Senior Engineer, MDR
Job Description
About Vector3 Vector3, Inc., is an incident response firm supporting TMHCC Cyber and Professional Lines Group (CPLG). Vector3 specializes in responding to Business Email Compromise (BEC) and Ransomware incidents, helping insured organizations investigate, contain, and recover from cyber events. Job Summary Join us as a Senior Engineer, MDR and take a lead role in shaping our digital forensics and incident response practice for TMHCC-CPLG insureds. In this player-coach position, you'll combine deep technical expertise with strong leadership to drive complex engineering initiatives that enhance the scale, speed, and precision of our investigations. You'll guide a team of talented engineers through hands-on problem-solving, build scalable solutions for evolving threats, and help refine our consulting capabilities. Your mentorship will elevate team performance, ensuring we continue to deliver exceptional outcomes in high-stakes environments. Key Responsibilities Relying on extensive knowledge and leadership skills, this role is accountable for the following
Responsibilities
Leadership and Mentorship: Assign tasks, delegate responsibilities, and provides mentorship to team members. Support development and maintenance of operating procedures and best practices for engineering team. Maintain positive, professional insured/carrier relationships. Foster a culture of innovation, continuous learning, and skill development within the engineering team. Client Management and Engagement: Understand insured needs and tailor strategies to address specific business risks and compliance requirements. Communicate complex engineering concepts internally and externally. Incident Engineering Operations: Develop and maintain engineering automation in support of incident response plans aligned with industry best practices. Technical Experience: Stay informed about emerging engineering technologies and industry best practices. Understand and be aware of digital forensics methodologies for evidence collection, analysis, and reporting. Provide expert technical guidance on engineering methodologies, automation techniques, software development and recovery techniques. Occasionally, support complex digital forensic investigations, including analysis of system logs, network traffic, and endpoint data. Competencies Planning Contribute to the development of both short-term and long-term plans for designated area of the organization. Communication Communicate team plans or results, internally and externally, at all organizational levels. Write, or is a major contributor to, technical reports or contractual documents. Present informational briefings. Cost Management Develop innovative ways to improve financials. Business Controls and Policies Comply with all corporate policies and procedures. Education Requirements Minimum 4 year / bachelor’s degree in cyber security, Computer Science, Information Technology related degree or relevant professional work experience Certification, Licenses, and Designations 3 years former professional experience in leading and managing security engineering teams, developing security automation and/or SOAR capabilities in support of security incident response, digital forensics, malware analysis or threat intelligence. Experience managing active cybersecurity engagements, including security incident response and digital forensics is also required for this role. Advanced degrees or certifications in security (CISSP, CISM, GCFE, GCFA, GREM, GBFA, GCIH, CFCE, CCE) or cloud engineering (AWS Certified Security, Azure Security Engineer, Google Professional Cloud Security Engineer, CCNA, MCSE) are a plus. Other Proven track record of success in managing complex engineering initiatives. Experience in conducting security investigations in Linux and Windows environments. Understanding of cloud platforms and security considerations within AWS (Amazon Web Services), Azure, Microsoft 365, and GCP (Google Cloud Platform). Proficient scripting/programmingSkills
PowerShell, Bash, Python, Go, Rust Proficiency and experience with CI/CD: Jenkins, GitHub Actions, GitLab CI, Circle CI Proficiency and experience with containerization: Docker, Kubernetes Experience working with middleware or SOAR platforms: Tines, Splunk, Swimlane Cortex XSOAR Experience working with RESTful APIs for security automation. Experience with EDR solutions (Defender, SentinelOne, CrowdStrike) Experience with threat intelligence platforms or open-source solutions. Experience with malware analysis methodologies. Experience administering various enterprise grade security tools and databases: SIEM, IAM, EDR, firewalls, IDS/IPS, VPN, data warehouses, DLP Experience with data backup and recovery, data replication, and data archival technologies. Experience with hypervisor technologies: VMWare, MS Hyper-V Strong understanding of legal and regulatory frameworks related to cyber security such as PCI, NIST CSF, or other industry-specific regulations.How to Stand Out
- Highlight hands‑on experience with Microsoft Excel for large‑scale log parsing and threat data triage: include a brief case study in your résumé showing how you built VBA or Power Query scripts that reduced investigation time by >30% on BEC or ransomware incidents.
- Build a short (5‑minute) demo video of a forensic pipeline you designed—showing data ingestion, automated enrichment (e.g., using open‑source tools like Plaso or Velociraptor), and a final Excel‑based dashboard. Upload it to a private GitHub repo and link it in your cover letter; interviewers will ask you to walk through it.
- Emphasize “player‑coach” leadership: prepare specific examples where you mentored junior engineers while simultaneously writing production code (e.g., pairing sessions, code‑review metrics, or a documented onboarding checklist you created for new MDR analysts).
- Research TMHCC’s recent cyber‑insurance claims (public loss‑run reports) and reference one in your interview, outlining how you would adapt Vector3’s MDR tooling to detect the same attack patterns faster—this shows industry awareness and proactive thinking.
- When discussing compensation, cite the market median for senior MDR engineers in the U.S. (≈ $150‑$170 k base) and factor in TMHCC’s remote‑work stipend and potential equity in Vector3. Prepare a concise salary range with justification and be ready to negotiate for a performance‑based bonus tied to incident‑response SLA improvements.
This is a remote position listed on WFA Digital, the platform for professionals who work from anywhere. Browse more remote jobs across all categories.