Detection & Response Security Engineer, Threat Intelligence
4 days ago
Summary:
Meta Security is looking for a threat intelligence investigator with extensive experience in investigating cyber threats with an intelligence-driven approach. You will be proactively responding to a broad set of security threats, as well as tracking actor groups with an interest or capability to target Meta and its employees. You will also be identifying the gaps in current detections and preventions by long-term intelligence tracking and research, and working with cross-functional stakeholders to improve Metas security posture. You will help the team establish, lead and execute multi-year roadmaps that improve research efficiency and quality across the team, and drive improvements to stakeholder management across a broad range of intelligence requirements.
Responsibilities- Influence and align the teams vision and strategy. Collaboratively prioritize and deliver specific multi-year roadmaps and projects
- Build, cultivate, and maintain impactful relationships with intelligence stakeholders to identify and facilitate solutions to increase the impact of the team's work
- Refine operational metrics, key performance indicators, and service level objectives to measure Intelligence research and services
- Lead cross-functional projects to improve the security posture of Metas infrastructure, such as red team operations, surface detection coverage expansion and vulnerability management discussions
- Track threat clusters posing threats to Metas infrastructure and employees, and identify, develop and implement countermeasures on our corporate network
- Investigate, mitigate, and forecast emerging technical trends and communicate effectively with actionable suggestions to different types of audiences
- Work closely with incident responders to provide useful and timely intelligence to enrich ongoing investigations
- Improve the tooling of threat cluster tracking and intelligence data integration to existing systems
Minimum Qualifications
- 8+ years threat intelligence experience
- B.S. or M.S. in Computer Science or related field, or equivalent experience
- Be a technical and process subject matter expert regarding Security Operations and Threat Intelligence services
- Experience developing and delivering information on threats, incidents and program status for leadership
- Expertise with campaign tracking techniques and converting tracking results to long term countermeasures
- Expertise with threat modeling frameworks, such as Diamond Model or/and MITRE ATT&CK framework
- Experience intelligence-driven hunting to spot suspicious activities in the network and identify potential risks
- Proven track record of managing and executing on short term and long term projects
- Ability to work with a team spanning multiple locations/time zones
- Ability to prioritize and execute tasks with minimal direction or oversight
- Ability to think critically and qualify assessments with solid communications skills
- Coding or scripting experience in one or more scripting languages such as Python or PHP
- Experience recruiting, building, and leading technical teams, including performance management
- Experience close collaborating with incident responders on incident investigations
- Experience in threat hunting including leveraging intelligence data to proactively identify and iteratively investigates suspicious behavior across networks and systems
- Familiarity with malware analysis or network traffic analysis
- Familiarity with nation-state, sophisticated criminal, or supply chain threats
- Familiarity with file-based or network-based rules and signatures for detection and tracking of complex threats, such as YARA or Snort
- Experience in one or more query languages such as SQL
- Experience authoring production code for threat intelligence tooling
- Experience conducting large scale data analysis
- Experience working across the broader security community
Public Compensation
Public Compensation: $177,000/year to $251,000/year + bonus + equity + benefits
Industry: Internet
Equal OpportunityMeta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment.
Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
#J-18808-Ljbffr-
Insider Threat Security Engineer
1 week ago
Jefferson City, MO, United States META Full timeSummary: Join our dynamic Insider Trust team at Meta Security dedicated to combating insider threats aimed at protecting our valuable data. We are on a mission to proactively detect, investigate, and address insider threats, covering a diverse range of abuse cases such as user data misuse, intellectual property theft, and sensitive information leaks. We are...
-
Threat Intelligence Engineer
2 days ago
Kansas City, MO, United States Tenex.AI Inc Full timeCompany Summary: TENEX.AI is an AI-native, automation-first, built-for-scale Managed Detection and Response (MDR) provider. We are a force multiplier for defenders, helping organizations enhance their cybersecurity posture through advanced threat detection, rapid response, and continuous protection. Our team is comprised of industry experts with deep...
-
Lead Threat Intelligence Analyst
1 day ago
Jefferson City, MO, United States Oracle Full timeJob Description Are you passionate about cybersecurity and eager to make a difference? As a Lead Threat Intelligence Analyst, you will play a crucial role in tracking the activities of threat actors. You will independently monitor multiple groups and lead vital operational activities when necessary. This position offers the exciting opportunity to work with...
-
Director - Cyber Threat Operations
4 days ago
Jefferson City, MO, United States SHI GmbH Full timeAbout Us As a digital and cybersecurity services company, Stratascale exists to help the Fortune 1000 transform the way they use technology to advance the business, generate revenue, and respond quickly to market demands. We call it Digital Agility. To learn more about how we're shaping the future of digital business and a more secure world, visit...
-
Product Security Engineer, AI
1 week ago
Jefferson City, MO, United States META Full timeSummary: Meta's Product Security team is seeking a experienced hacker who derives purpose in life by revealing potential weaknesses and then crafting creative solutions to eliminate those weaknesses. Your skills will be the foundation of security initiatives that protect the security and privacy of over two billion people. You will be relied upon to provide...
-
Product Security Engineer, Instagram
7 days ago
Jefferson City, MO, United States META Full timeSummary: The Instagram Security Ecosystems team is seeking a product-focused security engineer interesting in enabling Instagram product teams to develop features with a focus on security and user safety. You will be relied upon to directly work with Instagram engineers, hardening both product features and our protective frameworks that make life harder for...
-
Managed Services Security Engineer
5 days ago
Kansas City, MO, United States GFI Digital Full timePOSITION SUMMARY: The Managed Service Security Engineer is responsible for monitoring, detecting, and responding to security incidents to protect client environments. This role involves the identification of vulnerabilities, analyzing security risks, responding to security operations service tickets, and implementing protective measures. The Security...
-
Managed Services Security Engineer
2 weeks ago
Kansas City, MO, United States GFI Digital Full timePOSITION SUMMARY: The Managed Service Security Engineer is responsible for monitoring, detecting, and responding to security incidents to protect client environments. This role involves the identification of vulnerabilities, analyzing security risks, responding to security operations service tickets, and implementing protective measures. The Security...
-
Application Security Engineer
2 weeks ago
Jefferson City, MO, United States ISC2 Full timeOverview Your Future. Secured. ISC2 is a force for good. As the world's leading nonprofit member organization for cybersecurity professionals, our core values - Integrity, Advocacy, Commitment, Inclusion, and Excellence - drive everything we do in support of our vision of a safe and secure cyber world. Our globally recognized, award-winning portfolio of...
-
Security Architect
2 weeks ago
Jefferson City, MO, United States Oracle Full timeJob Description About the role You will design and govern security reference architectures, standards, and controls for cloud primitives (compute, network, storage), identity and access, data protection, container/Kubernetes platforms, AI/ML systems, and developer platforms. You will lead high-impact design reviews, threat modeling, and cryptographic...