Threat Detection Security Engineer
Core
Own cyber security incidents from identification to resolution, operate as a point of escalation for alert triage, and execute threat hunts in the enterprise.
Role type
Senior IC threat detection and incident response engineer
Builds
Holistic lifecycle around incident preparedness and resolution, detection and defense implementations
Domain
Cybersecurity, incident response, threat intelligence
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
incident response, alert triage, threat hunting, automation, Microsoft Azure security tooling, Python scripting, Mitre Att&ck framework knowledge
Preferred skills
cloud environment incident response, Kubernetes defense and attack, threat intelligence collaboration, mentoring
Technologies
Microsoft Defender, Microsoft Sentinel, Microsoft EOP, Python, Kubernetes, Azure
Responsibilities
Own cyber security incidents from identification to resolution, ensure incidents and artifacts are accurately recorded, operate as a point of escalation for alert triage, execute threat hunts, develop and deliver training and tabletop exercises, participate in 24x7 on-call rotation
Seniority
Senior, hands-on IC