1

Mandiant Jobs (NOW HIRING)

FireEye/Mandiant Email Security (NX/EX or equivalent threat detection platforms). Engineer and support enterprise email security solutions, including: * Proofpoint (Email Protection, TAP, DLP, Threat ...

Cyber FinCrime Analyst

Washington, DC · On-site

$85K - $141K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

Perform cryptocurrency tracing and blockchain analysis using tools such as Chainalysis, TRM Labs, Elliptic, Flashpoint, VirusTotal, Mandiant, and other cyber threat intelligence platforms to identify ...

Operate andoptimizebreach and attack simulation platforms (such as Mandiant Security Validation,AttackIQ, orSafeBreach) to provide continuous, automated validation of security controls. * Define ...

Showing results 21-40

Mandiant information

See salary details

$23

$69

$151

How much do mandiant jobs pay per hour?

As of Aug 14, 2026, the average hourly pay for mandiant in the United States is $69.05, according to ZipRecruiter salary data. Most workers in this role earn between $30.29 and $133.17 per hour, depending on experience, location, and employer.

Is Mandiant a good place to work?

Mandiant is known for its cybersecurity focus and offers roles such as security analysts and incident responders. Employees often cite a collaborative environment, opportunities for skill development, and exposure to advanced threat intelligence tools. As with many tech companies, work-life balance and company culture can vary by team and location.

What is a Mandiant?

A Mandiant job typically refers to roles within Mandiant, a cybersecurity company known for threat intelligence, incident response, and cybersecurity consulting. Employees at Mandiant work to protect organizations from cyber threats by investigating incidents, analyzing threats, and improving security strategies. Positions range from security consultants to intelligence analysts and engineers, requiring expertise in cybersecurity, digital forensics, and threat intelligence.

What are the key skills and qualifications needed to thrive in the Mandiant position, and why are they important?

To thrive in a role at Mandiant, candidates typically need strong expertise in cybersecurity, incident response, and threat intelligence, often supported by a degree in computer science, information security, or equivalent experience. Hands-on familiarity with tools such as SIEM platforms, endpoint detection and response solutions, and certifications like CISSP, CEH, or GIAC are commonly required. Analytical thinking, effective communication, and teamwork differentiate outstanding professionals in this field. These skills and qualities are critical to accurately identify, investigate, and mitigate sophisticated cyber threats in high-pressure situations.

What are the typical day-to-day activities for someone working in a cybersecurity role at Mandiant?

Professionals working at Mandiant can expect to spend their days investigating cybersecurity incidents, conducting threat analyses, and collaborating with clients to improve their security posture. Daily tasks often include analyzing network traffic, responding to ongoing security breaches, preparing detailed reports, and advising clients on mitigation strategies. Team members work closely with other cybersecurity experts, client IT teams, and occasionally law enforcement to gather intelligence and coordinate defense efforts. The role offers a highly dynamic environment where adaptability and continual learning are essential, making each workday both challenging and rewarding.

What cities are hiring for Mandiant jobs?

Cities with the most Mandiant job openings:

What are the most commonly searched types of Mandiant jobs?

The most popular types of Mandiant jobs are:

What states have the most Mandiant jobs?

States with the most job openings for Mandiant jobs include:

Infographic showing various Mandiant job openings in the United States as of August 2026, with employment types broken down into 94% Full Time, 1% Part Time, and 5% Contract. Highlights an 81% Physical, 4% Hybrid, and 15% Remote job distribution, with an average salary of $143,630 per year, or $69.1 per hour.

Security Engineer

1 point system

Charlotte, NC • On-site

Contractor

Re-posted 4 days ago


Job description

Requirement - Security Engineer

Location- Charlotte, NC (CIC)

Contract W2

Look for security engineer with any of 2 skills

Top Three Skills:

  • Proof Point Knowledge
  • CrowdStrike Knowledge
  • FireEye Knowledge

 Job Description:

  • Application Support and Engineering
  • Assist in the development of automation and integrations to enhance operational efficiency, telemetry analysis, and threat response capabilities across endpoint and email security systems.
  • Provide security consulting on medium to large-scale projects to ensure alignment with corporate security policies, standards, and architecture.
  • Apply subject matter expertise in endpoint and email security to implement controls supporting availability, integrity, confidentiality, threat modeling, monitoring, access management, and business continuity.

Engineer and support for both Endpoint and Email security platforms across Windows, macOS, and Linux environments, including:
Endpoint Applications:

  • CrowdStrike
  • Microsoft Defender
  • BitLocker
  • Eclypsium
  • Symantec Endpoint Protection
  • WinMagic, SecureDoc

Email Security Applications:

  • Proofpoint (Email Protection, TAP, DLP, Threat Response)
  • FireEye/Mandiant Email Security (NX/EX or equivalent threat detection platforms).

Engineer and support enterprise email security solutions, including:

  • Proofpoint (Email Protection, TAP, DLP, Threat Response)
  • FireEye/Mandiant Email Security (NX/EX or equivalent threat detection platforms).
  • Assist in the development of automation and integrations to enhance operational efficiency, telemetry analysis, and threat response capabilities across endpoint and email security systems.
  • Provide security consulting on medium to large-scale projects to ensure alignment with corporate security policies, standards, and architecture.
  • Apply subject matter expertise in endpoint and email security to implement controls supporting availability, integrity, confidentiality, threat modeling, monitoring, access management, and business continuity.

Threat Detection, Monitoring and Incident Response:

  • Lead and participate in endpoint and email-related security incident response, including investigation, containment, and recovery
  • Investigate phishing, malware delivery, and email-based attacks, including analysis of headers, payloads, URLs, and attachments
  • Conduct technical investigations and post-incident digital forensics to identify root causes and recommend mitigation strategies
  • Review and correlate endpoint telemetry, email logs, and security alerts to identify anomalies and threats
  • Identify vulnerabilities, perform risk assessments, and evaluate remediation strategies across endpoint and email ecosystems
  • Collaborate with incident response, threat intelligence, SOC, and infrastructure teams to investigate and remediate threats
  • Perform advanced troubleshooting and root cause analysis across endpoint and email security platforms
  • Continuously improve security posture through policy tuning, detection engineering, and proactive threat hunting

Collaboration and Leadership:

  • Mentor junior engineers and analysts, providing technical guidance and fostering professional development
  • Partner with peers, colleagues, and leadership to resolve issues, drive initiatives, and achieve team goals
  • Coordinate with email security teams, SOC, and messaging infrastructure teams to ensure cohesive threat defense
  • Documentation, Standards and Continuous Improvement
  • Create and maintain technical documentation, security standards, and training materials
  • Translate complex security requirements into actionable, scalable technical solutions
  • Stay current with emerging threats, particularly phishing, business email compromise (BEC), and advanced malware campaigns
  • Promote a security-first mindset and contribute to a culture of continuous improvement and operational excellence

In this contingent resource assignment, candidates may:

  • Consult on complex initiatives with broad impact and large-scale planning for Information Security Engineering.
  • Review and analyze complex multi-faceted, larger scale or longer-term Information Security Engineering challenges that require in-depth evaluation of multiple factors including intangibles or unprecedented factors.
  • Contribute to the resolution of complex and multi-faceted situations requiring solid understanding of the function, policies, procedures, and compliance requirements that meet deliverables.
  • Strategically collaborate and consult with client personnel.

Required Qualifications:

  • 4 plus years of Information Security Engineering experience, or equivalent demonstrated through work experience, training, military experience, or education
  • 2 plus years of Windows Administration experience
  • 2 plus years of hands-on experience with EDR tools (CrowdStrike, Defender, etc.)
  • Experience supporting enterprise email security platforms (Proofpoint, FireEye, or similar)
  • 2 plus years of PowerShell or Python experience
  • 2 plus years of SDLC experience
  • 1 plus year of Splunk experience
  • Experience analyzing email threats (phishing, malware, URL-based attacks)
  • Flexibility to support implementations outside of standard business hours
  • Ability to deliver high-quality technical artifacts and engineering solutions aligned with business objectives
  • 5 plus years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work or consulting experience, training, military experience, education.

Desired Qualifications:

  • Experience working with REST APIs
  • Experience with Network Routing
  • Bachelor’s or higher degree in Computer Science, Information Security, or related field
  • Certifications such as CISSP, GIAC, OSCP, or Microsoft Certified: Security Operations Analyst
  • Familiarity with cloud security (AWS, Azure, GCP) and hybrid environments
  • Experience integrating email security, EDR/XDR, and SIEM platforms
  • Knowledge of Zero Trust architecture, secure device onboarding, and network segmentation
  • Understanding of security frameworks (e.g., NIST, ISO 27001, MITRE ATT&CK)
  • Experience with phishing detection, email authentication (DMARC, DKIM, SPF), and BEC prevention strategies
  • Ability to collaborate across technical and non-technical teams and clearly document technical requirements.