Staff Detection Engineer
Core
Build next-generation threat detections and automated hunting pipelines for Zscaler's cloud-native Zero Trust Exchange platform using big data and AI.
Role type
Staff Detection Engineer (Threat Hunting)
Builds
Scalable detection logic, automated hunting pipelines, and threat intelligence synthesis for global cloud infrastructure.
Domain
Cybersecurity / Cloud Security / Threat Intelligence
Deliverable
production ML models | product features
Required skills
Threat hunting, detection engineering, SIEM rule development (Splunk, Microsoft Sentinel, ElasticSearch), MITRE ATT&CK framework, Python scripting, AWS infrastructure, big data platforms (Hadoop, Athena), YAML-based detections, SIGMA-like rules.
Preferred skills
AI/ML and LLMs for threat intelligence automation, predictive anomaly detection, mentoring junior engineers, root cause analysis of detection failures, advanced automation infrastructure.
Technologies
Python, AWS, GitLab, Hadoop, Athena, Splunk, Microsoft Sentinel, ElasticSearch, YAML, SIGMA.
Responsibilities
Develop advanced detections and hunting logic; design and maintain engineering projects and deployment pipelines; migrate existing detections to next-gen systems; monitor intelligence sources and test new data feeds; write detections and playbooks while managing on-call rotations.
Seniority
Staff, hands-on IC with strategic impact and mentorship.