Detection Engineer

Remote, USA Full-time
Job Summary: We are seeking a skilled Detection Engineer to join our team, focusing on implementing, configuring, and maintaining security detection rules and mechanisms within our customers' on-premise and Google Cloud environments. The ideal candidate will have extensive knowledge in Blue Team operations, day-to-day SOAR activities, Google Cloud Platform (GCP), security automation, and Kubernetes. Your expertise will help protect our customers' assets and ensure top-tier security for their cloud infrastructure. Key Responsibilities: • MITRE ATT&CK Framework: Utilize the MITRE ATT&CK Framework for threat detection creation, gap assessment, and analysis. • Security Detection Implementation: Implement, configure, and maintain security detection rules and mechanisms, including intrusion detection, anomaly detection, and log analysis tools to identify and respond to security incidents. • Security Operations: Play a critical role in daily security operations, including monitoring, tuning, analysis, and proactive threat hunting. • Incident Response: Lead incident response efforts, investigate security incidents, conduct root cause analysis, and implement corrective measures. • Kubernetes Incident Response: Apply expertise in Kubernetes for incident response and forensic analysis. • Security Automation: Develop and maintain automation scripts and tools to streamline security detection operations and response. • SOAR Playbooks: Build, design, run, and troubleshoot playbooks within a SOAR (Security Orchestration, Automation, and Response) solution to automate incident response processes. • Documentation: Maintain comprehensive documentation of security detection configurations, incident response procedures, and investigations. • Stay Current: Keep up-to-date with the latest security threats, vulnerabilities, and industry trends to proactively enhance security detection measures. Qualifications: • Bachelor's degree in Computer Science, Information Security, or a related field (Master's degree preferred). • Google Cloud Professional Cloud Security Engineer certification or equivalent experience. • Extensive experience with cloud security detection tools and technologies, including intrusion detection, anomaly detection, and log analysis. • Proficiency in scripting and automation (e.g., Python, Bash). • Proven experience in incident response, investigations, and security operations. • Strong proficiency in Kubernetes with a focus on incident response and forensic analysis. • Familiarity with the MITRE ATT&CK Framework for threat detection and mitigation. • Experience working with Splunk Enterprise Security or similar SIEM solutions. • Excellent problem-solving and analytical skills. • Strong communication and teamwork skills. • Relevant certifications such as CISSP, GCIH, GCIA, Certified Kubernetes Administrator (CKA), or Splunk certifications are a plus. • **100% REMOTE*** Employment Type: FULL_TIME Apply tot his job
Apply Now

Similar Jobs

Intelligence Analyst – RFI Triage (Remote, East Coast)

Remote, USA Full-time

Threat Intelligence Consultant - Remote (Anywhere in the U.S.)

Remote, USA Full-time

Senior Threat Intelligence Analyst (Iran APT Focus)

Remote, USA Full-time

Threat Intelligence Analyst, SEAR

Remote, USA Full-time

Associate Analyst, Cyber Threat Intelligence

Remote, USA Full-time

Threat Intelligence Analyst – Limassol / Nicosia / Athens

Remote, USA Full-time

Mid-Level Analyst - Cyber Threat Fusion Intelligence

Remote, USA Full-time

[Remote] Residential Title Examiner (Remote - if residing in Michigan)

Remote, USA Full-time

Title Examiner (Remote) FL

Remote, USA Full-time

Commercial Title Examiner (Remote) FL

Remote, USA Full-time

Wealth Management Advisor - with Full Training and Development Program

Remote, USA Full-time

**Experienced Remote Part-Time Data Entry Specialist – Join arenaflex's Dynamic Team for a Competitive Salary & Flexible Hours**

Remote, USA Full-time

**Experienced Customer Service Representative – Work From Home Opportunity (Entry Level) at arenaflex**

Remote, USA Full-time

VP Engineering, Head of Asset Servicing Technology (Hybrid - Flexible Options)

Remote, USA Full-time

New College Grad/Entry Level – Sourcer/Recruiter/HR

Remote, USA Full-time

Experienced Remote Customer Support Specialist – Live Chat Agent for Instagram Checkout and Online Platforms

Remote, USA Full-time

Global Design Intern US - GA - Atlanta

Remote, USA Full-time

Digital Library Federation is hiring: Director for Digital Strategy and Library

Remote, USA Full-time

Director, Business Finance

Remote, USA Full-time

Experienced Part-Time Remote Data Entry Clerk – Entry-Level Typing Position for Career Growth and Development at arenaflex

Remote, USA Full-time
Back to Home