HimalayasHimalayas logo
AspenView Technology Partners, Inc.AI

Senior Threat Detection & Incident Response (DFIR) Engineer

AspenView Technology Partners provides nearshore IT solutions, specializing in software development, data engineering, and AI-driven digital transformation.

AspenView Technology Partners, Inc.

Employee count: 51-200

Poland only

Stay safe on Himalayas

Never send money to companies. Jobs on Himalayas will never require payment from applicants.

Build the Future with AspenView Technology Partners

At AspenView, we are passionate about transforming the way organizations approach technology. We specialize in creating high-performing, nearshore IT teams to help North American clients innovate faster and more efficiently. As we continue to grow, we’re looking for exceptional people to join our team and help drive impactful change across industries.

Why Join AspenView?

At AspenView, we’re more than a nearshore IT partner—we’re a people-first, purpose-driven company that believes great culture drives great outcomes. We’re passionate about connecting talent and technology to deliver measurable value for clients—and meaningful career paths for our people.

Here’s what you can expect:

  • Competitive base
  • Comprehensive benefits and wellness support
  • Flexible work model: hybrid, remote, or in-office
  • Real growth opportunities and leadership visibility
  • Inclusive, respectful culture that blends U.S. innovation with Colombian heart
  • A company that listens, invests in you, and celebrates wins together

The Senior Threat Detection & Incident Response (DFIR) Engineer is a high-impact technical expert responsible for identifying, investigating, and neutralizing sophisticated cyber threats. This role goes beyond standard monitoring; you will actively hunt for adversaries, develop advanced detection logic, and lead forensic investigations to understand the "how" and "why" behind an intrusion.

You will act as the technical authority during critical security events, ensuring that evidence is preserved, threats are contained, and lessons learned are translated into automated detection playbooks.

What you will do:

Detection Engineering & Threat Hunting

  • Lead proactive threat hunting missions across endpoints, networks, and cloud environments using the MITRE ATT&CK framework.
  • Develop and optimize SIEM content (Splunk, Sentinel, Chronicle, or QRadar) and Sigma rules to identify emerging adversary TTPs.
  • Design and implement custom detection logic to reduce false positives and improve the fidelity of security alerts.

Incident Response & Forensics

  • Lead the Incident Response lifecycle for high-severity events: from initial containment and eradication to evidence preservation.
  • Perform digital forensics and deep-dive investigations on compromised systems to determine the root cause and scope of breaches.
  • Execute malware analysis and reverse engineering to identify capabilities, C2 infrastructure, and indicators of compromise (IoCs).

Threat Intelligence & Automation

  • Collect, enrich, and disseminate Threat Intelligence to proactively block emerging threats.
  • Design and automate Incident Response playbooks to standardize response actions and reduce MTTR.
  • Collaborate with infrastructure and engineering teams to implement defensive hardening based on intelligence findings.

Tools & Technologies:

  • SIEM Tools: Advanced proficiency in Splunk (ES), Microsoft Sentinel, QRadar, or Google Chronicle.
  • Forensics: Experience with EnCase, FTK, Volatility, or Velociraptor.
  • Analysis: Tools like IDA Pro, Ghidra, Wireshark, and Burp Suite.
  • Frameworks: Deep mastery of MITRE ATT&CK, Sigma, and YARA rules.
  • Languages: Proficiency in Python or PowerShell for forensic automation and data analysis.

What you bring:

  • 6–8+ years of experience in SOC Operations, Incident Response, or Threat Intelligence.
  • Investigative Mindset: Proven ability to follow complex attack chains and reconstruct security incidents.
  • Technical Depth: Hands-on experience with memory forensics, network traffic analysis, and host-based artifacts.
  • Automation Drive: A passion for transforming manual investigation steps into automated detection and response flows.
  • Certifications: GCIH, GCFA, GREM, or OSCP are highly valued.

Equal Opportunity Employer:

AspenView is proud to be an equal opportunity employer. We believe in creating an environment where all employees feel welcome, valued, and empowered to succeed. We celebrate diversity and strive to build a culture of inclusion where all individuals, regardless of their race, color, gender, gender identity or expression, sexual orientation, disability, age, or any other characteristic, can thrive. We encourage applicants from all walks of life to join our team and make a lasting impact.

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Experience

6 years minimum

Location requirements

Hiring timezones

Poland +/- 0 hours

About AspenView Technology Partners, Inc.

Learn more about AspenView Technology Partners, Inc. and their company culture.

View company profile

We founded AspenView Technology Partners to solve problems faced by North American CIOs, including a significant shortage of IT talent and a shortfall in operational excellence in IT service delivery from many providers. Our mission is to accelerate success by integrating people and technology in ways that create growth, innovation, and marketplace excellence. We believe business success stems from strong connections and meaningful partnerships, which is why we work closely with our clients to align our goals with theirs and build trust through long-term relationships.

We empower organizations to thrive with agile, expert-staffed, nearshore IT teams from Colombia and Argentina. Our unique service delivery models allow us to provide scalable capacity and advanced capabilities in software development, data engineering, artificial intelligence (AI), business intelligence (BI), and robotic process automation (RPA). By leveraging AI as a core driver of our innovation, we accelerate value delivery, enhance flexibility, and improve business outcomes through intelligent software and automated processes. Our leadership team, comprised of seasoned global technology executives, ensures that we bring an unparalleled understanding of our clients' IT objectives and challenges to every engagement.

Employee benefits

Learn about the employee benefits and perks provided at AspenView Technology Partners, Inc..

View benefits

Comprehensive Benefits

Comprehensive benefits package including wellness support.

Flexible Work Model

Options for hybrid, remote, or in-office work arrangements.

Growth Opportunities

Real opportunities for career growth and leadership visibility.

Competitive Compensation

Competitive base salary with a strong, uncapped commission structure.

View AspenView Technology Partners, Inc.'s employee benefits
Claim this profileAspenView Technology Partners, Inc. logoAI

AspenView Technology Partners, Inc.

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

39 remote jobs at AspenView Technology Partners, Inc.

Explore the variety of open remote roles at AspenView Technology Partners, Inc., offering flexible work options across multiple disciplines and skill levels.

View all jobs at AspenView Technology Partners, Inc.

Remote companies like AspenView Technology Partners, Inc.

Find your next opportunity by exploring profiles of companies that are similar to AspenView Technology Partners, Inc.. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan