More jobs:
Senior Software Engineer - Cybersecurity
Job Description & How to Apply Below
Roles and Responsibilities Detection & Automation Development:
Develop and fine-tune detection content within our SIEM platform to enhance threat detection and response capabilities.
Design and build automated playbooks in our SOAR platform for common incident response use cases.
Integrate data sources into Splunk and ensure normalization using the Common Information Model (CIM).
Write custom scripts (primarily in Python) for integrations, automation, and enrichment tasks.
Team Leadership & Mentorship:
Lead and mentor analysts on detection logic, search optimization, and investigation best practices.
Documentation &
Collaboration:
Create and maintain documentation for detections, use cases, and automation processes.
Collaborate with Threat Intelligence, Incident Response, and Dev Sec Ops teams to align detection and response efforts.
Continuous Improvement & Threat Awareness:
Continuously assess and improve our security posture through automation and process refinement.
Stay current on threat trends, emerging technologies, and advancements in detection and SOAR use cases.
All About You Technical Proficiency: Strong proficiency in Python for scripting, development, and automation.
Knowledge of REST APIs and experience building integrations with third-party tools.
Security Operations Expertise: Solid understanding of security operations, SIEM, and incident response workflows .
Experience in designing detection rules, risk-based alerting, and notable event tuning.
Familiarity with the MITRE ATT&CK framework and its application to detection development.
Experience integrating various security tools and data sources with Splunk .
Leadership & Mentorship:
Ability to mentor and guide junior team members on detection logic and investigation strategy.
Preferred Qualifications (Plus points):
Prior experience in Security Engineering, Security Operations Center (SOC), or Threat Detection roles.
Deep expertise in Splunk Enterprise Security (ES) and Splunk SOAR (formerly Phantom) .
Position Requirements
10+ Years
work experience
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here:
×