Staff Threat Detection Engineer

3 weeks ago


San Jose, United States CareerBuilder Full time

Location: Remote in the U.S. or Canada

Zscaler is looking for a highly technical staff security researcher with significant experience in threat detection engineering. This position needs to have a deep understanding of emerging threats, security technologies, a knack for problem-solving, and a creative approach to create innovative threat detection solutions. Analyze zscaler product telemetry and hunt for threats at scale through in-depth log analysis and malware behavior. The results will be used to develop innovative tools to automate further threat hunting, produce technical threat analytics reports, and publish research blogs.

Responsibilities:

Collaborate with threat-hunting operations and drive product innovation in threat detection.

Drive positive threat hunting service outcomes through cross-functional collaboration with other functional teams, across threat hunting, data engineering etc.

Perform threat modeling, design and build effective threat detection rules and models to help shorten the mean time to respond.

Responsible for analyzing advanced threats & TTPs and creating effective detections allowing threat hunters to successfully find the needle from the haystack.

Responsible for the development and design of signals which can automatically highlight emerging threats.

Analyze malware and threat attacks for patterns and develop automated solutions for analysis, classification, and categorization of data for further automation.

Create innovative security solutions and strategies to support threat alerting pipeline allowing Threat Hunters to quickly identify and remediate potential security threats.

Work with global threat intelligence collectors to identify, contextualize, and instrument current and emerging cyber threats.

Actively participate in the cyber security community, establishing relationships and knowledge sharing.

Develop security-focused tools and services in support of intelligence, detection, and response.

Required Qualifications:

Required 8+ years hands-on threat detection, threat research and threat hunting experience

Strong understanding of tools, tactics and procedures (TTPs) of threats actors (eCrime/APT)

Experience in incident analysis and response using industry standard frameworks such as MITRE ATT&CK and the cyber kill chain

Experienced in security information and event management tools, such as Splunk, Elasticsearch.

Experience with malware analysis - dynamic & static

Must be able to validate findings, perform root cause analysis, and deliver recommendations for fixes.

Strong scripting and automation skills are must (Python preferable)

Must have excellent reporting and analytical skills.

Strong understanding of web protocols and web application security

Experience writing IDS/IPS, YARA signatures

Preferred:

TTP based threat hunting

In-depth log analysis and malware tracking and monitoring

Data mining experience with large security data sets such as IDS, IPS and firewall logs.

Strong development background with experience in Python and Familiarity with SQL

Education:

Bachelors or graduate degree from four-year college or university (preferably in Computer Science, Engineering, or a related discipline), or equivalent security industry work experience.

#LI-remote

#LI-AM12

#J-18808-Ljbffr



  • San Francisco, CA, United States Reddit Full time

    Reddit is a community of communities. It’s built on shared interests, passion, and trust and is home to the most open and authentic conversations on the internet. Every day, Reddit users submit, vote, and comment on the topics they care most about. With 100,000+ active communities and approximately 73+ million daily active unique visitors, Reddit is one of...


  • San Francisco, United States Hybrid Pathways Full time

    About the Opportunity:Hybrid Pathways, a New Era Company, is seeking a Security Threat Detection Engineer Consultant to support client's Threat Management objectives to build, maintain and improve threat detections and alerting infrastructure and to ensure the right data collection and detections are in place to discover threats against infrastructure, data,...


  • San Francisco, United States Hybrid Pathways Full time

    About the Opportunity:Hybrid Pathways, a New Era Company, is seeking a Security Threat Detection Engineer Consultant to support client’s Threat Management objectives to build, maintain and improve threat detections and alerting infrastructure and to ensure the right data collection and detections are in place to discover threats against infrastructure,...


  • San Francisco, United States Hybrid Pathways Full time

    Job DescriptionJob DescriptionAbout the Opportunity:          Hybrid Pathways, a New Era Company, is seeking a Security Threat Detection Engineer Consultant to support client’s Threat Management objectives to build, maintain and improve threat detections and alerting infrastructure and to ensure the right data collection and detections are in...


  • San Francisco, United States Hybrid Pathways Full time

    About the Opportunity:Hybrid Pathways, a New Era Company, is seeking a Security Threat Detection Engineer Consultant to support client’s Threat Management objectives to build, maintain and improve threat detections and alerting infrastructure and to ensure the right data collection and detections are in place to discover threats against infrastructure,...


  • San Mateo, CA, United States Snowflake Computing Full time

    Build the future of data. Join the Snowflake team.The Product Security team is responsible for securing the Snowflake product and platform, and ultimately protecting the company mission of mobilizing the world’s data. Visibility and real time telemetry is fundamental to our security mission as it provides the data foundation that many critical security...


  • San Jose, United States Zoom Video Communications Full time

    Drive continuous improvement of network security workflows and processes through automation and innovation. Provide and own network security strategies to advance Zoom in early detection and prevention of Network Threats. Design and architect first-o Network Security, Security Engineer, Network, Security, Network Engineer, Lead, Technology

  • ACI Engineer

    3 weeks ago


    San Jose, United States World Wide Technology Full time

    Job Title:ACI EngineerLocation: Hybrid in San JoseDuration: 6+ months CTHJob Overview:As an ACI Security Engineer, you will play a critical role in designing, implementing, and managing security measures within our network, with a strong focus on network segmentation and the integration of Cisco Firepower Threat Defense. Your responsibilities will be pivotal...

  • ACI Engineer

    3 weeks ago


    San Jose, United States World Wide Technology Full time

    Job Title:ACI EngineerLocation: Hybrid in San JoseDuration: 6+ months CTHJob Overview:As an ACI Security Engineer, you will play a critical role in designing, implementing, and managing security measures within our network, with a strong focus on network segmentation and the integration of Cisco Firepower Threat Defense. Your responsibilities will be pivotal...

  • ACI Engineer

    3 weeks ago


    San Jose, United States World Wide Technology Full time

    Job Title:ACI Engineer Location: Hybrid in San Jose Duration: 6+ months CTH Job Overview: As an ACI Security Engineer, you will play a critical role in designing, implementing, and managing security measures within our network, with a strong focus on network segmentation and the integration of Cisco Firepower Threat Defense. Your responsibilities will be...

  • ACI Engineer

    13 hours ago


    San Jose, United States Tekgence Inc Full time

    Job Title: ACI EngineerLocation: Hybrid in San JoseDuration: 6+ months CTHJob Overview:As an ACI Security Engineer, you will play a critical role in designing, implementing, and managing security measures within our network, with a strong focus on network segmentation and the integration of Cisco Firepower Threat Defense. Your responsibilities will be...


  • San Jose, United States MatchPoint Solutions Full time

    Job Description Job Title: ACI Engineer Location: Hybrid in San Jose, CA Duration: 6 + months CTH Job Overview: As an ACI Security Engineer, you will play a critical role in designing, implementing, and managing security measures within our network, with a strong focus on network segmentation and the integration of Cisco Firepower Threat Defense. Your...


  • San Jose, United States Ender-IT Full time

    Complex manufacturing- Info Sec Engineer Location: San Jose, CAFull-Time PositionDo you have a passion for electric vehicles and a proven track record in cybersecurity?We're seeking a highly skilled Senior Cybersecurity Engineer to join our team in San Jose, CA. You'll play a vital role in safeguarding our Electric Vehicle (EV) projects and client...


  • San Jose, United States Ender-IT Full time

    Complex manufacturing- Info Sec Engineer Location: San Jose, CAFull-Time PositionDo you have a passion for electric vehicles and a proven track record in cybersecurity?We're seeking a highly skilled Senior Cybersecurity Engineer to join our team in San Jose, CA. You'll play a vital role in safeguarding our Electric Vehicle (EV) projects and client...


  • San Jose, United States Ender-IT Full time

    Complex manufacturing- Info Sec Engineer Location: San Jose, CAFull-Time PositionDo you have a passion for electric vehicles and a proven track record in cybersecurity?We're seeking a highly skilled Senior Cybersecurity Engineer to join our team in San Jose, CA. You'll play a vital role in safeguarding our Electric Vehicle (EV) projects and client...


  • San Francisco, CA, United States OpenAI Full time

    About the TeamSecurity is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity.  The Security team protects OpenAI’s technology, people, and products. We are technical in what we build but are operational in how we do our work, and are committed to supporting all products and research at OpenAI....


  • San Jose, United States Source Technology Full time

    Enterprise Security EngineerFulltime Onsite - San Jose, Job DescriptionAn exciting opportunity to join our team as an Enterprise Security Engineer. The successful applicant will work to protect our company's computer systems and networks from threats.ResponsibilitiesPlanning, implementing, managing, monitoring and upgrading security measures for the...


  • San Jose, United States Source Technology Full time

    Enterprise Security EngineerFulltime Onsite - San Jose, Job DescriptionAn exciting opportunity to join our team as an Enterprise Security Engineer. The successful applicant will work to protect our company's computer systems and networks from threats.ResponsibilitiesPlanning, implementing, managing, monitoring and upgrading security measures for the...


  • San Jose, United States Source Technology Full time

    Enterprise Security EngineerFulltime Onsite - San Jose, Job DescriptionAn exciting opportunity to join our team as an Enterprise Security Engineer. The successful applicant will work to protect our company's computer systems and networks from threats.ResponsibilitiesPlanning, implementing, managing, monitoring and upgrading security measures for the...

  • Security Engineer

    2 weeks ago


    San Francisco, United States ShiftCode Analytics Full time

    Interview : Video Visa : All apart from H1b and CPT This is hybrid from day-1. Candidate must be local. Description : Qualifications: 4+ years of security engineering experience OR equivalent experience in a SWE/DevOps role and an interest in working on security engineering initiatives Familiarity with security detection techniques (SAST, DAST, IAST, SCA),...