Security Engineer
Core
Design and build logging and alerting systems to detect and investigate malicious activity, tune analytics for threat detection, and drive incident response efforts.
Role type
Early career Security Engineer (Threat Detection & Response)
Builds
Detection and response tools and capabilities using a 'detection as code' mindset
Domain
Cybersecurity, Threat Detection, Cloud Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Python, scripting, query languages (SPL/KQL), EDR, SIEM, SOAR, MITRE ATT&CK framework, incident response, cloud security (IaaS/PaaS/SaaS)
Preferred skills
AI tools for technical work and problem-solving
Technologies
Python, SPL, KQL, EDR, SIEM, SOAR
Responsibilities
Design and build logging and alerting systems, Create and tune analytics to proactively detect threats, Investigate and triage suspicious events, Drive incident response efforts across cross-functional teams, Help define and execute threat detection and response strategy
Seniority
Early career, hands-on IC