← Back to results

xdr jobs in San Diego

Posted 2 days ago

Lead high-severity incident investigations, mentor L1/L2 analysts, and drive detection engineering at a cybersecurity services firm. Responsibilities include threat hunting, malware analysis, digital/network forensics, SIEM/EDR tuning (KQL, SPL, Sigma, YARA), playbook development, and automation scripting in Python/PowerShell/Bash.… This is a 5+ year senior incident responder role requiring deep hands-on expertise across the full incident response lifecycle, MITRE ATT&CK, and client-facing technical briefings.

San DiegoLast seen 1 day ago
Posted 1 month ago

Security Operations Analyst role monitoring and triaging alerts across endpoint, cloud, identity, network, and SaaS using enterprise SIEM and XDR platforms. Responsibilities include investigating alerts, performing root-cause analysis, tuning detections, owning initial response for mid-tier incidents, participating in on-call rotation, running targeted threat hunts, and contributing to playbooks and post-incident reviews.… Requires 2–5 years of hands-on SecOps, SOC, or incident response experience; proficiency with enterprise SIEM query languages, EDR tooling, and scripting in Python/PowerShell/Bash; and solid understanding of MITRE ATT&CK and network fundamentals.

San DiegoLast seen 1 month ago
$159,650 – $266,049 · Posted 1 month ago

Lead a team of security engineers responsible for deploying, integrating, optimizing, and managing enterprise cybersecurity platforms including SIEM (Splunk, Elasticsearch), XDR, EDR, email gateways, and vulnerability management across on-premises and cloud environments. Develop and execute cybersecurity tooling strategy aligned with business objectives, regulatory requirements (NIST CSF, ISO 27001, SOC 2, PCI-DSS), and industry best practices.… Automate threat detection, response, compliance reporting, and operational workflows using Python, PowerShell, and Bash. Mentor security engineering teams while managing budgets, cross-functional partnerships, and executive reporting on security posture and tooling effectiveness.

San DiegoLast seen 24 days ago
Posted 1 month ago

Lead detection operations, incident response, and security operations maturation for a growing security team. Operate SIEM/XDR across endpoint, cloud, identity, network, and SaaS telemetry; conduct complex investigations; tune detections; and drive root-cause analysis and post-incident improvements.… Require 6+ years of hands-on security operations, detection engineering, or incident response experience with deep proficiency in SIEM/XDR query languages, EDR platforms, scripting (Python, PowerShell, Bash), and MITRE ATT&CK framework application. Mentor analysts, define playbooks and runbooks, lead threat hunts, and own SecOps metrics and operational-readiness reporting.

San DiegoLast seen 1 month ago
$200,000 – $240,000 · Posted 1 month ago

Director leading a pre-sales security engineering team responsible for technical strategy, solution design, and customer-facing support across EVOTEK's cybersecurity portfolio. The role combines deep technical security expertise with people leadership, requiring mentorship of engineers/architects, oversight of enterprise solution design and proof-of-concept engagements, and alignment of technical capabilities with sales and delivery practices.… Responsibilities include RFP response, competitive positioning, vendor management, and technical presentations spanning AI security, network security, cloud security, identity & access management, endpoint/XDR, SIEM/SOAR, zero-trust architecture, and data protection. Must understand the VAR business model and translate complex technical capabilities into business value for enterprise stakeholders.

San DiegoLast seen 1 month ago