659,077open jobs
38,403companies
95,422added this week
Browse all
Salary
$78k – $171k per year (Estimated)
Location
Remote/Hybrid (Irvine, United States)
Seniority
Junior · 3+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Trellix is a global cybersecurity company headquartered in Milpitas, California, and was established in 2022 following the merger of McAfee Enterprise and FireEye. The company provides an open and native extended detection and response (XDR) platform that integrates endpoint, cloud, network, and data security to protect organizations from advanced cyber threats. Operating as a private entity under Symphony Technology Group, it serves thousands of enterprise and government customers worldwide through a comprehensive portfolio of automated security solutions.

Job Title:

Associate Solution Consultant - Security Incident Handler

About Trellix

Trellix is a global company redefining the future of cybersecurity. The company’s comprehensive, open, and native cybersecurity platform helps organizations confronted by today’s most advanced threats gain confidence in the protection and resilience of their operations. Trellix, along with an extensive partner ecosystem, accelerates technology innovation through artificial intelligence, automation, and analytics to empower over 50,000 business and government customers with responsibly architected security. More at https://trellix.com.

Role Overview:

Develops and delivers detailed IT and cybersecurity solutions through consulting project activities. Responsibilities include client identification through final invoicing for engagements requiring varied interpersonal and technical skills. Technical responsibilities include problem identification, security monitoring, rapid incident response, threat detection, system architecture definition, software specification/design, implementation, testing, client training, and solution deployment. Performance is typically evaluated based on utilization (i.e., billable hours). Project management activities include interaction with company and client managers and cost/schedule monitoring. May have financial responsibilities including project cost estimating, proposal generation, and invoicing. May participate in sales and proposal presentations in addition to completing ongoing team account activities. Identifies additional product/services opportunities within customer organizations. Performance is typically measured by the capture of the consulting engagement and/or delivery of agreed solutions within budgeted hours.

Job Description:

Trellix Professional Services is seeking a Security Incident Handler with a passion for Cyber Security Defense and a strong understanding of security monitoring and incident response.

We have an onsite Elite team-one of the best Cyber Security consulting teams-working directly with our strategic customer as a joint Security Operations Task Force, and growing this piece of the business is a top priority!

This is a full-time hybrid role (3 days onsite, 2 days remote) with Public Sector Professional Services. You will work hand in hand with the customer’s Cyber Security, IT, and business teams to ensure the highest security around all Trellix Solutions and broader Cyber Security ecosystems. The Computer Security Incident Response Team (CSIRT) is responsible for 24x7x365 security monitoring and rapid incident response across the customer’s environments. As the ‘tip of the spear’ and the last line of defense protecting customer data and assets from adversaries, you will exercise judgment within broadly defined practices and policies in selecting methods, techniques, and evaluation criteria for obtaining results.

Note: This position may require occasional after-business-hour and weekend on-call shifts.

About the Role:

  • Manage and perform client work related to our product service offerings, security monitoring, and incident response.

  • Act as an integral member of the joint Security Operation Task Force and CSIRT team in a 24x7x365 operations environment.

  • Respond to security incidents in a production environment, including investigating/remediating endpoint malware infections and mitigating email-borne threats (phishing/spam).

  • Conduct host and network forensics during security incidents, analyzing system artifacts (file system, memory, running processes, network connections) for indicators of compromise (IOCs).

  • Identify and mitigate vulnerabilities using alternate or compensating controls where necessary.

  • Recognize potential security violations, report incidents as required by regulations, and mitigate adverse impacts.

  • Create end-of-engagement reports, technical DFIR (Digital Forensics & Incident Response) reports, and executive summaries describing findings and analysis.

  • Author formal reports, architecture designs, optimization guides, and best-practice white papers covering a variety of security topics.

  • Interact with company and client managers on cost/schedule monitoring, estimating, proposal generation, and invoicing.

  • Help identify and develop new client opportunities, expert services engagements, and potential consulting sales leads.

  • Maintain technical proficiency through self-training or formal training while sharing knowledge and mentoring consultant peers.

About You:

  • Experience:3 to 4 years’ experience in Information Security, including operational security monitoring or incident response.

  • Education:Bachelor's Degree; technical degree or diploma preferred in computer science, information technology, or a related cyber field.

  • Core Technical Expertise:

    • Understanding of cyber threats, attack vectors, detection capabilities, incident management processes, and compensating security controls.

    • Experience monitoring and leveraging Trellix products: Trellix ePO, Endpoint Security (ENS), Trellix Detection & Response / Active Response (EDR), Advanced Threat Defense (ATD Sandbox), Threat Intelligence Exchange (TIE), Data Exchange Layer (DXL), Data Loss Prevention (DLP), SIEM, XDR, and Email Gateway ATP.

    • Monitoring and log analysis across Network/Host IDSs, UEBA, WAFs, Database Security, Firewalls/Routers/Switches/VPNs, File Integrity Monitoring (FIM), Active Directory, and OS logs.

  • Forensics & Threat Knowledge:

    • Host and network forensics capabilities, system artifact analysis, and threat hunting methodologies.

    • Basic technical understanding of the MITRE ATT&CK™ framework and MITRE’s Ten Strategies of a World-Class Cybersecurity Operations Center.

    • Knowledge of TCP/IP protocol suites (packet/traffic dissection) and OS logging configuration (Syslog, flat-files).

    • Familiarity with Windows, Mac, and Linux OS administration, application hardening, and security controls.

  • Scripting & OS Skills:

    • Strong Linux and Python skills are preferred. Experience with PowerShell, Perl, Go, C#, or general shell scripting is a significant plus.

    • Understanding of relevant infrastructure technologies: Virtualization (VMware, Nutanix) and Cloud Services (AWS, Azure).

  • Soft Skills & Professionalism:

    • Excellent client-facing presentation, verbal, and written communication skills (ability to communicate with technical staff and executive leadership).

    • Advanced proficiency in Microsoft Office Suite (Word, Excel, PowerPoint).

    • Ability to prioritize and manage multiple tasks independently in a high-tempo environment.

Company Benefits and Perks:

We believe that the best solutions are developed by teams who embrace each other's unique experiences, skills, and abilities. We work hard to create a dynamic workforce where we encourage everyone to bring their authentic selves to work every day. We offer a variety of social programs, flexible work hours and family-friendly benefits to all of our employees.

  • Retirement Plans

  • Medical, Dental and Vision Coverage

  • Paid Time Off

  • Paid Parental Leave

  • Support for Community Involvement

We're serious about ourcommitment to a workplace where everyone can thrive and contribute to our industry-leading products and customer support, which is why we prohibit discrimination and harassment based on race, color, religion, gender, national origin, age, disability, veteran status, marital status, pregnancy, gender expression or identity, sexual orientation or any other legally protected status.

Our Commitment to You:

At Trellix, we are committed to creating a safe and trustworthy experience for our customers, employees, and candidates. Please be aware that fraudulent recruiting activity can occur through fake job postings or impersonated communications.

Trellix conducts interviews through professional channels only and does not use text messages, instant messaging, or group chats for interviews. We will never request sensitive personal information-such as your date of birth, Social Security number, or national ID number-during the interview process.

Trellix also does not require candidates to pay fees, purchase products or services, or process payments of any kind as part of the recruiting or hiring process. And Trellix will never keep any original work authorization documents that we may be required to review during the hiring process.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
659,077 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Irvine
DevOps Engineer 1 day ago
Remote/Hybrid • 3+ years exp
Python
PowerShell
DevOps
Terraform
GitHub Actions
New Relic
CloudFormation
Prometheus
CI/CD
Git
AWS
Kubernetes
Grafana
Bamboo
Amazon EKS
AWS Lambda
Amazon EC2
Amazon S3
IAM
Cybersecurity
SonarQube
Veracode
Management
Jira
Agile
Apply
$87k – $175k per year (Estimated) • Remote • Full-Time • 5+ years exp • Bachelor's Degree
Python
C++
C++
CMake
DevOps
GitHub Actions
CI/CD
Jenkins
Docker
Buildkite
Bazel
Management
Agile
Apply
$85k – $171k per year (Estimated) • Equity • Remote • Full-Time • 7+ years exp • Bachelor's Degree
Python
TypeScript
Python
Flask
FastAPI
Django
Databases
Snowflake
Databricks
Google BigQuery
Amazon Redshift
BigQuery
AI/ML
Cursor
AI Agents
LLM
RAG
Human-in-the-Loop
LLM Guardrails
Agentic Workflows
DevOps
CI/CD
AWS
Docker
Kubernetes
Apply
$200k – $300k per year • Remote/Hybrid • Full-Time • 8+ years exp • San Francisco • New York
Python
Databases
Redis
Amazon DocumentDB
DevOps
Terraform
GitHub Actions
Terragrunt
CI/CD
AWS
Amazon S3
IAM
Amazon ECS
Amazon CloudWatch
Cybersecurity
HIPAA
Apply
Data Editor 1 day ago
$64k – $161k per year (Estimated) • Remote • Full-Time • Bachelor's Degree
Python
MATLAB
AI/ML
SciPy
Pandas
NumPy
DevOps
Azure DevOps
Azure
GitHub
Management
Jira
Agile
Apply
$105k – $210k per year (Estimated) • In office • TS/SCI • Full-Time • 5+ years exp • Bachelor's Degree • Columbia
DevOps
Azure
AWS
Apply
$94k – $170k per year (Estimated) • Remote • TS/SCI • Full-Time • 8+ years exp • Bachelor's Degree • United States
Marketing
Salesforce
Apply
$89k – $179k per year (Estimated) • Remote • Full-Time • 5+ years exp • United States
Marketing
Salesforce
YouTube
LinkedIn
Apply
Solution Consultant 8 days ago
$51k – $107k per year (Estimated) • In office • Full-Time • Tokyo
Apply
$81k – $202k per year (Estimated) • Remote/Hybrid • Full-Time • 5+ years exp • Singapore
Cybersecurity
Zero Trust
Marketing
Salesforce
X (Twitter)
LinkedIn
Apply
$58k – $81k per year • In office • Full-Time • Irvine
Apply
$80k – $140k per year • In office • Full-Time • Master's Degree • Irvine
Apply
$114k – $232k per year (Estimated) • Equity • In office • 10+ years exp • Bachelor's Degree • Santa Clara • Irvine
AI/ML
Copilot
ChatGPT
Management
Agile
Apply
Production Operator 7 hours ago
$42k per year • In office • Full-Time • 1+ year exp • High School Diploma • Irvine
Apply
EHS Specialist 7 hours ago
$85k – $117k per year • In office • Full-Time • 6+ years exp • High School Diploma • Irvine
Apply
See all jobs
This is one of many
659,077 more open roles from verified company boards, updated every day.