JSOC - Senior Detection Engineer
Tasks
- Author SIGMA rules
- Author detection rules
- Build alert severity framework
- Collaborate with SIEM engineers
- Collaborate with SOC analysts
- Communicate detection decisions
- Conduct log analysis
- Deploy detection rules
- Document detection rationale
- Generate detection metrics
- Maintain detection portfolio
- Maintain runbooks and escalation procedures
- Mentor team members
- Perform threat modeling
- Reduce false-positives
- Retire stale detections
- Test detection rules
- Translate threat intelligence into detections
- Tune detection logic
- Validate alerts with purple team
Perks/Benefits
- Career growth and development opportunities
- Community volunteering opportunities
- Health and wellbeing resources
- Hybrid work environment
- Paid vacation
- Personal days
- Sick days
Skills/Tech-stack
Alert Tuning | Data Exploration | Detection engineering | Detection rules | EQL | ESQL | Elastic Detection Rules | Elastic SIEM | False positive reduction | KQL | Log Analysis | MITRE ATT&CK | Purple Team | SIEM | Sigma | Signal To Noise | Signal-to-noise ratio | Threat Intelligence | Threat modeling
Education
N/A
Related jobs
-
ABAC | AWS | Access Management | Active Directory | Azure Active DirectorySenior-level Full TimeSão Paulo1d ago
-
Sr Analyst, Cybersecurity BRL 130K-160KAlert triage | Automation | Cloud Security | Detection engineering | EDRDental insurance | Food vouchers | Life insurance | Meal vouchers | Medical insuranceSenior-level Full TimeCanoas, RS, BR2d ago
-
API Security | AWS IAM | AWS KMS | AWS Secrets | AWS Secrets ManagerCareer growth | Dental coverage | Disability coverage | Healthcare | Learning and developmentSenior-level Full TimeBrazil R2d ago
-
AWS | Access Management | Application Security | CI/CD | Cloud SecurityBirthday day off | Cultural and leisure partnerships | Dental plan | Health insurance | Home office support allowanceSenior-level Full TimeBrazil4d ago
-
AWS | Access Control | Access Management | Access reviews | CI/CDBirthday day off | Home-office allowance | Life insurance | Meal and food allowances | Medical and dental insuranceSenior-level Full TimeBrazil4d ago
-
Application Scanning | CNAPP | Certificate management | Cloud Security | Cloud Security PostureCollaborative work culture | Incentives | Training and developmentMid-level Full TimeSP, BR5d ago
-
Senior Identity and Security Operations Engineer BRL 126K-138KADFS | API Security | AWS IAM | Access Control | Access ManagementChildcare assistance | Continuous learning platform | Discount club | Extended paternity leave | Free online wellbeing platformSenior-level Full TimeBrazil6d ago
-
Senior Security Infrastructure Engineer USD 60K-114KAI | AWS | Alert Tuning | Application Telemetry | AutomationSenior-level Full TimeBrazil, Remote R6d ago
-
.Net Core | ARM Templates | AWS | AWS CloudFormation | Application SecurityAccess to cutting-edge tools | Collaborative innovation focused environment | Full-time remote work | Inclusive growth oriented culture | Professional development opportunitiesSenior-level Full TimeBrazil R6d ago
-
Cybersecurity Specialist BRL 18K-18KAWS Security | Active Directory | Adversary Emulation | Azure Security | CASB100 Percent In Person Work | Annual bonus | Dental insurance | Gympass | Housing assistanceSenior-level Full TimeSão Paulo, SP7d ago
-
AWS CloudTrail | AWS GuardDuty | AWS IAM | AWS KMS | AWS SecurityCollaborative environment | Equity participation | High growth fintech impact | Professional growth opportunitiesMid-level Full TimeBrazil7d ago
-
Sr. Engineer Cybersecurity Solutions BRL 171K-180KCybersecurity | Cybersecurity Framework | Enterprise Security | Land Mobile Radio | Mobile radioSenior-level Full TimeSao Paulo, Brazil8d ago
-
Solutions Engineer BRL 90K-96KADFS | AWS | Active Directory | Active Directory Services | Amazon Web ServicesMid-level Full TimeBrazil8d ago
-
Attack surface | Attack surface management | CISA KEV | CVSS | EPSSGrowth opportunities | Health and wellness support | Hybrid work model | In-office option | Inclusive cultureMid-level ContractDenver, CO; São Paulo, Brazil8d ago
-
Senior Security Architect BRL 184K-184KApplication Security | CI/CD | Cloud Security | Code Management | DefectDojoAnnual performance bonus | Dental insurance | Health insurance | Hybrid work option | Remote workSenior-level Full TimeBrazil R14d ago
-
Senior Application Security Engineer BRL 184K-184KApplication Security Testing | CI/CD | Checkov | Composition analysis | DefectDojoDental insurance | Health insurance | Performance bonus | Remote work | Stock optionsSenior-level Full TimeBrazil R14d ago
-
800-53 | Access Management | Cloud Governance | Cloud Security | Computer forensicsTravel up to 30 percentMid-level Full TimeChile; Brazil19d ago
-
Network Security Engineer BRL 105K-120K8021X | AWS | Access Control | Ansible | Aruba ClearPassCompany-Paid Holidays | Health and dental insurance | Life insurance | Paid sick leave | Retirement savings planSenior-level Full TimeSão Bernardo Do Campo, Brazil R20d ago
-
Regional Sales Engineer (Remote, BRA) BRL 114K-132KAWS | Antivirus | Azure | Bash | Cloud platformEmployee networks | Paid adoption leave | Paid parental leave | Paid vacation and holidays | Professional development opportunitiesMid-level Full TimeBRA Remote, Brazil R20d ago
-
API querying | AWS | Azure | Dark Web | EDRMid-level Full TimeRecife, PE, BR, 50030-23021d ago
-
Administrador de Banco de Dados BRL 24K-24KApplication Profiling | Csharp | Data Integrity | Data Security | Database ModelingCollaborative work environment | Health and wellness program | Learning platform access | Professional development | Remote work flexibilityEntry-level Full TimeSão Paulo, Brasil R21d ago
-
Email analysis | Indicators of compromise | Mitre Attack | OSINT | PythonAdoption Assistance | Certification completion bonus | Certification reimbursement | Company bonuses | Employee referral bonusMid-level Full TimeSão Paulo, Brazil21d ago
-
Mid-level Full TimeSão Paulo, Brazil23d ago
-
Senior Application Security Engineer MXN 934K-1260KApplication Security | Application Security Testing | CI/CD | Checkov | Cloud NativeRemote workSenior-level Full TimeArgentina, Mexico, Colombia, Brazil R27d ago
-
Consultor Cyber Security - Microsoft Security Solutions Architect (Azure | Senior Associate 2 [tag01] BRL 90K-96KAccess Management | Azure Bicep | Azure Firewall | Azure Key Vault | Azure Landing ZoneMid-level Full TimeAE - Barueri, Brazil1mo ago