Lead Detection and Response Security Engineer

CoStar Group

Confirmed live today High trust

Quick summary

Work type
On-site
Location
Arlington, VARichmond, VA
Salary
$147,000–$247,000 / yr
Employment
Full-time
Posted
40 days ago
Freshness
Confirmed live today

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $180k
This role $197k
$121k most similar roles pay here $261k

This role pays more than 67% of similar roles. Most pay $151,987–$208,800 — the shaded band above. At the midpoint, this role pays about $197k versus about $180k for comparable roles.

Based on 240 similar postings.

Employer

About CoStar Group

CoStar Group is the leading provider of commercial real estate information, analytics, and online marketplaces, including CoStar, Apartments.com, and LoopNet platforms. Industry: Commercial Real Estate Data & Analytics

CoStar Group currently has 67 open roles on FindRole.

Listed pay typically runs $130,500–$190,000 across 67 roles with salary data.

Most-posted roles

View all roles at CoStar Group

At a glance

TL;DR · Lead Detection and Response Security Engineer

Lead Detection and Response Security Engineer As a Lead Detection and Response Security Engineer, you will join the security team to communicate core security concepts to both technical and non-technical audiences. You will serve as the incident response coordinator, overseeing activities across various business verticals while developing and maturing incident response functions and reporting. Your daily work involves performing technical security assessments for networks, applications, and databases, conducting tabletop exercises, and utilizing the Mitre Att&ck framework to drive strategy. You will build platform automations, perform forensic log analysis, and develop threat hunting practices. The role requires proficiency in scripting languages like Perl, Python, or PowerShell, experience with Windows Server and Active Directory, and familiarity with Microsoft Security tools such as Defender and Sentinel. You will manage vulnerability scanning, tool integration, and remediation of infrastructure issues within the enterprise environment.

What you'll do

  • Serve as the incident response coordinator to oversee activities and ensure timely resolution of incidents across business verticals.
  • Develop, mature, and lead incident response functions and reporting of findings.
  • Lead technical security assessments for network, application, and database infrastructure for existing and newly acquired services.
  • Facilitate quarterly incident response tabletop exercises and update the Incident Response Plan.
  • Create platform automations using scripting languages to increase efficiency in responding to observed threats.
  • Analyze network, server, and application logs with forensic depth to identify trends and security incidents.
  • Use security tools to audit infrastructure, detect issues, and coordinate remediation of identified vulnerabilities.
  • Develop and mature threat hunting practices across the enterprise.

What we're looking for

  • Bachelor's Degree from an accredited, not-for-profit university or college.
  • One or more security certifications such as SANS/GIAC, CISSP, CISM, GCIH, CEIH, or equivalent.
  • 8+ years of experience in Information Technology.
  • 5+ years of cyber security experience.
  • Proficiency in scripting and programming languages including Perl, Python, or PowerShell.
  • Experience with Windows Server 2012/2016/2019 and Active Directory.
  • Experience with Microsoft Security tooling such as Defender, Sentinel, and EOP (preferred).
  • Ability to produce detailed technical documentation (preferred).

More like this

Similar roles

Threat Detection Security Engineer

CoStar Group

Arlington, VA +1 96 days ago $90,000–$154,000
Incident Response Sentinel Defender Azure Kubernetes Python Mitre Att&ck Automation Detection Engineering
4+ yrs exp

Cyber Security Engineer Technical Lead

Leidos

Bethesda, MD 11 days ago $154,050–$278,475
Splunk HBSS/Trellix Ansible CloudFormation Python PowerShell AWS DevSecOps IDS/IPS Firewalls VPN Data Loss Prevention GitHub GitLab SonarQube SolarWinds Linux Red Hat Windows Agile
10+ yrs exp

Lead Detection Engineer, Cyber Defense & Response

Prudential Financial

Newark, NJ 14 days ago
Splunk Enterprise Security SPL KQL Python SOAR CI/CD MITRE ATT&CK Cyber Kill Chain Threat Hunting Incident Response Digital Forensics Security Automation Linux Windows macOS