Skip to content
Remote.co home
  • Remote
    JOBS
  • Remote
    COMPANIES
  • Remote Work
    RESOURCES
    • Remote Work Articles
    • Remote Worker Q&A
  • Get Started
  • Log In
  • Home
  • Remote Jobs
  • Senior Endpoint Security Engineer
remote-co-logo

Senior Endpoint Security Engineer

Barracuda

ApplySave Job
  • Date Posted

    Today

    New!
  • Remote Work Level

    100% Remote

  • Location

    Remote, US Nationalicon-usa.png

  • Job Schedule

    Full-Time, Alternative Schedule

  • Salary

    $110,000 - $135,000 ANNUALLY

  • Benefits

    Professional/Career Development 401k Matching/Retirement Savings Health/Medical Insurance Flexible/Unlimited PTO Health & Wellness Programs

  • Categories

    Cyber Security,  Tech Support,  Consulting,  Product Manager,  Project Manager,  Python

  • Job Type

    Employee

  • Career Level

    Experienced

  • Travel Required

    No Specification

  • Education Level

    Bachelor's/Undergraduate Degree, Professional Certification

About the Role

Title: Senior Endpoint Security Engineer

Location: Remote 

Job Description:

Come join our passionate team! Barracuda is a leading cybersecurity company providing complete protection against complex threats. Our platform protects email, data, applications, and networks with innovative solutions, and a managed XDR service, to strengthen cyber resilience. Hundreds of thousands of IT professionals and managed service providers worldwide trust us to protect and support them with solutions that are easy to buy, deploy, and use.

We know a diverse workforce adds to our collective value and strength as an organization.  Barracuda Networks is proud to be an Equal Opportunity Employer, committed to equal employment opportunity and equitable compensation regardless of race, gender, religion, sex, sexual orientation, national origin, or disability.

Envision Yourself at Barracuda:

We are seeking a Senior Endpoint Security & IR Engineer to join our incident response team. You will lead management of our SentinelOne XDR platform, complex investigations across multiple client environments, drive rapid containment of active threats, and serve as a trusted advisor to clients during their most critical security events. This role combines deep technical expertise with client-facing communication skills in a fast-paced, multi-tenant MSSP environment.

You will work closely with our Cyber Concierge, Threat Analysts and Automation teams to continuously improve our response capabilities and protect our clients from sophisticated adversaries.

What You’ll be Working On:

  • Expert knowledge and experience in SentinelOne – Key Requirement

  • Lead end-to-end incident response engagements across diverse client environments, from initial triage through remediation and lessons learned

  • Perform host-based forensics using Binalyze AIR for remote evidence acquisition, triage, and analysis at scale

  • Design custom detection rules within SentinelOne and fine tune protection policies.

  • Proven experience in windows, mac and linux environments

  • Investigate alerts and threats detected by SentinelOne, including Deep Visibility hunting, threat timeline reconstruction, and MITRE ATT&CK mapping

  • Analyze Microsoft 365 security incidents including business email compromise, OAuth abuse, mailbox rule manipulation, and Azure AD/Entra ID attacks

  • Conduct log analysis and threat hunting in Elastic to identify indicators of compromise, lateral movement, and data exfiltration

  • Leverage Databricks for large-scale log analytics, anomaly detection, and threat hunting across aggregated client telemetry

  • Document findings in clear, executive-ready incident reports tailored to both technical and non-technical stakeholders

  • Participate in a 24/7 on-call rotation

Automation & Detection Engineering

  • Develop and maintain Python scripts for evidence collection, log parsing, IOC enrichment, and automated response actions

  • Build and optimize automated response workflows in Tines to accelerate containment and MTTR

  • Create and tune detection rules in Elastic and SentinelOne based on investigative findings and emerging threat intelligence

  • Integrate tooling across the security stack to streamline IR workflows and reduce manual effort.

Client Engagement & Service Delivery

  • Serve as the primary IR point of contact for client stakeholders during active incidents

  • Conduct client-facing incident briefings, root cause analysis presentations, and post-incident reviews

  • Deliver actionable remediation guidance tailored to each client's environment and risk tolerance

  • Maintain SLA commitments for incident acknowledgment, updates, and resolution

  • Contribute to client security posture assessments and IR readiness recommendations.

What you Bring to the Role:

  • Minimum of bachelor’s degree in computer science and 5+ years of hands-on experience in incident response, digital forensics, or security operations

  • MSSP, MDR, or consulting experience is strongly preferred. Demonstrated ability to manage multiple client   engagements simultaneously.

  • Proven track record investigating real-world incidents including ransomware, BEC Attacks, lateral   movement, data exfiltration etc.

  • Experience working in multi-tenant environments with diverse security maturity levels.

  • GIAC certification required; one or more of the following:

    • GCIH (GIAC Certified Incident Handler)

    • GCFA (GIAC Certified Forensic Analyst)

    • GCFE (GIAC Certified Forensic Examiner)

    • GNFA (GIAC Network Forensic Analyst)

    • Equivalent certifications considered: OSCP, eCIR, eCDFP, EnCE, SC-200, AZ-500

Required Technical Skills in Core Platforms

  • DFIR - Binalyze AIR - remote acquisition, triage, timeline analysis and artifact collection.

  • EDR - SentinelOne threat investigations, Deep Visibility, detection engineering, policy configuration   

  • Microsoft 365 / Defender - BEC investigation, UAL analysis, Safe Links/Attachments, Entra ID etc.

  • Analytics - Databricks - large-scale log analysis, SQL/Python notebooks, threat hunting at scale

  • Automation - workflow automation, playbook development, API integrations and continuous monitoring.

Preferred Qualifications

  • Experience with additional EDR platforms (CrowdStrike, Microsoft Defender for Endpoint)

  • Advanced knowledge of macOS and Linux forensics

  • Familiarity with threat intelligence platforms (MISP, Recorded Future, Virus Total Enterprise)

  • Experience with Velociraptor, KAPE, or Volatility for advanced forensic collection and investigations.

  • Prior experience in IR teams or serving as an IR practice SME

What You’ll Get from Us:

A team where you can voice your opinion, make an impact, and where you and your experience are valued. Internal mobility – there are opportunities for cross training and the ability to attain your next career step within Barracuda.

  • Equity, in the form of non-qualifying options

  • High-quality health benefits

  • Retirement Plan with employer match

  • Career-growth opportunities

  • Flexible Time Off and Paid Time Off benefits

  • Volunteer opportunities

The anticipated salary range for this role is $110,000 to $135,000. Actual compensation offered will be dependent upon the individual's skills, experience, and qualifications as they directly relate to the requirements of the position, the budget for the position, and applicable employment laws. 

At Barracuda, we believe in fair and equitable compensation practices that reflect both market realities and the unique circumstances of each geographical location. We recognize that cost-of-living disparities, market conditions, and other factors can significantly impact compensation expectations in different regions. The compensation range provided in this job description is for illustrative purposes only and may not reflect the actual compensation offers for the position in your location. Final compensation will be determined based on a variety of factors including the candidates’ qualifications and experience.

Job ID: 27- 2704 

#LI-remote

Apply

FAQs About Senior Endpoint Security Engineer Jobs at Barracuda

This job offers 100% Remote Work.
Full-Time, Alternative Schedule
Yes, the benefits include Professional/Career Development, 401k Matching/Retirement Savings, Health/Medical Insurance, Flexible/Unlimited PTO and Health & Wellness Programs.
$110,000 - $135,000 ANNUALLY
Cyber Security, Tech Support, Consulting, Product Manager, Project Manager, Python
You can apply directly using the apply button given on the page.
Residents of US National
The work location for this position will be US National
Experienced
The required education level for this role is Bachelor's/Undergraduate Degree

Meet Remote.co

  • About & Contact
  • CCPA/GDPR
  • Do Not Sell or Share My Personal Information
  • Fraud Awareness
  • Press & Media
  • Sitemap

Remote Work Q&A

  • All Remote Companies
  • Why Remote
  • Hiring Remotely
  • Managing Remotely
  • Working Remotely
  • Remote Worker Insights
  • All Remote Workers

Remote Work Articles

  • All Articles
  • Why Go Remote
  • Build a Remote Team
  • Remote Management
  • Work Remotely

Remote Jobs

  • Find Remote Jobs
  • Remote Accounting Jobs
  • Remote Account Manager Jobs
  • Remote Bookkeeping Jobs
  • Remote Customer Service Jobs
  • Online Data Entry Jobs
  • Remote Data Science Jobs
  • Remote Design Jobs
  • Remote Developer Jobs
  • Online Editing Jobs
  • Remote Healthcare Jobs
  • Remote IT Jobs
  • Remote Marketing Jobs
  • Remote Medical Coding Jobs
  • Remote Nursing Jobs
  • Remote Legal Jobs

More Remote Jobs

  • Remote Operations Jobs
  • Remote Product Manager Jobs
  • Remote Project Manager Jobs
  • Remote QA Jobs
  • Remote Recruiter Jobs
  • Remote Sales Jobs
  • Remote Social Media Jobs
  • Online Teaching Jobs
  • Virtual Assistant Jobs
  • Remote Writing Jobs
  • Entry-Level Remote Jobs
  • Online Freelance Jobs
  • International Remote Jobs
  • Part-Time Remote Jobs
© 2015 - 2026 Remote.co | TOS | Privacy Policy | Manage Cookies | Accessibility
Next App