Sr. Detection Engineer
Job Description
From fast money movement for over 100 million people who can access Zelleยฎ directly through their banking app to new account opening and beyond - we make a difference in the lives of consumers and businesses every day and enable them to live their best financial lives. And we're only getting started.
With new state-of the-art offices in Scottsdale, AZ (Headquarters) and Chicago, IL - plus a growing presence in San Francisco - we're entering our next big chapter. We focus all hiring efforts in a few states and within driving distance of an office location to enable in-person collaboration when and where possible. Priority hiring locations are Scottsdale, AZ, Illinois, NY tri-state metro area (New Jersey, New York and Connecticut) and San Francisco, CA. On exception we will hire in secondary locations such as District of Columbia, Florida, Georgia, Maryland, Nevada, North Carolina, South Carolina, Texas and Virginia. We are not actively recruiting in Colorado, Rhode Island or Washington.
People matter to us, so we think our best work is done when we're together, in-person. From informal interactions, to sharing ideas, to mentoring and beyond. We also believe in workplace flexibility and empowering teams to determine the rhythm of work to create an inclusive culture. Through the power of innovative collaboration, we offer hybrid and (when necessary) virtual ("remote") workplace models.
Join us and make your mark on what's next in fintech.
*Applicants must be authorized to work for any employer in the United States. We are unable to sponsor an employment Visa for this position.
Overall Purpose
The Detection Engineer is part of a high-performance team, responsible for creating detections, investigating and evaluating threats and malware for a variety of digital devices, computers, storage media, servers, networks, and cloud-based services. The core responsibility of this position is to create alerts that allow the organization to detect and respond to critical or urgent threats.
Essential Functions
- Continuous validation of detections and identification of gaps to ensure comprehensive coverage based on the industry standards (MITRE)
- Solves logging problems by optimization of current logs and onboarding new logs to ensure a logging standard are met
- Impacts the CSIRTS team to be able to respond to threats by creating, tuning and testing high fidelity rules for our SIEM platform
- Actively hunt for APT Tactics, Techniques and Procedures
- Classify/categorize hunting use cases based on MTRE ATT&CK framework and cyber kill chain
- Work with incident detection, incident response, cyber threat intelligence, and other teams to coordinate and create remediation plans
- Uses data collected from a variety of cyber defense tools (e.g., IDS alerts, firewalls, network traffic logs) to analyze events that occur within their environments for the purposes of detecting threats.
- Performs the tracking of malicious threats and groups and their tactics and procedures used
- Performs complex analysis of potentially malicious activities and software
- Performs network/system/application/log intrusion detection analysis and trends
- Maintains awareness of trends in security, regulatory, technology, and operational requirements
- Maintains awareness of the current threat landscape, including adversary tactics, techniques, and procedures.
- Maps attacks to well-known APT groups and reports to leadership ongoing threats and threat landscape of Early Warning Systems
- Represents the Security team at internal and external cybersecurity forums
- Document and update processes and procedures
- Ensures the company's commitment to protect the integrity and confidentiality of systems and data.
Minimum Qualifications
- Education and/or experience typically obtained through completion of a Bachelor's degree or 4 year degree in Computer Science, Engineering, Math or Physical Science.
- Minimum 8 years of information security technology experience
- Expert, progressive experience with Malware analysis and reverse engineering
- Proven expert experience in creating detections to detect advanced threats in an environment
- Expert knowledge of network monitoring and network exploitation techniques
- Expert experience in responding to malicious threats coming from various sources
- Expert proficiency with Networking and security concepts
- Expert proficiency with Windows, Linux/Unix and MacOperating Systems and Cloud environment structures, analytical process of each, and knowledge on common malware tactics for each of these.
- Expert experience with the incident response process and how they triage alerts
- Proven advanced analytical skills across various technologies
- Ability to work within a team environment as well as independently
- Effective communication skills to speak and write for all technology experience levels.
- Effective interpersonal skills, able to comfortably present to peers, coworkers, and customers
- A propensity for continued development of skills though research and training
- Background and drug screen.
Preferred Qualifications
- Additional related education, certifications and/or experience is beneficial
- Working experience in cloud technology security
The above job description is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow instructions and perform other related duties as assigned by their supervisor.
Physical Requirements
Working conditions consist of a normal office environment. Work is primarily sedentary and requires extensive use of a computer and involves sitting for periods of approximately four hours. Work may require occasional standing, walking, kneeling and reaching. Must be able to lift 10 pounds occasionally and/or negligible amount of force frequently. Requires visual acuity and dexterity to view, prepare, and manipulate documents and office equipment including personal computers. Requires the ability to communicate with internal and/or external customers.
Employee must be able to perform essential functions and physical requirements of position with or without reasonable accommodation.
Some of the Ways We Prioritize Your Health and Happiness
- Healthcare Coverage - Competitive medical (PPO/HDHP), dental, and vision plans as well as company contributions to your Health Savings Account (HSA) or pre-tax savings through flexible spending accounts (FSA) for commuting, health & dependent care expenses.
- 401(k) Retirement Plan - Featuring a 100% Company Safe Harbor Match on your first 5% deferral immediately upon eligibility.
- 12 weeks of Paid Parental Leave
- Paid Time Off - Unlimited Time Off for Exempt (salaried) employees, as well as generous PTO for Non-Exempt (hourly) employees, plus 11 paid company holidays
- Maven Family Planning - provides support through your Parenting journey including egg freezing, fertility, adoption, surrogacy, pregnancy, postpartum, early pediatrics, and returning to work.
And SO much more! We continue to enhance our program, so be sure to check our Benefits page here for the latest.
*Unlimited Time Off available to regular, full-time exempt roles only. Our team can share more during the interview process!
Early Warning Services is an Equal Opportunity employer. All qualified applicants and employees will receive consideration for employment without regard to race, color, religion, religious creed, ethnicity, ancestry, national origin, sex, pregnancy, age, marital status, sexual orientation, gender identity or expression, citizenship, ancestry, disability, veteran status, genetic information or any other characteristic protected by law.
Date Posted
12/29/2022
Views
1
Similar Jobs
Platform Engineer - NucleusTeq
Views in the last 30 days - 0
The job description is for a Platform Engineer role The required skills include proficiency in Java and Golang with a preference for familiarity with ...
View DetailsFront End Engineer - Swarmbotics AI
Views in the last 30 days - 0
Swarmbotics AI a company specializing in lowcost swarm robotics for defense and industry is seeking a FrontEnd Engineer The role involves designing an...
View DetailsMapping & Localization Engineer - Swarmbotics AI
Views in the last 30 days - 0
Swarmbotics AI a lowcost swarm robotics company is seeking a skilled SLAM Engineer to design and implement SLAM systems for their unmanned ground vehi...
View DetailsManager, IT Support - California Closets BC
Views in the last 30 days - 0
California Closets founded in 1978 is a leading custom storage solutions provider offering premium space management and exceptional service The compan...
View DetailsCommunity Manager - Sparrow Partners
Views in the last 30 days - 0
Sparrow is a company that aims to create thriving communities for active adults offering thoughtful design stateoftheart construction and engaged mana...
View DetailsClient Relations Manager - Ageless Mens Health
Views in the last 30 days - 0
Ageless Womens Health is seeking a Client Relations Manager to build and maintain patient relationships at their Scottsdale Arizona clinic The ideal c...
View Details