Senior Detection Engineer
Remote
UltraViolet Cyber
Evolve your security operations into your proactive risk reducing superpower through the combination of MDR with Red Teams that validate every alert.
Make a difference here.
UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security operations solutions. Founded and operated by security practitioners with decades of experience, the UltraViolet Cyber security-as-code platform combines technology innovation and human expertise to make advanced real-time cybersecurity accessible for all organizations by eliminating risks of separate red and blue teams.
By creating continuously optimized identification, detection, and resilience from today’s dynamic threat landscape, UltraViolet Cyber provides both managed and custom-tailored unified security operations solutions to the Fortune 500, Federal Government, and Commercial clients. UltraViolet Cyber is headquartered in McLean, Virginia, with global offices across the U.S. and in India.
UltraViolet Cyber is seeking a Senior Detection Engineer to add to our existing team.Primary responsibilities will require: (i) interpreting threat intelligence; (ii) threat hunting; (iii) develop and maintain detection content. This role requires a deep understanding of cyber threats, attack tactics and techniques, and detection as code methodologies. Detection content created within this role will include signatures, rules, and indicators of compromise (IOCs).
We sincerely thank all applicants in advance for submitting their interest in this position. We know your time is valuable.
UltraViolet Cyber welcomes and encourages diversity in the workplace regardless of race, gender, religion, age, sexual orientation, gender identity, disability, or veteran status.
If you want to make an impact, UltraViolet Cyber is the place for you!
UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security operations solutions. Founded and operated by security practitioners with decades of experience, the UltraViolet Cyber security-as-code platform combines technology innovation and human expertise to make advanced real-time cybersecurity accessible for all organizations by eliminating risks of separate red and blue teams.
By creating continuously optimized identification, detection, and resilience from today’s dynamic threat landscape, UltraViolet Cyber provides both managed and custom-tailored unified security operations solutions to the Fortune 500, Federal Government, and Commercial clients. UltraViolet Cyber is headquartered in McLean, Virginia, with global offices across the U.S. and in India.
UltraViolet Cyber is seeking a Senior Detection Engineer to add to our existing team.Primary responsibilities will require: (i) interpreting threat intelligence; (ii) threat hunting; (iii) develop and maintain detection content. This role requires a deep understanding of cyber threats, attack tactics and techniques, and detection as code methodologies. Detection content created within this role will include signatures, rules, and indicators of compromise (IOCs).
What You'll Do:
- Develop and maintain threat detection content on a variety of SIEM and cybersecurity solutions
- Proactively identify threats across a wide range of customer environments
- Analyze and interpret threat intelligence to identify emerging threats
- Test and validate threat detection content to ensure high fidelity and low noise rules
- Leverage output from threat intelligence and offensive security teams for development of detection content
- Prepare and present reporting to senior management depicting effectiveness of detection content
What You Have:
- Bachelors in Computer Science or related field
- GCTI, GCIA or GCIH
- Minimum 3 years of experience in threat intelligence, threat hunting, or related field
- Strong knowledge of cyber threats, attack techniques, and detection methodologies
- Advanced experience with security technologies such as SIEM, EDR, and XDR
- Strong knowledge of the MITRE ATT&CK Framework and the Cyber Kill Chain
- Experience with common query languages such as Lucene, KQL, and SQL
- Experience with scripting languages such as Python and Javascript
- Excellent written and oral communication skills
We sincerely thank all applicants in advance for submitting their interest in this position. We know your time is valuable.
UltraViolet Cyber welcomes and encourages diversity in the workplace regardless of race, gender, religion, age, sexual orientation, gender identity, disability, or veteran status.
If you want to make an impact, UltraViolet Cyber is the place for you!
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
2
0
0
Category:
Security Engineering Jobs
Tags: Computer Science Cyber Kill Chain EDR GCIA GCIH GCTI JavaScript MITRE ATT&CK Offensive security Python Scripting SIEM SQL Threat detection Threat intelligence XDR
Region:
Remote/Anywhere
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Information System Security Officer jobsInformation Security Specialist jobsSenior Security Analyst jobsSenior Cloud Security Engineer jobsSystems Engineer jobsSenior Cybersecurity Engineer jobsSystems Administrator jobsSenior Information Security Analyst jobsInformation Security Manager jobsCyber Security Specialist jobsSenior Network Security Engineer jobsIT Security Analyst jobsChief Information Security Officer jobsIT Security Engineer jobsSecurity Consultant jobsSecurity Specialist jobsInformation System Security Officer (ISSO) jobsInformation Systems Security Engineer jobsSenior Information Security Engineer jobsSenior Cyber Security Engineer jobsSenior Product Security Engineer jobsCyber Threat Intelligence Analyst jobsCyber Security Architect jobsSecurity Operations Analyst jobsCybersecurity Specialist jobs
TS/SCI jobsEDR jobsSaaS jobsBash jobsJava jobsTop Secret jobsThreat detection jobsTerraform jobsSplunk jobsRMF jobsIDS jobsSDLC jobsIPS jobsSOC 2 jobsSQL jobsMalware jobsFinance jobsForensics jobsCompTIA jobsDocker jobsActive Directory jobsGIAC jobsIntrusion detection jobsITIL jobsDoDD 8570 jobs
VPN jobsOWASP jobsHIPAA jobsCRISC jobsIT infrastructure jobsAnsible jobsTCP/IP jobsCCSP jobsData Analytics jobsClearance Required jobsNIST 800-53 jobsOSCP jobsMITRE ATT&CK jobsBanking jobsZero Trust jobsCISO jobsUNIX jobsSOAR jobsDNS jobsIndustrial jobsJira jobsSOX jobsEndpoint security jobsPolygraph jobsJavaScript jobs