1

Edr Engineer Jobs in Michigan (NOW HIRING)

Integrate AI solutions with enterprise tools and data sources such as SIEM, EDR, identity, cloud ... Strong programming skills, preferably in Python .Experience with AI/agent frameworks or tools such ...

Senior Information Security Engineer

Troy, MI · Hybrid

$101K - $137K/yr

SIEM & SOAR Engineering: Configure log ingestion pipelines, write advanced detection queries ... Endpoint Detection & Response (EDR) Administration: Deploy and manage global endpoint agents ...

Senior Information Security Engineer

Troy, MI · On-site

$101K - $137K/yr

SIEM & SOAR Engineering: Configure log ingestion pipelines, write advanced detection queries ... Endpoint Detection & Response (EDR) Administration: Deploy and manage global endpoint agents ...

Systems Engineer

Coopersville, MI · On-site

$82K - $92K/yr

Systems Engineer Professional Services / Managed IT Services Locations: Coopersville, MI 49404 or ... Understanding of cybersecurity practices and technologies including EDR, MFA, and common compliance ...

Systems Engineer

Coopersville, MI · On-site

$82K - $92K/yr

Systems Engineer Professional Services / Managed IT Services Locations: Coopersville, MI 49404 or ... Understanding of cybersecurity practices and technologies including EDR, MFA, and common compliance ...

... Response (EDR), Network Detection and Response (NDR), Security Orchestration, Automation and ... engineering, and AI-enabled security operations.What You'll DoMonitor, triage, and investigate ...

... of engineers to ensure protection against modern threats while maintaining business productivity. Responsibilities : • Own and manage enterprise endpoint security platforms including EDR/XDR ...

Data Engineer with DevOps Skill

Dearborn, MI · On-site

$105K - $126K/yr

DataOps Engineer Location; Hybrid work Dearborn, MI (starting September 1st, will be moving to 4 ... EDR) data, and Security Information and Event Management (SIEM) data (e.g., Google Security ...

... of engineers and collaborating with SOC, IT, and infrastructure teams. Responsibilities : • Own and manage enterprise endpoint security platforms including EDR/XDR, endpoint protection, device ...

next page

Showing results 1-20

Edr Engineer information

What is an EDR engineer?

EDR Engineers are cybersecurity professionals who specialize in implementing, managing, and optimizing Endpoint Detection and Response (EDR) solutions for organizations. Their main responsibilities include monitoring endpoints for suspicious activities, investigating security incidents, and responding to threats in real-time. EDR Engineers work closely with security teams to ensure robust protection against malware, ransomware, and other cyber threats by leveraging advanced detection and automated response tools. They also contribute to improving security policies and practices based on threat intelligence gathered from endpoints.

What are the key skills and qualifications needed to thrive as an EDR engineer, and why are they important?

To thrive as an EDR Engineer, you need a solid background in cybersecurity, threat detection, incident response, and typically a degree in computer science or a related field. Familiarity with endpoint detection and response (EDR) tools such as CrowdStrike, SentinelOne, or Carbon Black, along with certifications like CEH or CISSP, is highly valuable. Strong analytical thinking, problem-solving abilities, and effective communication skills help EDR Engineers collaborate across teams and respond swiftly to threats. These skills and qualifications are essential to proactively identify, investigate, and mitigate security incidents, ensuring the organization's digital assets remain protected.

What are some common challenges EDR engineers face when integrating endpoint detection and response solutions across diverse IT environments?

EDR Engineers often encounter challenges when deploying and managing endpoint detection and response solutions in organizations with a mix of legacy systems, various operating systems, and remote or hybrid workforces. Compatibility issues, ensuring consistent policy enforcement, and maintaining real-time visibility across all endpoints can be complex tasks. Collaboration with IT, security teams, and end-users is essential to troubleshoot deployment issues, minimize false positives, and optimize system performance. Staying up-to-date with evolving threats and regularly tuning the EDR solution are also key aspects of the role.

What is the difference between Edr Engineer vs Edr Technician?

AspectEdr EngineerEdr Technician
CredentialsBachelor's degree in electrical, electronics, or related engineering fields; certifications like Cisco or CompTIA are commonTechnical diploma or associate degree; relevant certifications may include Cisco or CompTIA
Work EnvironmentDesign, develop, and troubleshoot EDR systems; often involved in project planning and system integrationInstall, maintain, and repair EDR hardware and software; hands-on technical support
Employer & Industry UsageUsed by network security firms, telecom companies, and large enterprises for security and data recoveryEmployed in similar settings for operational support and system maintenance

In summary, Edr Engineers focus on designing and developing EDR systems, requiring higher-level engineering skills and credentials. Edr Technicians handle installation and maintenance, with more hands-on technical tasks. Both roles are essential in the cybersecurity and data recovery industry, but they differ in responsibilities and required qualifications.

What job categories do people searching Edr Engineer jobs in Michigan look for?

The top searched job categories for Edr Engineer jobs in Michigan are:

What cities in Michigan are hiring for Edr Engineer jobs?

Cities in Michigan with the most Edr Engineer job openings:

Infographic showing various Edr Engineer job openings in Michigan as of July 2026, with employment types broken down into 15% As Needed, and 85% Full Time. Highlights an 100% In-person job distribution.

Security Engineer - Security Operations & Incident Response

Grand Rapids, MI • On-site

Sunmed Llc
Medical Equipment and Supplies Manufacturing • 51 - 200 employees

$100 - $125/hr

Other

Medical, Dental, Vision, Retirement, PTO

Posted 4 days ago


Job description

If you are unable to complete this application due to a disability, contact this employer to ask for an accommodation or an alternative application process.

Security Engineer – Security Operations & Incident Response

Full Time Grand Rapids, MI, US

2 days ago Requisition ID: 1906

COMPANY DESCRIPTION

At AirLife, we are dedicated to improving the quality of every breath. Excellence with Every Breath is not just a tag line, but the way we work and take care of our customers. With a mindset to evolve, innovate, and grow, we are a premier manufacturer of the highest-quality and market-leading breathing consumables. This growth philosophy has positioned us to increase our global footprint and business reach, impacting even more people around the world. Our expanding family of the most trusted brands offers a product portfolio that spans the continuum of care from first responder to home care, with safety, patient comfort, and clinical performance in mind. Collective expertise allows us to provide quality products and experiences to our patients, customers, and our people. Our values of Customer first, Differentiate with our People, Bias for Action, Continuous Improvement and Accountability define who we are and how we work. Join us!

POSITION SUMMARY

The Security Engineer – Security Operations & Incident Response is responsible for monitoring, triaging, and investigating security events across AirLife’s global environment; leading incident response, containment, and recovery efforts; and continuously improving detection rules, alert quality, and security automation. This role operates and integrates AirLife’s SIEM, EDR, vulnerability management, and cloud security tooling, partners with AirLife’s managed detection and response provider (Arctic Wolf) and cross-functional Infrastructure, Cloud, IT, and Application teams on remediation, and helps mature AirLife’s security operations and incident response capabilities.

POSITION QUALIFICATIONS

Knowledge, Skills, & Abilities:

  • Strong understanding of security operations concepts, including SIEM platforms, log analysis, and security alert triage.
  • Hands-on experience leading incident response activities — detection, containment, eradication, recovery, and post-incident review — in an enterprise environment.
  • Experience with detection engineering and alert-rule tuning, including collaborating with an MDR/MSSP provider on tuning and escalation (Arctic Wolf experience preferred).
  • Practical knowledge of EDR/endpoint protection platforms (Microsoft Defender preferred), vulnerability management tooling, and cloud security posture management.
  • Experience developing and maintaining incident response playbooks, runbooks, and security operations procedures.
  • Understanding of Zero Trust architecture principles and their application to security operations and detection design.
  • Knowledge of security compliance frameworks (NIST, CIS Controls, ISO 27001, GDPR) with practical application to security operations.
  • Familiarity with security automation/orchestration concepts to streamline detection and response workflows.
  • Working knowledge of Microsoft Entra ID and Active Directory, including how identity signals inform incident investigation.
  • Ability to manage multiple concurrent incidents, projects, and operational tasks in a dynamic environment (Smartsheet experience preferred).
  • Strong root cause analysis and technical troubleshooting skills.
  • Experience with backup and disaster recovery systems (Rubrik/Azure preferred) as part of recovery operations.
  • Experience with KnowBe4 security awareness and phishing simulation administration preferred.

Level of Experience:

  • Minimum of 3–5 years of professional IT experience, including 2+ years in a security operations, incident response, or SOC-focused role.
  • Experience in a manufacturing, healthcare, or other regulated enterprise environment preferred.

Level of Education:

  • Bachelor’s Degree in Cybersecurity, Information Technology, Computer Science, or related field or equivalent experience.
  • Relevant security operations/incident response certification preferred (CompTIA Security+, GCIH, GCFA, or equivalent).

Travel:

Up to 10% as required by the business.

ESSENTIAL DUTIES AND RESPONSIBILITIES

  • Monitor, triage, and investigate security events and alerts generated by SIEM, EDR, and other security tooling across AirLife’s environment.
  • Lead incident response activities — detection, containment, eradication, and recovery — and facilitate post-incident reviews to capture lessons learned and drive corrective actions.
  • Improve detection rules, alert quality, and response playbooks to reduce false positives and improve mean time to detect and respond.
  • Operate, configure, and integrate SIEM, EDR, vulnerability management, and cloud security tools to strengthen AirLife’s security posture.
  • Develop and maintain incident response playbooks, runbooks, and standard operating procedures for common threat scenarios.
  • Partner with Arctic Wolf (AirLife’s MDR provider) on alert tuning, escalation handling, and investigation of identified threats.
  • Partner with Infrastructure, Cloud, IT, and Application teams to remediate vulnerabilities, coordinate containment actions, and implement security hardening measures.
  • Support AirLife’s vulnerability management program, including scan review, prioritization, and remediation tracking.
  • Track operational security metrics (e.g., alert volume, dwell time, time to remediate) and identify recurring risks or trends for leadership reporting.
  • Participate in an on-call or escalation rotation to support after-hours incident response, as applicable.
  • Support KnowBe4 security awareness and phishing simulation administration in coordination with the Security GRC Engineer.
  • Contribute to backup and disaster recovery operations (Rubrik/Azure) as part of incident recovery efforts.
  • Maintain documentation of security operations architecture, detection logic, and incident response procedures.

OTHER RESPONSIBILITIES

  • Uphold and embody AirLife's values in all aspects of work.
  • Demonstrate accuracy and thoroughness in daily work; look for ways to improve and promote quality & safety.
  • Inspire the trust of others; treat people with respect and dignity and embrace the value of diversity.
  • Use time efficiently; perform job accurately, thoroughly, and conserve Company resources to improve profits.
  • Contribute to building and maintaining a positive team environment.
  • Assure all policies and guidelines are implemented and followed.

QUALITY POLICY

At AirLife, Quality is our promise. It is our commitment to customer satisfaction and our dedication to product excellence in an evolving global healthcare market. This promise is kept through a continuously improving and effective Quality Management System and compliance to Regulatory Requirements.

DEIA STATEMENT

At AirLife, we are committed to building a diverse workforce and an inclusive workplace that reflects the communities and customers we serve. We believe our philosophy on Diversity, Equity, Inclusion, and Advancement (DEIA) encourages excellence and equips us to serve an evolving global marketplace.

Please note: The responsibilities outlined above are not exhaustive and may evolve over time. The role holder may be required to undertake additional duties as reasonably expected to meet the needs of the company.

AirLife offers a comprehensive benefits package, including medical, dental, and vision coverage, 401(k), paid time off, paid holidays, bereavement leave, Employee Assistance Program resources, and medical leave benefits, subject to applicable eligibility requirements. Certain positions may also be eligible for bonus, commission, or other incentive compensation.

#J-18808-Ljbffr

Sunmed logo

About Sunmed

Sourced by ZipRecruiter

Industry

Medical equipment and supplies manufacturing

Company size

51 - 200 Employees

Headquarters location

Grand Rapids, MI, US

Year founded

1981