SlipstreamJobsFresh Startup & VC-Backed Jobs

Senior Threat Response Engineer

Zscaler - Remote - Remote - posted 2026-08-17

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Zscaler is seeking a Senior Threat Response Engineer to join its Security Services team, reporting to the Senior Manager of Threat Response Engineering. This is a fully remote role (USA only) focused on responding to confirmed compromises on customer endpoints subscribed to the Active Remediation MDR service. In this position, you will perform investigations into detected threats and leverage security products to analyze, contain, and remediate threats in customer environments. You'll provide customers with thorough reports documenting actions taken to ensure clarity on environment cleanup and protection strategies. A key part of the role involves identifying and implementing effective response strategies to enhance the security posture of the customer base. You will collaborate closely with Detection Engineering, Threat Hunting, Intelligence, and Product teams to develop innovative methods for timely threat remediation. The role operates in a fast-paced operational environment with a 24x7 on-call rotation component, though the primary schedule is Monday–Friday, 8:00 AM–4:00 PM MT with a recurring monthly on-call rotation. Zscaler is an AI-forward enterprise leveraging the world's largest security data lake to power its cloud-native Zero Trust Exchange platform. The company protects customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location. The culture emphasizes impact over activity, constructive debate, customer obsession, collaboration, ownership, and accountability. You should have very strong analytical and problem-solving skills demonstrated through direct experience responding to security events and threats. Mastery of Endpoint Detection and Response (EDR) products—including CrowdStrike, Microsoft Defender for Endpoint, SentinelOne, or CarbonBlack—is essential. Deep understanding of internal system functionality for Windows and macOS operating systems is required. You must demonstrate understanding and experience with AI tools, with a proven history of integrating new technologies to enhance daily workflows and augment problem-solving. Professional and articulate communication skills with the ability to provide clear technical documentation are critical. Preferred qualifications include strong understanding of security operations, enterprise technology, and network controls or protocols; experience utilizing AI-augmented development platforms to drive security automation with demonstrated capability to proactively refine or engineer new AI-based solutions; and understanding of current and emerging adversary tactics and techniques with the ability to practically apply this knowledge.

Similar roles