Logo
IT Security Engineer IV (Part Time) (Remote)
Kforce • San Diego, CA
No Relocation
Posted: September 11, 2026
Responsibilities
- Respond to and lead critical, escalated security incidents: coordinating communications, executing the Incident Response Plan, and delivering clear, timely status updates to stakeholders and senior leadership
- Perform comprehensive host, network, and cloud forensic analysis to determine root cause, scope, and impact, ensuring containment is validated against the client's control-testing standard before an incident is closed
- Analyze and correlate signals across SIEM, EDR, and other platform logs to triage and validate threats.
- Develop, maintain, and improve incident response playbooks and runbooks in partnership with the SOC's Analysis Champ and other capability owners
- Operate within existing automated workflows in ServiceNow SIR, following and refining established processes
- Flag detection gaps and false-positive patterns identified during live incidents to Detection Engineering for tuning and new detection development
- Use outputs from Mate AI SOC platform to inform triage and investigation decisions
- Collaborate with Compliance, Legal, and Risk to ensure response workflows meet business and regulatory requirements
- Assess vulnerabilities, propose remediation, and stay current on emerging threats and countermeasures
- Provide training and mentorship to other incident responders on best practices
- Contribute to post-incident reviews and help build metrics that drive continuous program improvement
Requirements
- To be considered for this position, candidates must have experience in a similar role, or they must possess significant knowledge, experience, and abilities to successfully perform the responsibilities listed
- Relevant education and/or training will be considered a plus