1

Att Cybersecurity Jobs in Oregon (NOW HIRING)

Cyber Security Engineer

Portland, OR · On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

A Day in the Life of the The Cyber Security Engineer is responsible for the design, implementation ... ATT&CK. * Design, develop, and optimize detection engineering capabilities, including SIEM ...

Senior Cybersecurity Analyst

Portland, OR · On-site +1

$94K - $126K/yr

The Senior Cybersecurity Analyst is the primary technical lead for Metro's security operations ... Familiarity with the MITRE ATT&CK framework and its application to detection and threat hunting.

New

... ATT&CK, Cyber Kill Chain, NIST, or other cybersecurity frameworks • Experience supporting SOC operations, incident response, malware analysis, forensics, or threat intelligence functions • ...

Threat Intelligence Engineer (REMOTE)

OR · On-site +1

$51 - $66.25/hr

  • Retirement

About Cyware Cyware delivers an innovative approach to cybersecurity that unifies threat ... Partner with Product to shape intelligence workflows, including PIRs, ATT&CK-aligned investigations ...

Solutions Architect (REMOTE)

OR · On-site +1

$63 - $83/hr

  • Retirement

About Cyware Cyware delivers an innovative approach to cybersecurity that unifies threat ... ATT&CK, the Cyber Kill Chain, and the Diamond Model * Hands-on experience designing and ...

Lead Threat Hunter

Gresham, OR · On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

If it's not mapped to MITRE ATT&CK yet, you are going figure out a way to map it! * You realize ... Investigating potential cybersecurity incidents. * Developing response processes and training ...

Lead Engineer, AI Attack Simulation

Portland, OR · On-site +1

$108K - $143K/yr

The ideal candidate combines deep software engineering experience, cybersecurity expertise, agentic ... Familiarity with MITRE ATT&CK and/or ATLAS and threat-informed defense. * Experience with agent ...

Lead Threat Hunter

Gresham, OR · On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

If it's not mapped to MITRE ATT&CK yet, you are going figure out a way to map it! * You realize ... Investigating potential cybersecurity incidents. * Developing response processes and training ...

OR · On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

... and former AT&T CEO John Donovan. Our valued customers include brands like Intuit, Cox ... cybersecurity efforts. Responsibilities : * Lead and manage all customer-facing security ...

Lead Threat Hunter

Gresham, OR

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

If it's not mapped to MITRE ATT&CK yet, you are going figure out a way to map it! * You realize ... Investigating potential cybersecurity incidents. * Developing response processes and training ...

Map threat activity and hunt hypotheses to recognized frameworks such as MITRE ATT&CK * Incorporate ... cybersecurity operations, threat hunting, incident response, detection engineering, security ...

Map observed behaviors to applicable frameworks and threat models such as MITRE ATT&CK when useful ... cybersecurity roles. * Experience triaging escalated alerts and investigating security events using ...

Att Cybersecurity information

What is the difference between Att Cybersecurity vs Cybersecurity Analyst?

AspectAtt CybersecurityCybersecurity Analyst
Required CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, CISSP, CEH
Work EnvironmentSecurity operations centers, corporate IT teamsSecurity teams, IT departments, consulting firms
Employer & Industry UsageGovernment agencies, private sector, militaryBusinesses, government, cybersecurity firms
Common Search & ComparisonYesYes

Att Cybersecurity professionals focus on defending networks and systems through monitoring, threat detection, and incident response. Cybersecurity Analysts perform similar roles but may also include analyzing security data, conducting vulnerability assessments, and developing security strategies. Both roles require comparable certifications and often work in similar environments, but Att Cybersecurity roles are more specialized in active defense operations.

What cities in Oregon are hiring for Att Cybersecurity jobs?

Cities in Oregon with the most Att Cybersecurity job openings:

Infographic showing various Att Cybersecurity job openings in Oregon as of August 2026, with employment types broken down into 91% Full Time, 4% Part Time, and 5% Contract. Highlights an 81% Physical, 6% Hybrid, and 13% Remote job distribution.

Cyber Security Engineer

Astound

Portland, OR • On-site

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 16 days ago


Job description

Astound is a leading provider of internet, WiFi, mobile, and TV services, dedicated to connecting communities and empowering lives through innovative technology. We also keep businesses connected with dependable fiber infrastructure and internet solutions backed by award-winning service, helping organizations thrive in an increasingly connected world.

At the forefront of digital transformation, we continuously evolve our offerings to meet the dynamic needs of our customers-delivering reliable connectivity and groundbreaking digital experiences.

Our commitment to excellence extends beyond infrastructure. We invest in our people through personalized training, coaching, and a supportive work environment that fosters growth and opportunity. Employees are empowered to represent a superior telecommunications company while making a meaningful impact in the communities we serve.

We offer a robust benefits package that includes rewards, recognition programs, and employee discounts-ensuring our team members are supported in both their professional and personal journeys. At Astound, we believe in creating astounding possibilities for everyone, everywhere.

A Day in the Life of the

The Cyber Security Engineer is responsible for the design, implementation, and continuous improvement of the organization's security architecture, controls, monitoring, detecting, analyzing, and responding to cyber security threats. This role operates within the Security Operations function and plays a critical role in threat detection, incident response, vulnerability management, and continuous improvement of the organization's security posture from design to implementation.

  • Lead and oversee 24/7 security operations, including monitoring, detection, triage, and incident response across enterprise environments (endpoint, network, identity, and cloud).

  • Own the end-to-end incident response lifecycle - including identification, containment, eradication, recovery, and post-incident analysis,- ensuring rapid, consistent, and high-quality execution.

  • Drive root cause analysis, blast radius determination, and implementation of corrective and preventive actions.

  • Establish, maintain, and continuously improve incident response playbooks, escalation procedures, and operational runbooks to enhance response effectiveness and reduce dwell time.

  • Act as the primary escalation point for high-severity or complex security incidents, providing technical leadership, decision-making authority, and real-time guidance during active events.

  • Lead advanced threat hunting operations using hypothesis-driven methodologies, leveraging EDR/XDR telemetry, SIEM data, network traffic, identity signals, and threat intelligence aligned to MITRE ATT&CK.

  • Design, develop, and optimize detection engineering capabilities, including SIEM correlation rules, behavioral analytics, and custom detections to improve coverage and reduce false positives.

  • Drive integration and tuning of security technologies (e.g., CrowdStrike, SIEM, SOAR, vulnerability scanners), ensuring alignment to enterprise risk priorities and operational efficiency.

  • Define and track key SOC performance metrics (e.g., MTTD, MTTR, alert fidelity, containment time) to measure operational effectiveness and drive continuous improvement.

  • Lead cross-functional coordination during incidents, partnering with IT, infrastructure, cloud, legal, HR, and executive leadership to ensure effective response and communication.

  • Translate technical incidents into business impact, delivering clear, concise updates to leadership and facilitating decision-making at the executive level.

  • Oversee vulnerability management efforts by correlating scan results with asset criticality, exploitability, and threat intelligence to drive risk-based prioritization.

  • Lead post-incident reviews, tabletop exercises, and continuous improvement initiatives to strengthen organizational resilience and reduce repeat incidents.

  • Mentor and develop SOC analysts and incident responders, establishing investigation standards, quality controls, and career development pathways.

  • Ensure proper evidence handling, forensic integrity, and audit-ready documentation aligned with regulatory frameworks (e.g., NIST, CMMC, PCI).

  • Identify emerging threats, adversary trends, and attack patterns, and operationalize insights into improved detections, controls, and defensive strategies.

  • Analyze alerts to determine legitimacy and potential impact.

  • Identify indicators of compromise (IOCs) and attacker tactics, techniques, and procedures (TTPs).

  • Escalate confirmed threats in accordance with established playbooks and procedures.

  • Perform initial triage and investigation of security incidents.

  • Other duties as assigned.

What You Bring to the Table:

  • 7+ years of Cyber Security experience.

  • Demonstrated knowledge of actively debugging attacks.

  • Expertise with Identity & Access, End Point Detection and Multi-Factor Authentication.

  • Experience with NGFW, IDS/IPS, WAF, Proxy, PKI and Advanced Threat Protection, cloud, automation, and scripting.

  • Ability to juggle multiple priorities where you are the driving force, ensuring completion and on-time delivery.

  • Excellent written and verbal communication skills in a clear business relevant manner that is adjusted to the audience; up, down and across the organization.

  • Proven independent decision making in high stress environment.

  • Ability to collaborate, mentor and training members of the team.

  • Demonstrated passion for security and self-driven to one day become an expert.

  • Proven ability to rapidly learn and retain new technologies.

  • Excellent interpersonal, customer support, verbal and technical writing skills; be a self-starter with the ability to achieve deadline-driven priorities.

  • Demonstrated ability to collaborate and work in a team environment, exhibit professional initiative, self-direction, willingness, and ability to document knowledge and share with others is required.

  • Strong communication skills and creativity as a problem solver is a must.

Education:

  • Bachelor's degree in Cybersecurity, Computer Science, or related field (or equivalent experience).

We're Proud to Offer a Comprehensive Benefits Package Including:

  • 401k retirement plan, with employer match

  • Insurance options including: medical, dental, vision, life and STD insurance

  • Paid Time Off/Vacation: Starting at 80 hours per year, and increases based on tenure with the organization

  • Floating Holiday: 40 hours per year

  • Paid Holidays: 7 days per year

  • Paid Sick Leave: Astound allows a number of paid sick hours per calendar year and varies based on state and/or local laws

  • Tuition reimbursement program

  • Employee discount program

*Benefits listed above are for regular full-time position

Base Compensation: The base compensation range for this position is $70,000 - $90,000 plus opportunities for benefits. The base pay range represents the low and high end of the hiring range for this job. Actual pay will vary and may be above or below the range based on various factors including but not limited to location, relevant skills, experience, and capabilities.

Our Mission Statement:

* Take care of our customers

* Take care of each other

* Do what we say we are going to do

* Have fun

Astound is proud to be an Equal Opportunity Employer, and we are dedicated to cultivating an inclusive workplace where employees feel valued, respected, and empowered. Discrimination of any kind has no place here. We are committed to providing equal opportunities for all employees and applicants, regardless of race, color, religion, sex, gender, pregnancy, childbirth and related conditions, national origin, age, physical and mental disability, marital status, sexual orientation, genetic information, military or veteran status, citizenship, or other status or characteristic protected by applicable law. We strive to create a culture that celebrates our differences and promotes fairness and inclusivity in all aspects of our business.

FCO (For San Francisco Candidates only):

Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.

CCPA Employee Privacy Policy (For California Candidates Only):

https://www.astound.com/wp-content/uploads/2023/09/CCPA-Employee-Privacy-Notice.pdf