SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Exiger is an AI-native supply chain and procurement automation platform serving 550+ global customers, including 150 Fortune 500 companies and 80+ government and defense industrial organizations. The company is FedRAMP authorized and a 2x Gartner Magic Quadrant Leader for Supplier Risk Management.
The Threat Cybersecurity Engineer will be a hands-on security professional responsible for strengthening security operations and protecting Exiger's growing technology environment. This role sits at the intersection of threat detection, incident response, and security automation, collaborating closely with Security, IT, engineering, cloud, and compliance teams.
Key responsibilities include:
- Administering and optimizing endpoint detection, SIEM, and security-monitoring capabilities
- Monitoring, triaging, and investigating threats across endpoint, identity, cloud, application, and network environments
- Conducting proactive threat hunting using threat intelligence, behavioral analytics, and attacker techniques (MITRE ATT&CK framework)
- Developing and tuning detection rules, alerts, dashboards, and automated response workflows
- Identifying and prioritizing exposed assets, vulnerabilities, and security weaknesses through attack-surface management
- Coordinating incident containment, remediation, recovery, root-cause analysis, and post-incident improvements
- Maintaining investigation playbooks, procedures, metrics, and executive reporting
- Participating in security operations on-call rotation
The ideal candidate will bring deep expertise in security operations and threat detection, with a proven track record of building and tuning detections, investigating complex alerts, and distinguishing genuine threats from false positives.
REQUIREMENTS:
- 7+ years of experience in security engineering, security operations, incident response, threat detection, or related discipline
- Advanced experience with endpoint protection, endpoint detection and response (EDR), SIEM administration, and security investigations
- Demonstrated ability to develop and tune detections, investigate complex alerts, and distinguish genuine threats from false positives
- Experience conducting structured threat hunts and mapping attacker behavior to MITRE ATT&CK
- Working knowledge of attack-surface management, vulnerability management, asset discovery, and risk-based remediation
- Strong understanding of Windows, Linux, cloud, network, identity, and endpoint security