2

Remote Cortex Xdr Jobs in Texas (NOW HIRING)

Preferred Experience with Cortex XDR and/or XSIAM (XQL-based detection and REST API interaction is ... remote friendly work environment, as well as training opportunities to expand your skill set (to ...

Preferred • Experience with Cortex XDR and/or XSIAM (XQL-based detection and REST API interaction ... remote friendly work environment, as well as training opportunities to expand your skill set (to ...

Remote Cortex Xdr information

What are the key skills and qualifications needed to thrive as a remote Cortex XDR specialist?

To thrive as a Remote Cortex XDR Specialist, you need strong cybersecurity expertise, experience with endpoint detection and response (EDR) tools, and relevant certifications like CompTIA Security+ or CISSP. Proficiency with the Palo Alto Cortex XDR platform, SIEM systems, and scripting languages such as Python or PowerShell is typically required. Analytical thinking, attention to detail, and effective communication skills help specialists investigate threats and coordinate with teams. These competencies are vital for timely threat detection, incident response, and maintaining robust security for distributed environments.

What are some typical challenges faced by remote Cortex XDR specialists, and how can they be addressed?

Remote Cortex XDR analysts often face challenges such as maintaining effective communication with on-site teams, staying updated on evolving threats, and managing alerts across distributed environments. To address these, it's important to establish clear communication channels with security and IT teams, participate in regular briefings, and leverage automation features within Cortex XDR to reduce alert fatigue. Continuous learning and collaboration through virtual meetings and threat intelligence sharing can also help analysts stay ahead of new security risks.

What is a remote Cortex XDR specialist?

A Remote Cortex XDR specialist is a cybersecurity professional who manages, monitors, and responds to threats using Palo Alto Networks' Cortex XDR platform from a remote location. Cortex XDR is an extended detection and response solution that integrates data from various sources to detect and address security incidents. Remote specialists use this tool to investigate alerts, perform threat hunting, and coordinate incident response without being physically present in an organization's office. Their expertise helps organizations strengthen their security posture while allowing for flexible, remote work arrangements.

What is the difference between Remote Cortex Xdr vs Remote Security Analyst?

AspectRemote Cortex XdrRemote Security Analyst
CertificationsRelevant cybersecurity certifications (e.g., CompTIA Security+, CEH)Similar certifications often required
Work EnvironmentSecurity platform management, threat detection, incident responseMonitoring security alerts, analyzing threats, reporting
Industry UsageUsed by cybersecurity teams for endpoint detection and responseEmployed across various industries for security monitoring

Remote Cortex Xdr specialists focus on managing and utilizing the Cortex XDR platform for threat detection and response, while Remote Security Analysts monitor security alerts and analyze threats across systems. Both roles require cybersecurity certifications and work in similar environments, but their core responsibilities differ: one manages security tools, the other analyzes security data.

What are the most commonly searched types of Cortex Xdr jobs in Texas? The most popular types of Cortex Xdr jobs in Texas are:
What are popular job titles related to Remote Cortex Xdr jobs in Texas? For Remote Cortex Xdr jobs in Texas, the most frequently searched job titles are:
What job categories do people searching Remote Cortex Xdr jobs in Texas look for? The top searched job categories for Remote Cortex Xdr jobs in Texas are:
What cities in Texas are hiring for Remote Cortex Xdr jobs? Cities in Texas with the most Remote Cortex Xdr job openings:

Detection Engineer - REMOTE

Binary Defense

Houston, TX • Remote

Other

Medical, Dental, Vision, Retirement

Posted 6 days ago


Job description

Description


Binary Defense is seeking  an experienced and motivated Detection Engineer to join our growing Detection Engineering team. You'll be a hands-on contributor, responsible for building, deploying, and maintaining high-quality detections across a variety of platforms, including SIEMs, EDRs, and cloud environments.
 

Our team operates detection engineering as code, and we are looking for someone who thrives in a modern, automation-driven environment. You should have a strong grasp of threat modeling, detection choke points, and the ability to abstract away UI dependencies using Python and REST APIs. This is an opportunity to contribute to a mature detection pipeline focused on coverage, efficacy, and scalability.


Responsibilities


Design and implement detections using a detection-as-code approach across SIEM (e.g., Splunk, Sentinel, Chronicle) and EDR platforms (e.g., CrowdStrike, Cortex XDR, SentinelOne).

Develop and operationalize detection logic in YAML/Sigma/YARA-L, including documentation, tuning, testing, and version control.

Leverage APIs to automate rule deployment, validation, and telemetry inspection-reducing reliance on GUIs.

Collaborate with Threat Intel, Incident Response, and Cloud Security teams to create threat-informed detections based on real-world attack behaviors.

Contribute to threat modeling efforts to identify high-value detection opportunities and coverage gaps.

Analyze telemetry sources (e.g., Windows Event Logs, Sysmon, cloud logs, network traffic) to identify detection use cases and ensure telemetry readiness.

Participate in adversary simulation and detection validation efforts using tools such as Atomic Red Team, Caldera, or custom scripting.

Support documentation of detection logic, coverage rationale, and response guidance.

Actively contribute to continuous improvement of detection engineering workflows, tooling, and standards.

Requirements

2-5+ years of hands-on experience in detection engineering, threat hunting, or incident response.

Strong proficiency with Python and REST APIs for interacting with EDR/SIEM platforms and automating detection workflows.

Demonstrated experience writing, tuning, and validating detection logic in at least one of: Sigma, YARA-L, Splunk SPL, KQL, XQL.

Experience with telemetry sources including Windows security logs, Sysmon, firewall/proxy logs, and cloud platform audit logs.

Familiarity with MITRE ATT&CK and how to map detections to adversary techniques and detection choke points.

Ability to quickly learn new security technologies and adapt detection strategies accordingly.

Comfortable working in a fast-paced environment where threat-driven detection and rapid iteration are the norm.


Preferred


Experience with Cortex XDR and/or XSIAM (XQL-based detection and REST API interaction is a major plus).

Experience contributing to a detection-as-code pipeline (e.g., Git-based workflows, rule validation, CI/CD).

Exposure to multi-tenant or MDR environments and scaling detections across customer environments.

Familiarity with Sigma to YARA-L translation, or with detection rule normalization and enrichment workflows.

Experience in IR consulting and working across diverse EDR/SIEM stacks.


About Binary Defense


Binary Defense is a leading Managed Detection and Response (MDR) provider, trusted by hundreds of organizations to protect what matters most. Our team of SOC analysts, threat hunters, detection engineers, and threat researchers work around the clock to deliver proactive, risk-focused security outcomes. We bring the attacker's mindset to defense, helping clients detect threats earlier, respond faster, and continuously improve their security posture.


For more information, visit our website, check out our blog, or follow us on LinkedIn.


Binary Defense offers competitive medical, dental and vision coverage for employees and dependents, a 401k match which vests every payroll, a flexible and remote friendly work environment, as well as training opportunities to expand your skill set (to name a few!). If you're interested in joining a growing team with great perks, we encourage you to apply!