Detection & Response Security Engineer, Threat Intelligence
1 week ago
Summary:
Meta Security is looking for a threat intelligence investigator with extensive experience in investigating cyber threats with an intelligence-driven approach. You will be proactively responding to a broad set of security threats, as well as tracking actor groups with an interest or capability to target Meta and its employees. You will also be identifying the gaps in current detections and preventions by long-term intelligence tracking and research, and working with cross-functional stakeholders to improve Meta's security posture. You will help the team establish, lead and execute multi-year roadmaps that improve research efficiency and quality across the team, and drive improvements to stakeholder management across a broad range of intelligence requirements.
Required Skills:
Detection & Response Security Engineer, Threat Intelligence Responsibilities:
-
Influence and align the team's vision and strategy. Collaboratively prioritize and deliver specific multi-year roadmaps and projects
-
Build, cultivate, and maintain impactful relationships with intelligence stakeholders to identify and facilitate solutions to increase the impact of the team's work
-
Refine operational metrics, key performance indicators, and service level objectives to measure Intelligence research and services
-
Lead cross-functional projects to improve the security posture of Meta's infrastructure, such as red team operations, surface detection coverage expansion and vulnerability management discussions
-
Track threat clusters posing threats to Meta's infrastructure and employees, and identify, develop and implement countermeasures on our corporate network
-
Investigate, mitigate, and forecast emerging technical trends and communicate effectively with actionable suggestions to different types of audiences
-
Work closely with incident responders to provide useful and timely intelligence to enrich ongoing investigations
-
Improve the tooling of threat cluster tracking and intelligence data integration to existing systems
Minimum Qualifications:
Minimum Qualifications:
-
8+ years threat intelligence experience
-
B.S. or M.S. in Computer Science or related field, or equivalent experience
-
Be a technical and process subject matter expert regarding Security Operations and Threat Intelligence services
-
Experience developing and delivering information on threats, incidents and program status for leadership
-
Expertise with campaign tracking techniques and converting tracking results to long term countermeasures
-
Expertise with threat modeling frameworks, such as Diamond Model or/and MITRE ATT&CK framework
-
Experience intelligence-driven hunting to spot suspicious activities in the network and identify potential risks
-
Proven track record of managing and executing on short term and long term projects
-
Ability to work with a team spanning multiple locations/time zones
-
Ability to prioritize and execute tasks with minimal direction or oversight
-
Ability to think critically and qualify assessments with solid communications skills
-
Coding or scripting experience in one or more scripting languages such as Python or PHP
Preferred Qualifications:
Preferred Qualifications:
-
Experience recruiting, building, and leading technical teams, including performance management
-
Experience close collaborating with incident responders on incident investigations
-
Experience in threat hunting including leveraging intelligence data to proactively identify and iteratively investigates suspicious behavior across networks and systems
-
Familiarity with malware analysis or network traffic analysis
-
Familiarity with nation-state, sophisticated criminal, or supply chain threats
-
Familiarity with file-based or network-based rules and signatures for detection and tracking of complex threats, such as YARA or Snort
-
Experience in one or more query languages such as SQL
-
Experience authoring production code for threat intelligence tooling
-
Experience conducting large scale data analysis
-
Experience working across the broader security community
Public Compensation:
$177,000/year to $251,000/year + bonus + equity + benefits
Industry: Internet
Equal Opportunity:
Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment.
Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
-
Engineering Manager I
1 week ago
Boston, MA, United States Datadog Full timeThe Cyber Threat Intelligence team's mission is to stay ahead of threat actors and their TTPs to help Datadog make intelligence-led-decisions to improve our security posture, inform detections in our security products, and publish research that elevates the Datadog security brand. As part of the Detection & Threat Intelligence group, you will get to work at...
-
Engineering Manager I
1 week ago
Boston, MA, United States Datadog Full timeThe Cyber Threat Intelligence team's mission is to stay ahead of threat actors and their TTPs to help Datadog make intelligence-led-decisions to improve our security posture, inform detections in our security products, and publish research that elevates the Datadog security brand. As part of the Detection & Threat Intelligence group, you will get to work at...
-
Engineering Manager I
5 days ago
Boston, MA, United States Datadog Full timeThe Cyber Threat Intelligence team's mission is to stay ahead of threat actors and their TTPs to help Datadog make intelligence-led-decisions to improve our security posture, inform detections in our security products, and publish research that elevates the Datadog security brand. As part of the Detection & Threat Intelligence group, you will get to work at...
-
Artificial Intelligence Senior Security Engineer
2 weeks ago
Boston, MA, United States Bank of America Full timeArtificial Intelligence Senior Security Engineer Chicago, Illinois;Washington, District of Columbia; Boston, Massachusetts; Denver, Colorado To proceed with your application, you must be at least 18 years of age. Acknowledge Refer a friend To proceed with your application, you must be at least 18 years of age. Acknowledge
-
Boston, MA, United States Bank of America Full timeArtificial Intelligence Senior Security Engineer Chicago, Illinois;Washington, District of Columbia; Boston, Massachusetts; Denver, Colorado To proceed with your application, you must be at least 18 years of age. Acknowledge Refer a friend To proceed with your application, you must be at least 18 years of age. Acknowledge
-
Boston, MA, United States Bank of America Full timeArtificial Intelligence Senior Security Engineer Chicago, Illinois;Washington, District of Columbia; Boston, Massachusetts; Denver, Colorado To proceed with your application, you must be at least 18 years of age. Acknowledge Refer a friend To proceed with your application, you must be at least 18 years of age. Acknowledge
-
Boston, MA, United States Bank of America Full timeArtificial Intelligence Senior Security Engineer Chicago, Illinois;Washington, District of Columbia; Boston, Massachusetts; Denver, Colorado To proceed with your application, you must be at least 18 years of age. Acknowledge Refer a friend To proceed with your application, you must be at least 18 years of age. Acknowledge
-
Cyber Threat Intelligence Consultant
2 weeks ago
Boston, MA, United States BitSight Full timeBitsight is a cyber risk management leader transforming how companies manage exposure, performance, and risk for themselves and their third parties. Companies rely on Bitsight to prioritize their cybersecurity investments, build greater trust within their ecosystem, and reduce their chances of financial loss. Built on over a decade of technological...
-
Sr. Security Operations Engineer
2 weeks ago
Boston, MA, United States OpenGov Full timeOpenGov is the leader in AI and ERP solutions for local and state governments in the U.S. More than 2,000 cities, counties, state agencies, school districts, and special districts rely on the OpenGov Public Service Platform to operate efficiently, adapt to change, and strengthen the public trust. Category-leading products include enterprise asset management,...
-
Principal Security Engineer, Operations
2 weeks ago
Boston, MA, United States CarGurus Full timeWho we are At CarGurus (NASDAQ: CARG), our mission is to give people the power to reach their destination. We started as a small team of developers determined to bring trust and transparency to car shopping. Since then, our history of innovation and go-to-market acceleration has driven industry-leading growth. In fact, we're the largest and fastest-growing...