
Job Description
Ovii's Interpretation of the Role
Proficio seeks a remote MEDR Threat Engineer to design, deploy, and tune enterprise EDR/XDR solutions, hunt threats, and integrate detections across security platforms. The role collaborates with SOC, engineering, and customers to improve endpoint protection for medium‑to‑large organizations.
Role Snapshot
- Endpoint security specialist
- EDR/XDR policy designer
- Threat hunter
- SIEM/SOAR integration engineer
- Customer‑facing security engineer
- Remote work
Must-Have Requirements
- Enterprise EDR/XDR platforms
- EDR/XDR policy configuration & tuning
- Threat hunting (MITRE ATT&CK)
- Security platform integration (SIEM/SOAR/ITSM)
- Scripting (PowerShell, Python)
- Endpoint OS security (Windows/macOS/Linux)
- Enterprise EDR/XDR deployment and management
- Threat hunting and detection rule creation
Nice-to-Have Signals
- SOC/MDR experience
- Security automation platforms
- Threat intelligence platforms
- Microsoft security stack
- Security reporting & dashboards
- Network security fundamentals
- SOC/MDR environment
Work Setup
- Location: India
- Work mode: REMOTE
- Remote scope: COUNTRY_RESTRICTED
- Remote countries: India
- Employment type: Full-Time
Eligibility Gates
- Work authorization: Authorized to work in India
- Visa sponsorship: no
Not Specified in JD
- Visa sponsorship
- Salary range
- Relocation
- Notice period
- Travel
- Security clearance
- Coding test
What You'll Likely Work On
- Design, configure, and maintain EDR/XDR policies, prevention controls, and exclusions across Windows, macOS, and Linux endpoints
- Manage deployments, agent upgrades, health monitoring, and troubleshooting for customer environments
- Create and tune custom detections, behavioral rules, IOCs, and blocklists based on emerging threats
- Conduct threat hunting and advanced investigations using MITRE ATT&CK techniques
- Integrate EDR/XDR platforms with SIEM, SOAR, ticketing, identity, email security, and threat‑intel solutions via APIs
- Collaborate with SOC, MDR, engineering, and sales teams to improve detection coverage and incident response
- Work directly with customers to translate security requirements into actionable policies and detections
- Produce technical documentation, operational reports, and customer‑facing security assessments
Good Fit If You Have
- Prior experience in a SOC, MDR, or MSSP environment
- Familiarity with security automation workflows (e.g., CrowdStrike Fusion, SentinelOne automation)
- Knowledge of threat‑intelligence services such as VirusTotal or Cisco Talos
- Ability to communicate technical findings to customers and internal stakeholders
Skills
- Enterprise EDR/XDR platforms (e.g., CrowdStrike, SentinelOne, Microsoft Defender)
- EDR/XDR policy design & tuning
- Threat hunting (MITRE ATT&CK)
- Security platform integration (SIEM, SOAR, ITSM, identity)
- Scripting (PowerShell, Python)
- Endpoint OS security (Windows, macOS, Linux)
- Security automation platforms
- Threat intelligence platforms
- Microsoft security stack
- Security reporting & dashboards
Remote Eligibility
- India