CyberSecurity & Identity Protection Engineer (Tier 3)

<p><span style="font-size: 16px">BlackCloak’s mission is to protect corporate executives and high-profile individuals in their personal lives, mitigating risks to their families, companies, reputation, and finances. We defend our clients’ digital lives from hackers, privacy leaks, and identity theft. If you are passionate about helping to protect others, then keep reading - this may be your next great opportunity. </span></p><p><br></p><p> </p><p>BlackCloak is currently looking for a Cybersecurity & Identity Protection Engineer to provide a comprehensive "digital bodyguard" service for our clients. This unique hybrid role requires a technical expert who can secure an endpoint and network infrastructure just as effectively as they can protect a personal credit profile. This individual will have a strong familiarity in EDR solutions, including but not limited to CrowdStrike Falcon, SentinelOne, Microsoft Defender for Endpoint, Carbon Black, and Sophos Intercept X. The CyberSecurity & Identity Protection Engineer position is vital to our team as they will provide analysis to solve problems for our clients. If you have a genuine interest in cybersecurity and privacy, along with a strong drive to enhance your knowledge in these domains, this position presents an outstanding opportunity for advancing your cybersecurity career.</p> <p>This role primarily involves technical and incident response duties while providing subject matter expertise as needed. You will be responsible for the full spectrum of client safety: managing EDR solutions and conducting vulnerability assessments to harden assets, while simultaneously overseeing identity monitoring platforms to detect credit, SSN, and PII anomalies. You will act as the first line of defense in detecting fraud and the primary advocate in restoring a client’s identity should a breach occur. You will also help to manage security incidents, collaborating with other teams to conduct post-incident remediation activities. Lastly, you will also be the architect of our efficiency—leveraging Automation, SOAR, and AI to streamline our workflows, reduce reaction times, and ensure our services can scale without compromising quality. If you possess exceptional client engagement skills, a deep understanding of security threats and attacks, and extensive experience in technical security roles, we strongly encourage you to submit your application.</p> <p></p> <p></p><p><br></p><b>What You Will Do</b><div> <ul> <li> <p>Deploy and configure Endpoint Detection and Response (EDR) agents across client environments. Customize detection policies to minimize false positives and ensure seamless client business operations.</p> </li> <li> <p>Analyze EDR telemetry to detect "living off the land" attacks and anomalies that traditional antivirus would miss.</p> </li> <li> <p>Actively monitor client endpoints for malicious indicators. When threats are detected, immediately isolate compromised devices and communicate the scope of the incident to the customer and cross-functional teams supporting the customer.</p> </li> <li> <p>Generate monthly executive summaries for clients detailing blocked attacks, health status, and ROI on their security investment.</p> </li> <li> <p>Schedule and run next-gen vulnerability scans on client networks and execute penetration tests as applicable against client assets.. Review the results with the client's (or their IT point-of-contact), prioritize critical patches, and verify their remediation.</p> </li> <li> <p>Monitor for threats and vulnerabilities specific to “Smart Home” and Internet of Things (IoT), alert impacted clients, and assist clients in the hardening of their home networks and IoT devices.</p> </li> <li> <p>Proactively monitor the Dark Web and criminal forums for our clients' compromised credentials, leaked intellectual property, or domain spoofing.</p> </li> <li> <p>Work with cross-functional teams to alert clients immediately upon discovery of leaked data and provide specific instructions on changing passwords or locking down accounts.</p> </li> <li> <p>Manage the credit monitoring platform, and alert clients to changes in credit scores, new credit inquiries/accounts and other identity alerts that could indicate fraudulent activity.</p> </li> <li> <p>In conjunction with Client Success Managers, serve as the dedicated case manager for confirmed identity theft incidents. Handle the end-to-end resolution process so the client does not have to navigate the bureaucracy alone.</p> </li> <li> <p>Assist in the restoration of compromised accounts, including synthetic identity fraud, medical identity theft, and tax refund fraud.</p> </li> <li> <p>Actively hunt for client PII on people-search sites and data broker databases. Manage the "opt-out" and removal process to minimize their public attack surface.</p> </li> <li> <p>Identify repetitive manual tasks (e.g., alert triage, monthly reporting, initial containment) and build SOAR playbooks or scripts (Python/PowerShell) to automate them.</p> </li> <li> <p>Evaluate and implement AI-driven tools to enhance threat detection accuracy. Utilize Machine Learning features within our stack to reduce "alert fatigue" and false positives.</p> </li> <li> <p>Continuously assess our toolset's architecture. optimize API integrations between our Identity platforms, EDR, and ticketing systems to ensure we can handle increased client volume without linear headcount growth.</p> </li> <li> <p>Conduct "Post-Mortem" reviews after incidents or complex identity cases to identify process gaps, updating standard operating procedures (SOPs) to be faster and smarter next time.</p> </li> <li> <p>Recognize and codify attacker tools, tactics, and procedures in indicators of compromise (IOCs) that can be applied to current and future investigations</p> </li> <li> <p>Develop custom scripts, tools, or methodologies to enhance our Incident Response processes</p> </li> <li> <p>Develop comprehensive and accurate reports of forensic findings and Incident Response activities for both technical and executive audiences</p> </li> <li> <p>Be part of an on-call rotation and escalation team</p> </li> <li> <p>Participate in knowledge transfer sessions, product training and other strategic initiatives as needed</p> </li> <li> <p>Maintain working knowledge of BlackCloak’s solutions, platform features and best practices</p> </li> <li> <p>Mentor and support Client Success and Security Team Members</p> </li> <li> <p>Work closely with the engineering and product teams to continuously improve BlackCloak products</p> </li> <li> <p>Perform research and development on the latest cyber security attack and defense trends</p> </li> <li> <p>Work with the sales team to do technical demonstrations and provide subject matter expertise</p> </li> <li> <p>This position will require occasional time on nights and weekends to address client incidents, emergency onboardings and issues. There is a potential for limited travel</p> </li> </ul> </div><p><br></p><b>What You Need to be Successful</b><div> <ul> <li> <p>3-5+ years of experience in Cybersecurity, Fraud Analysis, or Security Engineering </p> </li> <li> <p>A college degree in an Information Technology (IT/CS/CE) related discipline is a plus, with equivalent experience also considered</p> </li> <li> <p>Industry recognized information security certifications a plus:</p> <ul> <li> <p>CISSP</p> </li> <li> <p>CCSP</p> </li> <li> <p>CFCE</p> </li> <li> <p>GIAC</p> </li> <li> <p>OSCP</p> </li> <li> <p>OSCE</p> </li> <li> <p>Security+</p> </li> <li> <p>CEH</p> </li> </ul> </li> <li> <p>Privacy and identity theft risk management certifications a plus:</p> <ul> <li> <p>CIPP</p> </li> <li> <p>CIPA</p> </li> </ul> </li> <li> <p>Penetration and vulnerability testing experience</p> </li> <li> <p>Windows and macOS forensic investigation and vulnerability management experience</p> </li> <li> <p>Experience in deploying, managing, and optimizing EDR tools to effectively detect, respond to, and mitigate threats</p> </li> <li> <p>Being able to correlate assets across multiple systems to ensure operational clarity and coverage is a must.</p> </li> <li> <p>Experience developing detection alerting using automation, orchestrating detection logic to trigger responses, and developing efficient security workflows.</p> </li> <li> <p>Experience with client service, communicating complex technical concepts, and a strong analytical mind required.</p> </li> <li> <p>Technical knowledge of operating systems such as Windows, macOS, iOS, Android, Linux</p> </li> <li> <p>Solid understanding of the US Credit System (Bureaus, FICO, FCRA rights).</p> </li> <li> <p>Experience managing identity monitoring platforms (alerts on Credit, SSN, PII)</p> </li> <li> <p>Operate independently and efficiently to manage multiple tasks and priorities simultaneously and successfully</p> </li> <li> <p>High degree of interpersonal communication skills and discretion for client privacy</p> </li> </ul> </div><p><br></p><p></p> <div>$110,000 - $130,000 a year</div><small><div>Final offer amounts are determined by multiple factors, including but not limited to geographic location as well as candidate experience and expertise, and may vary from the amounts listed above.</div></small> <p><b><span style="font-size: 16px">About BlackCloak</span></b></p><p><span style="font-size: 16px">BlackCloak is an extremely fast-growing company in an entirely new product category. We have amazing product fit validated by industry awards and an impressive client base of Fortune 500 companies across all industries. </span></p><p><br></p><p><span style="font-size: 16px">BlackCloak offers a competitive salary, exceptional benefits, and a dynamic work environment.  Below is a quick summary of BlackCloak’s generous benefits package for full-time employees includes:</span></p><p><br></p><p><span style="font-size: 16px"> - 100% Remote Company, within the USA </span></p><p><span style="font-size: 16px"> - Comprehensive Medical, Dental, and Vision plans with a 100% employer-paid monthly premium option for employees & 50% employer-paid monthly premiums for dependents. </span></p><p><span style="font-size: 16px"> - Health Savings Account with company contribution for eligible medical plans.</span></p><p><span style="font-size: 16px"> - Flexible Vacation Plan </span></p><p><span style="font-size: 16px"> - 10 Paid Company Holidays </span></p><p><span style="font-size: 16px"> - 100% employer-paid Life, AD&D and Short- and Long-Term Disability Insurance</span></p><p><span style="font-size: 16px"> - 401k with Traditional and Roth options, including employer match.</span></p><p><span style="font-size: 16px"> - Company Equity </span></p><p><span style="font-size: 16px"> - Paid Parental and Pregnancy Recovery Leave</span></p><p><span style="font-size: 16px"> - Company and team off-sites and virtual events throughout the year </span></p><p><span style="font-size: 16px"> - Home office stipend </span></p><p><br></p><p><span style="font-size: 16px">We are an equal opportunity employer. We do not discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, marital status, age, disability, national or ethnic origin, military service status, citizenship, or other protected characteristic.</span></p><p><br></p><p><b><span style="font-size: 16px">Learn More about Us</span></b></p><p><span style="font-size: 16px">Website: </span><a class="postings-link" href="https://blackcloak.io/"><span style="font-size: 16px">https://blackcloak.io</span></a></p><p><span style="font-size: 16px">LinkedIn: /blackcloak</span></p><p><span style="font-size: 16px">Twitter: @BlackCloakCyber</span></p><p><span style="font-size: 16px">White Paper: </span><a class="postings-link" href="https://bc.blackcloak.io/quantifying-the-business-need-for-digital-executive-protection-report-download"><span style="font-size: 16px">https://bc.blackcloak.io/quantifying-the-business-need-for-digital-executive-protection-report-download</span></a></p><p><br></p><p><span style="font-size: 16px">#liremote </span></p>

Back to blog

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...