Skip to content

Open nowPosted 22 days ago

Associate Solution Consultant – Security Incident Handler

Trellix3 open roles

Where
US, California, Irvine
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowAssociate Solution Consultant – Security Incident HandlerTrellix · US, California, Irvine
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Trellix's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.1% of postings close within 7 days. Measured by our own scanner across the market. Trellix postings stay open a median of 4 days.

Share of postings closed within
  1. 1.7%1 day
  2. 3.6%3 days
  3. 8.1%7 days
  4. 15.1%14 days
  5. 34.1%30 days
This job: posted 22 days ago

Trellix median: 4 days open

The posting

Job Title:

Associate Solution Consultant – Security Incident Handler

About Trellix Trellix is a global company redefining the future of cybersecurity. The company’s comprehensive, open, and native cybersecurity platform helps organizations confronted by today’s most advanced threats gain confidence in the protection and resilience of their operations. Trellix, along with an extensive partner ecosystem, accelerates technology innovation through artificial intelligence, automation, and analytics to empower over 50,000 business and government customers with responsibly architected security. More at https://trellix.com.

Role Overview:

Develops and delivers detailed IT and cybersecurity solutions through consulting project activities. Responsibilities include client identification through final invoicing for engagements requiring varied interpersonal and technical skills. Technical responsibilities include problem identification, security monitoring, rapid incident response, threat detection, system architecture definition, software specification/design, implementation, testing, client training, and solution deployment. Performance is typically evaluated based on utilization (i.e., billable hours). Project management activities include interaction with company and client managers and cost/schedule monitoring. May have financial responsibilities including project cost estimating, proposal generation, and invoicing. May participate in sales and proposal presentations in addition to completing ongoing team account activities. Identifies additional product/services opportunities within customer organizations. Performance is typically measured by the capture of the consulting engagement and/or delivery of agreed solutions within budgeted hours.

Job Description:

Trellix Professional Services is seeking a Security Incident Handler with a passion for Cyber Security Defense and a strong understanding of security monitoring and incident response.

We have an onsite Elite team—one of the best Cyber Security consulting teams—working directly with our strategic customer as a joint Security Operations Task Force, and growing this piece of the business is a top priority!

This is a full-time hybrid role (3 days onsite, 2 days remote) with Public Sector Professional Services. You will work hand in hand with the customer’s Cyber Security, IT, and business teams to ensure the highest security around all Trellix Solutions and broader Cyber Security ecosystems. The Computer Security Incident Response Team (CSIRT) is responsible for 24x7x365 security monitoring and rapid incident response across the customer’s environments. As the ‘tip of the spear’ and the last line of defense protecting customer data and assets from adversaries, you will exercise judgment within broadly defined practices and policies in selecting methods, techniques, and evaluation criteria for obtaining results.

Note: This position may require occasional after-business-hour and weekend on-call shifts.

About the Role:

  • Manage and perform client work related to our product service offerings, security monitoring, and incident response.
  • Act as an integral member of the joint Security Operation Task Force and CSIRT team in a 24x7x365 operations environment.
  • Respond to security incidents in a production environment, including investigating/remediating endpoint malware infections and mitigating email-borne threats (phishing/spam).
  • Conduct host and network forensics during security incidents, analyzing system artifacts (file system, memory, running processes, network connections) for indicators of compromise (IOCs).
  • Identify and mitigate vulnerabilities using alternate or compensating controls where necessary.
  • Recognize potential security violations, report incidents as required by regulations, and mitigate adverse impacts.
  • Create end-of-engagement reports, technical DFIR (Digital Forensics & Incident Response) reports, and executive summaries describing findings and analysis.
  • Author formal reports, architecture designs, optimization guides, and best-practice white papers covering a variety of security topics.
  • Interact with company and client managers on cost/schedule monitoring, estimating, proposal generation, and invoicing.
  • Help identify and develop new client opportunities, expert services engagements, and potential consulting sales leads.
  • Maintain technical proficiency through self-training or formal training while sharing knowledge and mentoring consultant peers.

About You:

  • Experience: 3 to 4 years’ experience in Information Security, including operational security monitoring or incident response.
  • Education: Bachelor's Degree; technical degree or diploma preferred in computer science, information technology, or a related cyber field.
  • Core Technical Expertise: Understanding of cyber threats, attack vectors, detection capabilities, incident management processes, and compensating security controls. Experience monitoring and leveraging Trellix products: Trellix ePO, Endpoint Security (ENS), Trellix Detection & Response / Active Response (EDR), Advanced Threat Defense (ATD Sandbox), Threat Intelligence Exchange (TIE), Data Exchange Layer (DXL), Data Loss Prevention (DLP), SIEM, XDR, and Email Gateway ATP. Monitoring and log analysis across Network/Host IDSs, UEBA, WAFs, Database Security, Firewalls/Routers/Switches/VPNs, File Integrity Monitoring (FIM), Active Directory, and OS logs.
  • Forensics & Threat Knowledge: Host and network forensics capabilities, system artifact analysis, and threat hunting methodologies. Basic technical understanding of the MITRE ATT&CK™ framework and MITRE’s Ten Strategies of a World-Class Cybersecurity Operations Center. Knowledge of TCP/IP protocol suites (packet/traffic dissection) and OS logging configuration (Syslog, flat-files). Familiarity with Windows, Mac, and Linux OS administration, application hardening, and security controls.
  • Scripting & OS Skills: Strong Linux and Python skills are preferred. Experience with PowerShell, Perl, Go, C#, or general shell scripting is a significant plus. Understanding of relevant infrastructure technologies: Virtualization (VMware, Nutanix) and Cloud Services (AWS, Azure).
  • Soft Skills & Professionalism: Excellent client-facing presentation, verbal, and written communication skills (ability to communicate with technical staff and executive leadership). Advanced proficiency in Microsoft Office Suite (Word, Excel, PowerPoint). Ability to prioritize and manage multiple tasks independently in a high-tempo environment.

Company Benefits and Perks:

We believe that the best solutions are developed by teams who embrace each other's unique experiences, skills, and abilities. We work hard to create a dynamic workforce where we encourage everyone to bring their authentic selves to work every day. We offer a variety of social programs, flexible work hours and family-friendly benefits to all of our employees.

  • Retirement Plans
  • Medical, Dental and Vision Coverage
  • Paid Time Off
  • Paid Parental Leave
  • Support for Community Involvement

We're serious about our commitment to a workplace where everyone can thrive and contribute to our industry-leading products and customer support, which is why we prohibit discrimination and harassment based on race, color, religion, gender, national origin, age, disability, veteran status, marital status, pregnancy, gender expression or identity, sexual orientation or any other legally protected status.

Our Commitment to You:

At Trellix, we are committed to creating a safe and trustworthy experience for our customers, employees, and candidates. Please be aware that fraudulent recruiting activity can occur through fake job postings or impersonated communications.

Trellix conducts interviews through professional channels only and does not use text messages, instant messaging, or group chats for interviews. We will never request sensitive personal information—such as your date of birth, Social Security number, or national ID number—during the interview process.

Trellix also does not require candidates to pay fees, purchase products or services, or process payments of any kind as part of the recruiting or hiring process. And Trellix will never keep any original work authorization documents that we may be required to review during the hiring process.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Trellix's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Trellix's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Trellix's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.