1

Edr Engineer Jobs in Utah (NOW HIRING)

Implement and maintain endpoint security and compliance through Intune / MDM and EDR platforms ... Engineer * Hands-on experience with Fortinet products, GCP / AWS security, and cloud security ...

... Engineer. The selected candidate will join our Information Services team and have an important role ... Expert-level knowledge of SIEM (Splunk, Sentinel), EDR/XDR, Firewalls, and Vulnerability Scanners ...

... Engineering and Continuous Monitoring * Operate and mature the detection stack (SIEM, SOAR, EDR, NDR): define and maintain baselines, correlation rules, alert thresholds, detection use cases, and ATT ...

New

Showing results 41-60

Edr Engineer information

What is an EDR engineer?

EDR Engineers are cybersecurity professionals who specialize in implementing, managing, and optimizing Endpoint Detection and Response (EDR) solutions for organizations. Their main responsibilities include monitoring endpoints for suspicious activities, investigating security incidents, and responding to threats in real-time. EDR Engineers work closely with security teams to ensure robust protection against malware, ransomware, and other cyber threats by leveraging advanced detection and automated response tools. They also contribute to improving security policies and practices based on threat intelligence gathered from endpoints.

What are the key skills and qualifications needed to thrive as an EDR engineer, and why are they important?

To thrive as an EDR Engineer, you need a solid background in cybersecurity, threat detection, incident response, and typically a degree in computer science or a related field. Familiarity with endpoint detection and response (EDR) tools such as CrowdStrike, SentinelOne, or Carbon Black, along with certifications like CEH or CISSP, is highly valuable. Strong analytical thinking, problem-solving abilities, and effective communication skills help EDR Engineers collaborate across teams and respond swiftly to threats. These skills and qualifications are essential to proactively identify, investigate, and mitigate security incidents, ensuring the organization's digital assets remain protected.

What are some common challenges EDR engineers face when integrating endpoint detection and response solutions across diverse IT environments?

EDR Engineers often encounter challenges when deploying and managing endpoint detection and response solutions in organizations with a mix of legacy systems, various operating systems, and remote or hybrid workforces. Compatibility issues, ensuring consistent policy enforcement, and maintaining real-time visibility across all endpoints can be complex tasks. Collaboration with IT, security teams, and end-users is essential to troubleshoot deployment issues, minimize false positives, and optimize system performance. Staying up-to-date with evolving threats and regularly tuning the EDR solution are also key aspects of the role.

What is the difference between Edr Engineer vs Edr Technician?

AspectEdr EngineerEdr Technician
CredentialsBachelor's degree in electrical, electronics, or related engineering fields; certifications like Cisco or CompTIA are commonTechnical diploma or associate degree; relevant certifications may include Cisco or CompTIA
Work EnvironmentDesign, develop, and troubleshoot EDR systems; often involved in project planning and system integrationInstall, maintain, and repair EDR hardware and software; hands-on technical support
Employer & Industry UsageUsed by network security firms, telecom companies, and large enterprises for security and data recoveryEmployed in similar settings for operational support and system maintenance

In summary, Edr Engineers focus on designing and developing EDR systems, requiring higher-level engineering skills and credentials. Edr Technicians handle installation and maintenance, with more hands-on technical tasks. Both roles are essential in the cybersecurity and data recovery industry, but they differ in responsibilities and required qualifications.

What are popular job titles related to Edr Engineer jobs in Utah?

For Edr Engineer jobs in Utah, the most frequently searched job titles are:

What job categories do people searching Edr Engineer jobs in Utah look for?

The top searched job categories for Edr Engineer jobs in Utah are:

What cities in Utah are hiring for Edr Engineer jobs?

Cities in Utah with the most Edr Engineer job openings:

Cybersecurity Engineer - Insider Risk and Forensic Analysis

Enterprise Technology Operations

Midvale, UT • Hybrid

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 14 days ago


Job description

Zions Bancorporation is transforming what it means to work for a financial institution. With a commitment to technology and innovation, we have been providing our community, clients, and colleagues with the best experience possible for over 150 years. Help us transform our workforce of the future, today.

We are currently looking for a Cybersecurity Engineer to join the Zions Bancorporation.  As part of the Enterprise Information Security team, this Cybersecurity Engineer (Insider Risk and Forensic Analysis) will have the opportunity to act as a key contributor in the CSOC's growth and evolution, actively improving our insider risk, DLP, and digital forensics capabilities.

Responsibilities:

  • Serve as a subject matter expert in various enterprise cybersecurity tools and processes, including SIEM, EDR, and forensics platforms.
  • Develop and implement monitoring use cases, cyber insider risk procedures, playbooks, and other technical documentation.
  • Collaborate with Enterprise Cybersecurity Architecture and technology teams on monitoring and alerting infrastructure, processes, and tools.
  • Train, mentor, and guide other team members on cyber incident response practices and tooling.
  • Respond to insider risk incidents, serving as an escalation point for high-priority or highly complex cases.
  • Handle sensitive employee information and internal investigations.
  • Perform digital forensic collections and investigations for the organization.
  • Monitor and provide tuning feedback for our cybersecurity toolset.
  • Other duties as assigned.

Requirements:

  • 2 plus years of progressive technical experience in one or more technical cybersecurity domains with a preferred focus on digital forensics or equivalent education.
  • Experience with digital forensic evidence collection and investigations.
  • Experience with insider risk investigations.
  • Experience with resolving DLP incidents.
  • Hands-on technical experience with one or more industry-standard digital forensic products.
  • Hands-on technical experience with one or more commercial SIEM products, which should include familiarity with defining and writing alert conditions/use cases in addition to daily use for investigating incidents.
  • Working knowledge of common attack vectors, different classes of attacks (e.g., passive, active, insider, close-in, distributed, etc.) and general attack stages (e.g., foot printing and scanning, enumeration, gaining access, escalation or privileges, maintaining access, network exploitation, covering tracks, etc.).
  • Effective interpersonal and written communication skills, including the ability to produce technical documentation.
  • Requires a Bachelor's in Information Technology, Computer Science, Business or a related technical field. A combination of education and experience may meet qualifications.

Plus:

  • Experience with Financial Institution processes, regulations, and technologies is highly preferred.
  • Technical familiarity with networking concepts, architectures, and tools, including network traffic analysis, proxies, functionality of network switches, load balancers, routers, and firewalls.
  • Knowledge of system administration concepts for Windows and UNIX/Linux operating systems.
  • Development experience with scripting languages such as Python, JavaScript, PowerShell, Bash, etc., is a plus.
  • Experience with threat hunting methods and approaches is a plus.
  • Technical certifications such as GCFE, GCFA, CCCE, CFCE, or 13Cubed certifications are a plus.

Location:

This position has a hybrid work from home schedule with a minimum of three days per week in the office at the new Zions Technology Center in Midvale, UT

The Zions Technology Center is a 400,000-square-foot technology campus in Midvale, Utah. Located on the former Sharon Steel Mill superfund site, the sustainably built campus is the company's primary technology and operations center. This modern and environmentally friendly technology center enables Zions to compete for the best technology talent in the state while providing team members with an exceptional work environment with features such as:

  • Electric vehicle charging stations and close proximity to Historic Gardner Village UTA TRAX station.
  • At least 75% of the building is powered by on-site renewable solar energy.
  • Access to outdoor recreation, parks, trails, shareable bikes and locker rooms.
  • Large modern cafe with a healthy and diverse menu.
  • Healthy indoor environment with ample natural light and fresh air.
  • LEED-certified sustainable building that features include the use of low VOC-emitting construction materials.

Benefits:   

  • Medical, Dental and Vision Insurance - START DAY ONE!   
  • Life and Disability Insurance, Paid Parental Leave and Adoption Assistance
  • Health Savings (HSA), Flexible Spending (FSA), and dependent care accounts
  • Paid Training, Paid Time Off (PTO) and 11 Paid Federal Holidays
  • 401(k) plan with company match, Profit Sharing, competitive compensation in line with work experience
  • Mental health benefits including coaching and therapy sessions
  • Tuition Reimbursement for qualifying employees
  • Employee Ambassador preferred banking products

#dice

Illusion