Senior Threat Detection Engineer
Core
Manage company-wide information security toolsets, investigate anomalous events, detect malicious activities, reverse engineer malware, and write signatures/scripts to defend against threats.
Role type
Senior Threat Detection Engineer
Builds
Security toolsets, automation scripts, threat detection signatures, and incident response playbooks
Domain
Cybersecurity / Threat Intelligence / Incident Response
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Threat detection and response, intrusion analysis, malware reverse engineering, SIEM technology, log analysis, network packet analysis, automation scripting (PowerShell, Python, bash), API integration, NIST and MITRE ATT&CK frameworks
Preferred skills
Malware analysis techniques, SOAR platform playbook development, advanced threat hunting methodologies
Technologies
SIEM, Microsoft Azure, Linux/Unix, Windows, PowerShell, PERL, Python, bash, NIST, MITRE ATT&CK
Responsibilities
Build automations to optimize team performance and reduce response times, perform intrusion analysis using SIEM and data visualization, act as first responder to security events across corporate networks and cloud environments, hunt for and identify threat actor groups and their TTPs, document and communicate findings while escalating critical incidents, mentor core analyst team on training and escalation, advise leadership on toolset optimization and future tool evaluations
Seniority
Senior, hands-on IC with mentorship responsibilities