Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Cyber Defense Engineer - Remote USA (*eligible states) image - Rise Careers
Job details

Cyber Defense Engineer - Remote USA (*eligible states)

About The Role The Information Security team mission is to build and protect stakeholder trust - customers, employees, investors - in our business, especially where technology is involved. Security at TRR has a unique value in reinforcing trust in the stewardship that is core to the business. We do this by guiding the right organizational security risk decisions and partnering with technology and business teams. We bring integrity, knowledge, and a passion for technology.The Cyber Defense Engineer role is a technical hands-on role in a dynamic and fast-paced environment. You’ll be working with various application and system owners to report, review, triage vulnerabilities, as well as to drive remediations and to improve our current processes by driving the configurations and integration efforts.• States Not Eligible: AK, AR, DE, KS, MS, ND, SD, WYWhat You Get To Do Everyday• Monitor the SIEM for suspicious events and anomalous activity, providing timely detection, identification, and alerting of possible attacks/intrusions, anomalous activities, and misuse activities while distinguishing these from benign activities.• Design, build, maintain, and enhance security services in GCP and AWS.• Configure data pipelines in the cloud and transport data into data lakes for analysis.• Configure and integrate SaaS tools, EDR, and firewalls to centralize the vulnerability management program.• Document and manage cyber events in ticketing systems.• Assist in incident response procedures.• Review and triage vulnerabilities, driving remediation efforts across IT, engineering, and product teams.• Manage the vulnerability remediation lifecycle.• Track, report, and improve the vulnerability remediation process.• Configure logging, and capture and analyze cyber events from technologies such as Intrusion Prevention Systems (IPS), firewalls, endpoint protection, web/email filtering, and cloud hosting environments.• Perform event correlation using information gathered from various sources within the enterprise to assess the effectiveness of an observed attack.• Discover, remediate, and validate security issues across cloud infrastructure per industry-standard information security policies.• Build working relationships with internal stakeholders and vendors.• Mentor 1–2 Cyber Security Engineers to impact the overall success of the team.• Ability to code against APIs (data extraction), write scripts, and automate workflows is a plus.​What You Bring To The RoleMinimum Requirements:• Minimum 3 years of relevant experience with a Bachelor’s degree in Computer Science, Information Technology, or Data Science, including leading Cyber Security Engineers• Experience with SIEM, configuring and maintaining threat use cases• Strong understanding of EDR, vulnerability scanning tools, and writing queries (SQL)• Comfortable working in Mac/Unix/Linux environments• Familiarity with EDR tools• Familiarity with common security vulnerabilities (CVE/CVSS) and the ability to judge their severity and impact on the business• Participation in on-call rotation periodically, which may involve non-traditional working hours• Familiarity with AWS and GCP; cloud certifications are a plus.• Experience in Malware Analysis• Ability to set up Honeypots and sniffers• Eagerness to be hands-on with cybersecurity tools and assist with configuration tasks• Cybersecurity certifications such as ISC2, GIAC, or SANSPreferred Requirements:• Proficiency in the Python programming language is a plusCompensation, Benefits, + Perks• Employee Stock Purchase Plan• 401K with Company Match• Medical, Dental & Vision Insurance• Paid Parental Leave• Unlimited Discretionary Time Off (DTO)* and 10 Paid Company Holidays• * Unlimited DTO with Manager approvalThe expected salary range for this role is $116,054.00-$145,068.00. To determine starting pay we carefully consider a variety of factors, including primary work location and an evaluation of a candidate’s skills, experience, market demands, and internal parity. Additionally, salary is just one component of TRR’s total rewards package. Depending on role, employees may also be eligible for a bonus program, incentive pay and benefits.The RealReal is the world’s largest online marketplace for authenticated, resale luxury goods, with more than 30 million members. With a rigorous authentication process overseen by experts, The RealReal provides a safe and reliable platform for consumers to buy and sell their luxury items. We have hundreds of in-house gemologists, horologists and brand authenticators who inspect thousands of items each day. As a sustainable company, we give new life to pieces by thousands of brands across numerous categories—including women's and men's fashion, fine jewelry and watches, art and home—in support of the circular economy. We make selling effortless with free virtual appointments, in-home pickup, drop-off and direct shipping. We do all of the work for consignors, including authenticating, using AI and machine learning to determine optimal pricing, photographing and listing their items, as well as handling shipping and customer service. At our 13 retail locations, including our twelve shoppable stores, customers can sell, meet with our experts and receive free valuations.The RealReal is committed to providing an equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or expression, or Veteran status. We will consider qualified applicants for a position regardless of arrest or conviction records. At TRR, People Come First. That’s why diversity and inclusion are vital to our priorities as an equal opportunity employer. You can read about our Diversity Equity and Inclusion program here.Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. The employee is regularly required to sit; use hands to finger, handle, or feel and talk or hear. The employee is occasionally required to stand; walk; reach with hands and arms; climb or balance; stoop, kneel, crouch, or crawl; and taste or smell. The employee must occasionally lift and/or move up to 10 pounds. Specific vision abilities required by this job include close vision. The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job.
The RealReal Glassdoor Company Review
2.7 Glassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star iconGlassdoor star icon
The RealReal DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of The RealReal
The RealReal CEO photo
John Koryl
Approve of CEO

Average salary estimate

$130561 / YEARLY (est.)
min
max
$116054K
$145068K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Cyber Defense Engineer - Remote USA (*eligible states), The RealReal

At The RealReal, we’re on the hunt for a passionate Cyber Defense Engineer to join our dynamic Information Security team, which is all about building and protecting trust among our stakeholders. This remote role enables you to take a hands-on approach in a fast-paced environment while collaborating with various application and system owners. As a Cyber Defense Engineer, you’ll monitor our Security Information and Event Management (SIEM) system for suspicious activities, triage vulnerabilities, and drive actionable remediations. Your expertise will also help us configure and enhance security services in cloud environments like GCP and AWS, ensuring our security practices are top-notch. You’ll be instrumental in documenting cyber events, assisting in incident responses, and managing the vulnerability lifecycle—a vital part of keeping The RealReal secure. Your knowledge in Cybersecurity, including familiarity with EDR tools and vulnerability scanning, will be crucial as you mentor junior engineers and improve our internal processes. The ideal candidate will have a bachelor’s degree in Computer Science or a related field, with a minimum of three years of relevant experience. If you have what it takes to elevate our security practices while enjoying the benefits of remote work and a supportive company culture, we’d love to hear from you!

Frequently Asked Questions (FAQs) for Cyber Defense Engineer - Remote USA (*eligible states) Role at The RealReal
What are the main responsibilities of a Cyber Defense Engineer at The RealReal?

As a Cyber Defense Engineer at The RealReal, you will monitor our SIEM for suspicious events, triage vulnerabilities, and implement remediation strategies. You'll collaborate with IT, engineering, and product teams to enhance our security services, manage the vulnerability lifecycle, and document cyber events. Additionally, your role involves configuring logging systems and integrating SaaS tools to fortify our security posture.

Join Rise to see the full answer
What qualifications are required for the Cyber Defense Engineer position at The RealReal?

The Cyber Defense Engineer role at The RealReal requires a minimum of three years of experience in the field, along with a Bachelor’s degree in Computer Science, Information Technology, or Data Science. Candidates should have a solid understanding of SIEM, EDR tools, and vulnerability scanning as well as experience working in Mac/Unix/Linux environments.

Join Rise to see the full answer
Is remote work an option for the Cyber Defense Engineer role at The RealReal?

Yes, the Cyber Defense Engineer position at The RealReal is a remote role, allowing you to work from anywhere within the eligible states. This provides flexibility while you contribute to our team and uphold our mission to maintain the highest level of cybersecurity.

Join Rise to see the full answer
How does The RealReal support employee growth for Cyber Defense Engineers?

At The RealReal, we believe in nurturing talent and fostering career growth. As a Cyber Defense Engineer, you will have opportunities to mentor junior engineers while also participating in ongoing training and skill development initiatives. Our company also supports continued education through relevant certifications in the cybersecurity field.

Join Rise to see the full answer
What benefits does The RealReal offer to Cyber Defense Engineers?

The benefits package for Cyber Defense Engineers at The RealReal includes an Employee Stock Purchase Plan, 401K with Company Match, comprehensive medical, dental, and vision insurance, paid parental leave, and an unlimited discretionary time off policy, among other perks that underline our commitment to employee well-being.

Join Rise to see the full answer
Common Interview Questions for Cyber Defense Engineer - Remote USA (*eligible states)
What steps would you take to monitor SIEM for suspicious events?

In monitoring SIEM for suspicious events, I would establish baseline activity levels, configure alerts for anomalies, and continuously review logs for any irregular patterns. Additionally, I'd develop use cases for distinct attack profiles to speed up detection times.

Join Rise to see the full answer
Can you describe your experience with vulnerability triaging?

My experience with vulnerability triaging includes assessing vulnerabilities based on their severity using CVE/CVSS ratings. I prioritize addressing high-risk vulnerabilities first, collaborating with relevant teams for remediation actions, and continuously tracking progress through our ticketing system.

Join Rise to see the full answer
What is your experience with AWS and GCP security practices?

In my previous roles, I configured security services within AWS and GCP, focused on identity and access management, and implemented security best practices, such as ensuring secure configurations and regularly reviewing access logs for unusual activities.

Join Rise to see the full answer
How do you approach incident response procedures?

For incident response, I follow a systematic approach including preparation, detection, analysis, containment, eradication, and recovery. I believe in documenting each step and conducting post-incident reviews to improve our procedures continuously.

Join Rise to see the full answer
What programming languages are you proficient in, and how do you use them in cybersecurity?

I am proficient in Python, which I use for automating various tasks like data extraction, creating scripts for vulnerability scanning, and developing tools for incident response. My coding skills help improve workflows and streamline processes within the security team.

Join Rise to see the full answer
Can you explain how you handle the management of the vulnerability remediation lifecycle?

Managing the vulnerability remediation lifecycle involves identifying vulnerabilities, assessing their risk, and coordinating with IT and engineering teams to develop a timeline for remediation. I ensure continuous communication and document progress to track our effectiveness over time.

Join Rise to see the full answer
What tools do you use to analyze and capture cyber events?

I utilize tools such as Intrusion Prevention Systems (IPS), endpoint protection systems, and SIEM platforms to capture and analyze cyber events. Leveraging these tools helps me assess the effectiveness of mitigations and determine potential threats quickly.

Join Rise to see the full answer
Describe a situation where you contributed to improving security processes.

In my previous role, I noticed inefficiencies in the vulnerability assessment process. I proposed and implemented a more streamlined approach using automated scanning tools and improved ticketing integration, resulting in a significant reduction in response time for high-priority vulnerabilities.

Join Rise to see the full answer
How do you stay updated on the latest cybersecurity threats?

I stay updated on the latest cybersecurity threats through attending industry conferences, following reputable blogs and security researchers, and participating in forums. Additionally, I subscribe to threat intelligence services that provide timely updates about vulnerabilities and emerging threats.

Join Rise to see the full answer
What strategies do you employ when working with cross-functional teams?

When working with cross-functional teams, I prioritize clear communication and establish shared goals. I actively seek feedback and engage in collaborative problem-solving, ensuring that everyone remains informed and aligned on security initiatives and their responsibilities.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 5 days ago
Photo of the Rise User
SpaceX Hybrid Cape Canaveral, FL
Posted 12 days ago
Mission Driven
Social Impact Driven
Passion for Exploration
Reward & Recognition
Posted 11 days ago
Photo of the Rise User
Posted 2 days ago

Authenticity We stand by the authenticity of our products and strive for authenticity in everything we do. Respect We respect the heritage of the brands we sell, the trust we have with our consignors and customers, and the commitment of our empl...

37 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
December 15, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!