Staff Security Engineer, Detection and Response
Company
Navan
Location
Remote
Type
Full Time
Job Description
The Staff Security Engineer, Detection and Response you will be responsible for the detection strategy, creation, tuning, validation, and correlation to ensure that we have effective detections in place against an ever-changing threat landscape. This role is hands-on, carrying the responsibility of running the day-to-day security operations tasks including management of SIEM, detection engineering platform and helping incident response.Â
Reporting into the Director of Security Engineering, the ideal candidate will maintain and enhance a consistent and reliable operational security environment and take a proactive security monitoring approach.This role has high visibility and requires a technical individual who can partner with stakeholders and cross-functional teams (Engineering, Product, SRE, IT, Legal, etc) and has the ability to adapt in a dynamic security landscape.Â
What You’ll Do:
- Responsible for building and expanding detection capabilities across a variety of platforms
- Responsible for security event monitoring, management and response, workflows and tasks
- Improve security monitoring and operational tasks by developing measurement capabilities and metrics to track and communicate performance, coverage and risk
- Evaluate existing SIEM rules, filters, events and use cases and adapt them to meet the business requirements
- Mature security operations; drive integration of new log sources, tools and services
- Create, maintain and manage a library of automated playbooks to address new threats and tactics employed by attacker
- Ensure compliance to SLA, process adherence and process improvisation to achieve operational objectives
- Build and maintain tools to proactively monitor and respond to emerging threats
- Assist the Security Incident Response Program with related matters resulting from security investigations
- Participate in key security initiatives as the Subject Matter Expert to ensure alignment with strategies and roadmap
- Develop standard operating procedures and other appropriate documentation to enforce quality and consistency of services being delivered
- Support ongoing security compliance, audit, and certification programs (e.g., PCI, HIPAA, SOC2)
What We’re Looking For:
- Bachelor's degree in Information Security, Computer Science, Computer Engineering, or equivalent work experience
- Minimum 7 years of consistent detection & response experience performing triage/incident response in enterprise SaaS environments
- Expert knowledge of the cyber threat landscape – able to articulate and incorporate into program understanding of major threat categories, motivations, and intent of adversaries against enterprise assets
- Experience in at least one programming language, Python, Go, C, C++. Alternatively deep expertise using low-code automation tools or SOAR platforms is a plus.
- Experienced in driving monitoring and automation in cloud environments, preferably knowledge of AWS.
- Strong understanding of advanced persistent threats, attacker methodologies, attack lifecycle, cyber kill chain, and the MITRE framework.
- Understanding of digital forensics techniques and closely related areas.
- Exceptional collaboration skills and communication skills, with the ability to engage with partners and stakeholders with a variety of perspectives and technical understanding
- GIAC security certification such as GCIA, GCIH, GREM, GPEN (or equivalent), multiple preferred
SaaS / FinTech / anti-fraud experience a plus - Automation first mindset
The posted pay range represents the anticipated low and high end of the compensation for this position and is subject to change based on business need. To determine a successful candidate’s starting pay, we carefully consider a variety of factors, including primary work location, an evaluation of the candidate’s skills and experience, market demands, and internal parity.
For roles with on-target-earnings (OTE), the pay range includes both base salary and target incentive compensation. Target incentive compensation for some roles may include a ramping draw period. Compensation is higher for those who exceed targets. Candidates may receive more information from the recruiter.
Pay Range
$127,500—$230,000 USD
Date Posted
08/21/2024
Views
13
Similar Jobs
Director of Pricing - Garner Health
Views in the last 30 days - 0
Garner Health is a rapidly growing company backed by toptier venture capital firms Their mission is to transform the healthcare economy by delivering ...
View DetailsDirector, Product, Customer, and Lifecycle Marketing - Garner Health
Views in the last 30 days - 0
Garner Health is seeking an experienced Product Marketing Leader to join their team The ideal candidate will lead the product marketing efforts focusi...
View DetailsLinux Support Engineer - Voltage Park
Views in the last 30 days - 0
Voltage Park is seeking a Linux Support Engineer for a fulltime remote position The ideal candidate will have command line level Linux sys administrat...
View DetailsData Analyst - Agero
Views in the last 30 days - 0
Agero a leading B2B whitelabel provider of digital driver assistance services is revolutionizing the vehicle ownership experience through datadriven t...
View DetailsTechnical Architect - CDW
Views in the last 30 days - 0
CDW offers a rewarding career opportunity for a Technical Architect with expertise in ServiceNow The role involves delighting customers by collaborati...
View DetailsSenior React.js & Python Developer - Lemon.io
Views in the last 30 days - 0
Lemonio is a marketplace that connects Senior Developers with handpicked startups in the US and Europe They offer projects based on the developers exp...
View Details