Security Engineer

3 weeks ago


Washington, Washington, D.C., United States Meta Full time
Meta Security is looking for a Security Engineer with experience in threat modeling, TTP identification, and detection engineering. You'll work alongside Software Engineers and Offensive Security Engineers to identify critical assets, assess the top risks, and evaluate potential attacks against Meta systems. You will be working across engineering teams supporting Production and Corporate systems to develop detection and response automation leveraging both industry-standard and custom detection and response platforms. You'll generate detection ideas utilizing some of the world's largest data sets and build on top of hyper-scale data pipelines.

Security Engineer - Surface Coverage, Detection Engineering Responsibilities:
  • Lead cross-functional projects to improve our capabilities to effectively detect and respond to security incidents
  • Review security architecture of large-scale custom and commercial systems and independently propose logging, detection and prevention controls
  • Perform TTP-based Threat Modeling for a wide variety of assets including endpoints, mobile, servers, internal services, public & private cloud environments and networking equipment
  • Perform analysis against logs from a variety of sources (e.g., individual host logs, network traffic logs) to identify potential threats and detection ideas
  • Build response workflows and actions that auto-resolve false positives and provide context scaling our ability to investigate
  • Support security incident response in a cross-functional environment and drive incident resolution
  • Design and implement attack testing automation to validate detection coverage
  • Build logging pipelines using our custom datasets and infrastructure
Minimum Qualifications:
  • 3+ years of experience in Detection & Response Engineering or similar Security Engineering role
  • Experience building complex automations and integrations using SOAR platforms
  • Bachelor's degree or equivalent experience in Security
  • Experience designing systems used for responding to both external and insider threats
  • Experience analyzing network and host-based security events
  • Knowledge of networking technologies, specifically TCP/IP and the related protocols
  • Knowledge of operating systems, file systems, and memory structures on Windows, MacOS and Linux
  • Coding/scripting experience in one or more general purpose languages
  • Experience with attacker tactics, techniques, and procedures
Preferred Qualifications:
  • Background in security-focused software engineering, designing large scale systems and data pipelines, or offensive security
  • Experience in threat hunting including leveraging intelligence data to proactively identify and iteratively investigates suspicious behavior across networks and systems
  • Broad knowledge across the Security domain, as well as deep focus in one (or more) areas such as Logs and events processing, Incident Management, Digital Forensics, Offensive Security Testing, Detection and/or Response tooling development
About Meta:
Meta builds technologies that help people connect, find communities, and grow businesses. When Facebook launched in 2004, it changed the way people connect. Apps like Messenger, Instagram and WhatsApp further empowered billions around the world. Now, Meta is moving beyond 2D screens toward immersive experiences like augmented and virtual reality to help build the next evolution in social technology. People who choose to build their careers by building with us at Meta help shape a future that will take us beyond what digital connection makes possible today-beyond the constraints of screens, the limits of distance, and even the rules of physics.

Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment.

Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-

$105,000/year to $173,000/year + bonus + equity + benefits

Individual compensation is determined by skills, qualifications, experience, and location. Compensation details listed in this posting reflect the base hourly rate, monthly rate, or annual salary only, and do not include bonus, equity or sales incentives, if applicable. In addition to base compensation, Meta offers benefits. Learn more about benefits at Meta.

  • Washington, Washington, D.C., United States Iron Vine Security Full time

    Job Summary:We are seeking a highly skilled Cybersecurity Expert to join our team at Iron Vine Security. As a Senior Cyber Security Engineer, you will play a critical role in designing, implementing, and maintaining IT security systems to protect our digital assets from malicious cyber-attacks.Key Responsibilities:Actively search for Indicators of Compromise...


  • Washington, Washington, D.C., United States AHU Technologies Inc Full time

    POSITION:Endpoint Security EngineerLOCATION:Washington DC / OnsiteMINIMUM EDUCATION: Bachelor's degree in Information Technology, related discipline, or equivalent experience.REQUIRED EXPERIENCE:7 yearsINTERVIEWS: In PersonJob Overview:The Endpoint Security Engineer will play a crucial role in the deployment and management of Endpoint Security systems to...


  • Washington, Washington, D.C., United States Cyber Security Innovations Full time

    Job OverviewCyber Security Innovations is seeking a Security Assessment Specialist to become a vital part of our team for an upcoming Security and Privacy Evaluation initiative within the non-profit telecommunications sector. This role is essential in fortifying our defenses against potential technical security vulnerabilities.This position offers a hybrid...


  • Washington, Washington, D.C., United States Palantir Technologies Full time

    About the RoleWe are seeking a highly skilled Cloud Security Engineer to join our Security Infrastructure team at Palantir Technologies. As a key member of our team, you will be responsible for architecting and operating multiple, geographically distributed Kubernetes clusters supporting our mission software.Key ResponsibilitiesDesign and implement secure...


  • Washington, Washington, D.C., United States Rishabh RPO Full time

    Job DescriptionPosition Title: Endpoint Security EngineerLocation: RemoteShort Description:The Endpoint Security Engineer will play a crucial role in establishing and maintaining the security framework for our IT infrastructure. This position is vital for ensuring the integrity and protection of endpoint devices within the organization.Complete...


  • Washington, Washington, D.C., United States Palantir Technologies Full time

    About the RoleWe are seeking a highly skilled Cloud Security Engineer to join our Security Infrastructure team at Palantir Technologies. As a key member of our team, you will be responsible for designing and operating multiple, geographically distributed Kubernetes clusters that support our mission-critical software.Key ResponsibilitiesCloud Security...


  • Washington, Washington, D.C., United States ST2 ManTech Advanced Systems Intl Full time

    Join Our Team at ST2 ManTech Advanced Systems IntlWe are seeking a committed and proficient Information Security Engineer to become a part of our dynamic team. At ST2 ManTech Advanced Systems Intl, we value our employees and provide a stimulating work atmosphere that fosters professional development and career progression.Key Responsibilities:Evaluating and...


  • Washington, Washington, D.C., United States ECF Data, LLC Full time

    Job OverviewPosition Summary:The Azure Security Engineer will be responsible for the engineering and advanced support of the Azure platform and its associated services. The ideal candidate will exhibit technical expertise and proficiency in the design, implementation, and maintenance of Microsoft Azure Platform Services. This role involves assessing,...


  • Washington, Washington, D.C., United States Department of The Navy Full time

    Position Overview:You will take charge of the Supply Chain Security team, overseeing policy and process execution and enhancement across all lines of business.Key Responsibilities:- Develop and implement strategies and methodologies for project assignments to achieve specified goals and objectives within established timelines.- Act as the representative for...


  • Washington, Washington, D.C., United States Editech Staffing Full time

    Job OverviewPosition: Senior Application Security Engineer / Source Code AnalysisLocation: OnsiteEditech Staffing is at the forefront of transforming cybersecurity practices through innovative solutions. We are currently seeking a skilled Senior Application Security Engineer to enhance our capabilities in application security.Our advanced Breach and Attack...


  • Washington, Washington, D.C., United States Booz Allen Hamilton Full time

    Position Overview:The Cybersecurity Engineer will play a pivotal role in enhancing the security posture of our AI-driven software solutions. This position involves collaborating with teams to secure Authorization to Operate (ATO) within IL 4-6 level environments. The engineer will design, develop, and implement software solutions that enable extensive cyber...


  • Washington, Washington, D.C., United States Motion Recruitment Full time

    Position Overview:This role is for a full-time Senior Application Security Engineer, focusing on enhancing the security posture of applications within a dynamic environment. Company Profile:The organization is a leader in risk management, providing oversight for various entities in the commodity markets. They are committed to maintaining high standards of...


  • Washington, Washington, D.C., United States Department of The Navy Full time

    Position Overview:You will oversee the Supply Chain Security division, focusing on policy implementation and enhancement across all lines of business within the Department of the Navy.Key Responsibilities:- Formulate strategies and methodologies for project execution, ensuring alignment with objectives and timelines.- Act as a representative for the...


  • Washington, Washington, D.C., United States SpaceX Full time

    Job DescriptionAt SpaceX, we are seeking a highly skilled Security Software Engineer to join our team. As a key member of our Starshield program, you will play a critical role in designing and building secure software solutions for our national security efforts.Key Responsibilities:Design and implement security infrastructure for Starshield, including...


  • Washington, Washington, D.C., United States Motion Recruitment Full time

    Position Overview:This role involves a full-time opportunity for a Senior Application Security Engineer. The ideal candidate will possess a wealth of experience in Java and related programming languages, alongside a solid understanding of code scanning technologies.Company Background:Motion Recruitment is recognized for its expertise in risk management...


  • Washington, Washington, D.C., United States Motion Recruitment Full time

    Position Overview: We are seeking a full-time Senior Application Security Engineer who will be instrumental in enhancing our security posture. This role focuses on ensuring the integrity of our applications through rigorous security measures. Location: This position offers a hybrid work model, allowing flexibility while working with a dynamic team. Key...


  • Washington, Washington, D.C., United States Zachary Piper Full time

    Zachary Piper Solutions is seeking a highly skilled Cybersecurity Engineer to support a Federal Agency in a dynamic security environment. This position will involve working on-site in Washington DC, with the opportunity to transition to a hybrid work setting once the candidate is up to speed.Key Responsibilities:Develop and implement comprehensive...


  • Washington, Washington, D.C., United States Motion Recruitment Full time

    Location: Hybrid - Washington, DC Position Type: Full-Time Salary Range: $150,000 - $180,000 This role is for a Senior Application Security Engineer within a prominent firm specializing in risk management across various sectors in the commodity markets. The ideal candidate will possess a strong background in Java and related programming languages, alongside...


  • Washington, Washington, D.C., United States IBM Full time

    IntroductionInformation and Data are some of the most important organizational assets in today's businesses. As a Security Consultant, you will be a key advisor for IBM's clients, analyzing business requirements to design and implement the best security solutions for their needs. You will apply your technical skills to find the balance between enabling and...


  • Washington, Washington, D.C., United States ManTech Full time

    Secure Our Nation, Ignite Your FutureAt ManTech, we're seeking a highly skilled Security Controls Engineer to join our team of cybersecurity experts. As a key member of our team, you'll play a critical role in protecting our nation's security while working on innovative projects that drive growth and advancement.Responsibilities:Assess and engineer security...