Senior Security Specialist

5 days ago


Remote, Oregon, United States HighLevel Full time $75,000 - $97,000 per year

About HighLevel

HighLevel is a cloud-based, all-in-one white-label marketing and sales platform that empowers marketing agencies, entrepreneurs, and businesses to elevate their digital presence and drive growth. We are proud to support a global and growing community of over 2 million businesses, from marketing agencies to entrepreneurs to small businesses and beyond. Our platform empowers users across industries to streamline operations, drive growth, and crush their goals.HighLevel processes over 15 billion API hits and handles more than 2.5 billion message events every day. Our platform manages 470 terabytes of data distributed across five databases, operates with a network of over 250 micro-services, and supports over 1 million domain names.

Our People

With over 1,500 team members across 15+ countries, we operate in a global, remote-first environment. We are building more than software; we are building a global community rooted in creativity, collaboration, and impact. We take pride in cultivating a culture where innovation thrives, ideas are celebrated, and people come first, no matter where they call home.

Our Impact

Every month, our platform powers over 1.5 billion messages, helps generate over 200 million leads, and facilitates over 20 million conversations for the more than 2 million businesses we serve. Behind those numbers are real people growing their companies, connecting with customers, and making their mark - and we get to help make that happen.Learn more about us on our YouTube Channel or Blog Posts

About The Role

We are seeking an experienced and proactive Senior Security Specialist – Incident Management to join our security operations team. This role will be responsible for monitoring, detecting, analyzing, and responding to security incidents. The ideal candidate will have deep expertise in incident management, strong analytical skills, and hands-on experience with enterprise-grade detection and response platforms. The analyst will lead investigations, coordinate with cross-functional teams, and provide actionable insights to reduce risk and strengthen the organization's overall security posture.

Key Responsibilities

  • Monitor and analyze alerts from SIEM, EDR, CSPM, and cloud-native security platforms.

  • Perform initial triage, validation, and escalation of security alerts and suspicious activity.

  • Develop and tune detection rules, dashboards, and queries for improved monitoring.

  • Lead incident containment, eradication, and recovery activities.

  • Conduct in-depth investigations of endpoint, cloud, and network-based threats.

  • Maintain and improve incident response playbooks aligned with NIST and MITRE ATT&CK.

  • Perform proactive threat hunting across SIEM, EDR, and cloud environments.

  • Conduct forensic analysis, root cause investigations, and evidence collection.

  • Apply threat intelligence to enhance detection and reduce dwell time.

  • Partner with IT, Cloud, Security, Legal, and Compliance teams for coordinated incident resolution.

  • Work with LEA in the US to receive threat intelligence and share updates whenever required.

  • Investigate container security incidents (e.g., Kubernetes, Docker) including misconfigurations, runtime threats, and unauthorized access.

  • Analyze application-layer attacks such as SQL injection, XSS, RCE, and API abuse.

  • Collaborate with DevOps/AppSec teams to assess vulnerabilities identified during incidents and provide remediation guidance.

  • Conduct log analysis and forensic review of application and container environments to identify compromise indicators.

  • Provide clear, actionable updates to both technical and executive audiences.

  • Prepare detailed incident reports and present monthly/quarterly security metrics.

  • Recommend improvements in logging, monitoring, and automation (SOAR).

  • Track and report KPIs such as MTTR, incident volume, and trend analysis.

  • Contribute to tabletop exercises, red/blue team simulations, and readiness drills.

Required Qualifications

  • Bachelor's degree (or equivalent experience) in Information Security, Computer Science, or related field.

  • 6+ years of hands-on experience in incident management, SOC operations, or cybersecurity analysis.

  • Practical expertise with:

  • SIEM (e.g., Google SecOps / Chronicle, Splunk, Microsoft etc.)- EDR (e.g., SentinelOne, CrowdStrike, Microsoft etc.)

  • CSPM / Cloud Security (e.g., GCP Security, Orca, Prisma Cloud, Microsoft etc.)

  • Strong knowledge of incident response frameworks (NIST 800-61, MITRE ATT&CK).

  • Experience writing detection queries, rules, and dashboards in SIEM/EDR tools.

  • Excellent problem-solving, documentation, and communication skills.

Preferred Qualifications

  • Experience with container security investigations (Kubernetes, Docker) and workload forensics.

  • Exposure to application security incident investigation (web app attacks, API misuse, vulnerabilities).

  • Certifications such as CompTIA Security+, CySA+, GCIH, GCFA, GCIA, CISSP, or CISM.

  • Cloud security certification (e.g., Google Professional Cloud Security Engineer).

  • Knowledge of U.S. compliance frameworks: NIST CSF, HIPAA, PCI DSS, SOX, CCPA/CPRA, FedRAMP.

  • Familiarity with scripting/automation (Python, PowerShell, bash) for SOC workflows.

EEO StatementThe company is an Equal Opportunity Employer. As an employer subject to affirmative action regulations, we invite you to voluntarily provide the following demographic information. This information is used solely for compliance with government record keeping, reporting, and other legal requirements. Providing this information is voluntary and refusal to do so will not affect your application status. This data will be kept separate from your application and will not be used in the hiring decision.

Job Type: Full-time

Pay: $75, $97,000.00 per year

Benefits:

  • 401(k)
  • 401(k) matching
  • Dental insurance
  • Disability insurance
  • Health insurance
  • Life insurance
  • Paid time off
  • Vision insurance
  • Work from home

Application Question(s):

  • What is your expected compensation?
  • Also, please highlight your hands‑on work with SIEM (e.g. Google SecOps), EDR (e.g. SentinelOne), and CSPM (e.g. GCP Security) — what tasks you've done

  • Will you now or in the future require a visa sponsorship or transfer?

Work Location: Remote



  • Remote, Oregon, United States GuidePoint Security Full time $120,000 - $180,000 per year

    GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies,...


  • Remote, Oregon, United States SentinelOne Full time $120,000 - $180,000 per year

    What are we looking for?We are looking for a highly motivated, collaborative and experienced Senior InfoSec Risk Specialist with a security-focused mindset who can balance risk, business drivers and timelines. This position will be responsible for understanding and supporting the design of SentinelOne's organizational, procedural and technological security...


  • Remote, Oregon, United States Unwin Company Full time $80,000 - $120,000 per year

    Job Title: Cyber Security SpecialistJob Function: Programmatic Assessor Location: RemoteDuration: Full-time (with benefits)Clearance: DOE Q/SCI (Equivalent to a DOD Top Secret/SCI)About the Employer: Unwin Company is a respected federal government contractor supporting the Department of Energy (DOE) with a long-standing tradition of service and...


  • Remote, Oregon, United States Unwin Company Full time $90,000 - $180,000 per year

    POSITION ANNOUNCEMENT: SENIOR INFORMATION PROTECTION SPECIALISTReports to: Unwin Company Safeguards and Security Assessments Task LeaderClearance Required: DOE-Q or DOD TSSalary Range: Top pay for exceptionally qualified candidatePosition Information: Hourly/limited benefitsAbout the Employer: Unwin Company (Unwin) is a respected federal government...


  • Remote, Oregon, United States Fortress Information Security Full time $120,000 - $180,000 per year

    Security Risk AssessorLocation: RemoteCompensation: $90,000 - $150,000 per year, depending on experience and qualifications.Employment Type: Full-TimeWhat you can expect as a Senior Security Risk Assessor at Fortress:The Security Risk Assessor, Cybersecurity TPRM role is an individual contributor role responsible for the timely and effective review of...


  • Remote, Oregon, United States Command Cyber Solutions Full time $150,000 - $190,000 per year

    Position Title: Senior Integration SpecialistLocation: RemoteDivision: Command Cyber SolutionsSalary: 175,000K-185,000KPosition Summary:2026 Census Test Technical Integration ProgramThe Mission: The Decennial Census plays a critical role in our nation's governance, informing congressional representation and guiding the allocation of $1.5 trillion in federal...


  • Remote, Oregon, United States Abnormal Full time $200,000 - $250,000 per year

    About the RoleAbnormal AI is looking for a Senior Application Security Engineer to help build the next generation of secure AI-powered cybersecurity applications at scale. This is a senior IC-level role that blends deep application security expertise with strong engineering fundamentals. You'll focus on integrating security into every phase of our software...


  • Remote, Oregon, United States Ferguson Full time $5,000 - $89,387 per year

    Job Posting:For the past 10 years, Safe Step Walk-In Tub Company (a Ferguson company) has experienced unprecedented growth and has been overly committed to providing our customers with the industry-leading safety, comfort and independence they deserve. As the nation's top walk in tub/shower company, our products are made to the highest manufacturing...


  • Remote, Oregon, United States Live Oak Financial Full time $52,000 - $72,000 per year

    Job SummaryWe are seeking a detail-oriented and experienced Senior Collection Specialist to join our team. The ideal candidate will have a strong background in medical collections and accounts receivable, with a focus on customer service and effective negotiation skills. This role requires proficiency in financial concepts, medical terminology, and the...


  • Remote, Oregon, United States Finch Computing Full time $120,000 - $180,000 per year

    Senior Cloud Security EngineerClearance: Must have ability to obtain a Public Trust Clearance (US Citizenship required)Location: Washington DC Metro area preferred, remoteAs a Senior Cloud Security Engineer at Finch AI, you'll play a pivotal role in maintaining and enhancing our security posture across AWS cloud environments. This position is ideal for...