • Emphasis on experience with digital forensics and eDiscovery tools and methodologies
  • Solid understanding of adversary TTPs and the MITRE ATT&CK framework
  • Capacity to comprehend complex technical infrastructure, managed services, and third-party dependencies
  • Strong analytical and problem-solving skills

Skills:

Soft skills

Exceptional communication skills are essential for this role. The analyst must communicate clearly, articulately, and with transparency across all levels of the organization - from technical peers and junior analysts to senior leadership and executives. This includes:

  • Translating complex technical findings into clear, business-relevant language for executive and non-technical audiences
  • Communicating incident status, risk, and impact with accuracy and transparency, especially under pressure during active incidents
  • Producing clear, concise written deliverables - incident reports, executive briefings, and documentation - that withstand scrutiny
  • Presenting confidently and credibly to senior leadership, and fostering open, honest communication that builds trust across the team and stakeholders
  • Excellent proficiency in English (written and verbal)
  • Strong analytical and problem-solving skills
  • Proven ability to mentor and upskill junior analysts
  • Strong project management, multitasking, and organizational skills

All positions may require participation in video and in-person interviews as part of the hiring process. All candidates will be evaluated based on job-related competencies, and all candidates’ privacy rights and data security will be protected in accordance with applicable laws.

We are committed to ensuring equal employment opportunities for all job applicants and employees. Employment decisions are based upon job-related reasons regardless of an applicant's race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, marital status, genetic information, protected veteran status, or any other status protected by law.

Eaton believes in second chance employment. Qualified applicants with arrest or conviction history will be considered regardless of their arrest or conviction history, consistent with the Los Angeles County Fair Chance Ordinance, the California Fair Chance Act and other local laws.

You do not need to disclose your conviction history or participate in a background check until a conditional job offer is made to you. After making a conditional offer and running a background check, if Eaton is concerned about conviction that is directly related to the job, you will be given the chance to explain the circumstances surrounding the conviction, provide mitigating evidence, or challenge the accuracy of the background report.

To request a disability-related reasonable accommodation to assist you in your job search, application, or interview process, please call us at 1-800-836-6345 to discuss your specific need. Only accommodation requests will be accepted by this phone number.

We know that good benefit programs are important to employees and their families. Eaton provides various Health and Welfare benefits as well as Retirement benefits, and several programs that provide for paid and unpaid time away from work. Click here for more detail: Eaton Benefits Overview. Please note that specific programs and options available to an employee may depend on eligibility factors such as geographic location, date of hire, and the applicability of collective bargaining agreements.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,000,951 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
United States
≈ $11k – $31k per year (Estimated) • Hybrid • Full-Time • Bengaluru
Cybersecurity
Defense in Depth
Apply
≈ $18k – $40k per year (Estimated) • Remote (India) • Full-Time • 5+ years exp • Bachelor's Degree • India
DevOps
CI/CD
Management
Jira
Agile
Scrum
Apply
≈ $15k – $38k per year (Estimated) • In office • Samara
DevOps
TCP/IP
VPN
VLAN
Cybersecurity
ViPNet
Management
Telegram
Apply
≈ $78k – $144k per year (Estimated) • Hybrid • 8+ years exp • Kraków
AI/ML
Red Teaming
Cybersecurity
ISO 27001
GDPR
Threat Modeling
Apply
≈ $97k – $191k per year (Estimated) • In office • 4+ years exp • Tempe
Cybersecurity
FTK
EnCase
Management
Microsoft Office
Apply
≈ $95k – $211k per year (Estimated) • Hybrid • Full-Time • Bachelor's Degree • Chandler • Santa Clara • Hillsboro
Python
SQL
AI/ML
Function Calling
AI Agents
LLM
RAG
Tool Use
Machine Learning
Analytics
Tableau
Power BI
Apply
≈ $104k – $205k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Houston
DevOps
Azure
Cybersecurity
Microsoft Sentinel
ISO 27001
Microsoft Defender
GDPR
Microsoft Defender for Cloud
Microsoft Entra ID
SIEM
Management
OneDrive
SharePoint
Apply
≈ $14k – $29k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Noida
AI/ML
AI Agents
Edge AI
Apply
≈ $7.5k – $19k per year (Estimated) • Hybrid • Full-Time • Bachelor's Degree • Mumbai
AI/ML
AI Agents
Edge AI
Management
UiPath
Agile
Apply
≈ $9.5k – $21k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Noida
AI/ML
AI Agents
Edge AI
Apply
≈ $14k – $34k per year (Estimated) • Hybrid • 3+ years exp • Bachelor's Degree • Pune
DevOps
Kali Linux
Azure
Linux
Windows
Cybersecurity
Crowdstrike
Nessus
Threat Modeling
Invicti
IoT
Zigbee
Apply
≈ $21k – $50k per year (Estimated) • Hybrid • 8+ years exp • Bachelor's Degree • Pune
DevOps
TCP/IP
VPN
Wi-Fi
Cybersecurity
NIST 800-53
Threat Modeling
IoT
Zigbee
Apply
$113k – $165k per year • In office • 5+ years exp • Bachelor's Degree • Houston
Management
ITIL
Apply
≈ $21k – $52k per year (Estimated) • In office • 3+ years exp • Bachelor's Degree • Shenzhen
C++
DevOps
CI/CD
Cybersecurity
Threat Modeling
Apply
≈ $21k – $49k per year (Estimated) • In office • 18+ years exp • Bachelor's Degree • Pune
Cybersecurity
ISO 27001
Management
Agile
Waterfall
Apply
≈ $75k – $162k per year (Estimated) • Remote (United States) • 3+ years exp • United States
Apply
≈ $40k – $72k per year (Estimated) • In office • Full-Time • 2+ years exp • Associate's Degree • United States
Apply
≈ $41k – $72k per year (Estimated) • In office • Full-Time • 1+ year exp • United States
Apply
≈ $41k – $94k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • United States
Cybersecurity
HIPAA
Apply
Class A Driver 2 1 day ago
$60k – $72k per year • In office • Full-Time • 1+ year exp • United States
Apply
See all jobs
This is one of many
1,000,951 more open roles from verified company boards, updated every day.