Threat Detection Engineer

Remote Full-time
Job Title Threat Detection Engineer Relevant Experience (in Yrs) 6+ Technical/Functional Skills ELK stack, Fireeye HX, Sysmon, Winlogbeat Experience Required 6+ Roles & Responsibilities Technical knowledge to write & develop rules for CIRT analysis, experience on ELK stack, Fireeye HX, Sysmon, Winlogbeat, CI-CD pipeline. • Deep understanding of cyber threat actor attacker techniques and tools (such as malware, common attack types) including evasion techniques, reconnaissance, scanning, exploitation, evasion, lateral movement, persistence, and exploits), proficient with MITRE ATT&CK • Deep understanding of security operations center processes, tools, and data for analysis & control mitigations, security event timeline analysis and baselining with experience in the analysis of logs and data for the development and implementation of custom detections to counter attacker techniques, known vulnerabilities and evasion methods • Security architecture (network topology, firewalls, proxies, web content filtering, wireless, EDR, IDS, IPS, SIEM, SOAR, etc.) • Network data sources (full packet analysis, flow data, dns logs, proxy logs, NIDS, etc.) • Knowledge and experience with common scripting languages and tools Python, PowerShell, Bash, YAML • Deep knowledge of compound logical operations (AND, OR, NOT), regular expressions • Experience extracting data from logs, SQL, and APIs • Knowledge and experience with tools used to build threat detections (Elastalert, Logstash, Kibana (ELK), Fireeye HX, Sysmon, Winlogbeat, Linux Auditd) • Deep understanding and experience with Operating Systems Including: Administration, configuration, registry, processes (Windows, Mac, and Linux) • Experience in red team/blue team/incident responder interactions • Understanding of CI/CD pipelines • Experience with source control tools (Git Generic Managerial Skills Good Communication, Team coordination and Status update to customers Education B. Tech Start date (dd-mmm-yy) 04-MAY-23 Duration of assignment (in Months) 3 to 6 Months Work Location (State, City and Zip) Remote, San Antonio,TX Base salary range 120-125k Key words to search in resume Develop Use cases for Threats, Python, Bash scripting Prescreening Questionnaire Do you have experience in (Elastalert, Logstash, Kibana (ELK) & Develop Use cases for Threats Apply tot his job
Apply Now →

Similar Jobs

Detection Engineer (4th Shift)

Remote Full-time

Detection Engineer (4th Shift)

Remote Full-time

Content Development Engineer- Threat Detection & Response – Remote, United States

Remote Full-time

Threat Detection Engineer; Kansas

Remote Full-time

Detection and Response Engineer

Remote Full-time

Purple Teamer Detection Engineer

Remote Full-time

Detection Engineer

Remote Full-time

Intelligence Analyst – RFI Triage (Remote, East Coast)

Remote Full-time

Threat Intelligence Consultant - Remote (Anywhere in the U.S.)

Remote Full-time

Senior Threat Intelligence Analyst (Iran APT Focus)

Remote Full-time

Respiratory Therapist – North Canton, OH – Part Time ($28.32 - $30.28/hr)

Remote Full-time

Experienced Customer Service Representative - Fully Remote Opportunity at blithequark

Remote Full-time

Experienced Customer Success Manager for Enterprise Software Solutions - Remote US or Hybrid in Atlanta, GA, Driving Business Growth and Customer Satisfaction through Strategic Account Management and Master Data Management Expertise

Remote Full-time

Experienced Remote Data Entry Specialist – Work from Home Opportunity with arenaflex, Competitive Hourly Rate, and Flexible Scheduling

Remote Full-time

Host or Hostess - Evening Shift for Rooftop Bar

Remote Full-time

**Experienced Part-Time Customer Service Representative – Remote Opportunity with arenaflex**

Remote Full-time

Experienced Online Customer Service Representative – Remote Work Opportunity for Delivering Exceptional Support and Ensuring Customer Satisfaction

Remote Full-time

Experienced Remote Data Entry Specialist – Accurate Information Management and Team Collaboration at arenaflex

Remote Full-time

(Remote Part-Time) Travel Agent Assistant

Remote Full-time

Chat Content Moderator Positions – $25 $35 per Hour Friendly Chat Positions From Home

Remote Full-time
← Back to Home