About the position
Cybersecurity Engineer – Endpoint / Threat Operations ARC Group has an immediate opportunity for a Cybersecurity Engineer! This position is 100% remote. This is starting out as a contract position running through July 2026 with strong potential to extend longer or possibly convert to FTE. This is a fantastic opportunity to join an established and well-respected organization offering tremendous career growth potential. At ARC Group, we are committed to fostering a diverse and inclusive workplace where everyone feels valued and respected. We believe that diverse perspectives lead to better innovation and problem-solving. As an organization, we embrace diversity in all its forms and encourage individuals from underrepresented groups to apply. 100% REMOTE! Reference# 19467-1 Candidates must have permanent work authorization and work for any employer without sponsorship now or in the future. Third party candidates are not eligible for this role. Client is seeking a hands-on Cybersecurity Engineer to support endpoint security, threat operations, and SIEM platforms across enterprise and subsidiary environments. This role is focused on CrowdStrike EDR and SIEM operations , incident response, and infrastructure security across Linux and Windows systems.
Responsibilities
• Operate and support CrowdStrike Falcon (EDR and SIEM) in production
• Perform security incident response , alert investigation, and remediation
• Secure and harden Linux (RHEL) and Windows Enterprise systems
• Support SIEM migrations , log onboarding, tuning, and validation
• Manage endpoint protection, host compliance, and file integrity monitoring
• Troubleshoot security platform issues and restore services
• Support escalations and out-of-cycle security requests
• Maintain operational documentation and runbooks
• Assist with vulnerability remediation, audits, and security upgrades
Requirements
• 4+ years IT experience
• 2+ years cybersecurity engineering
• Hands-on experience with CrowdStrike, EDR, or SIEM tools
• Strong Linux and Windows security experience
• Incident response and troubleshooting experience
• SSCP or CISSP required at submission (cert number mandatory)