Padmi

Cyber Threat Detection Engineer

BangalorePosted 2 months ago
CybersecuritySeniorFull Time; Regular
Apply at REARC LLC

Opens the source posting on shine.com

Source description

About the role

View original

As a Cybersecurity Threat Detection Engineer at Rearc, you will be responsible for partnering with Rearc customers to design cutting-edge detection strategies and support the development of top-tier, modern cybersecurity monitoring programs. Your role will involve crafting tailored security detections using tools such as SIEM, SOAR, EDR, and NDR services to strengthen clients' cybersecurity efforts. You will be instrumental in developing threat detection capabilities, optimizing detection rules, designing enrichment pipelines, and creating automation workflows to enhance the precision of threat detections. Your proactive communication skills, foundation in DevSecOps, and deep technical expertise will be crucial in driving client success and staying at the forefront of cybersecurity innovations. Key Responsibilities: - Utilize NDR, EDR, real-time streaming, and SIEM technologies to develop robust threat detection capabilities - Build and optimize detection rules leveraging real-time data streaming to enhance detection accuracy - Design enrichment pipelines and automation workflows to enhance the precision of threat detections - Develop correlation logic and automated processes to create high-fidelity threat alerts - Build compliance and recoverability of customer Data Analytics solutions, including SOPs, data onboarding, normalization, enrichment, and system maintenance - Create automation playbooks for incident triage and response - Align detection content with customer-specific Use Case Frameworks and provide metrics on cybersecurity threats impacting their environment - Collaborate with customer cybersecurity teams to cover gaps and enhance enterprise posture - Support enterprise Cybersecurity, Information Technology (IT), and Operational Technology (OT) teams by providing dashboards and other data exploration tools - Stay continually aware of emerging cybersecurity threats and trends, adapting detection strategies as needed - Work closely with customer teams, including Cybersecurity Operations Center (CSOC), Operational Technology (OT), and Incident Response (IR) teams, to ensure detections are actionable and relevant - Provide feedback to improve the customer's security framework and overall security monitoring strategy Qualifications: - 6 years of experience in Cybersecurity with a focus on log streaming, cybersecurity data lakes, SOAR engineering, SIEM engineering, data science, statistical analysis, and threat detection development - Bachelor's degree in Management Information Systems, Computer Science, or a related field - Prior programming experience in Python, SQL, and Apache Spark - Strong technical communication skills, both written and verbal - Solid understanding of common attack techniques and their practical applications - Demonstrated ability to work effectively across multiple teams - A self-starter with a proven ability to thrive in fast-paced environments At Rearc, the mission is to empower engineers with the best tools possible to make an impact within their industry. The company fosters an environment where creativity flourishes, bureaucracy is non-existent, and individuals are encouraged to challenge the status quo. If you are a cloud professional intrigued by the cybersecurity problem space and eager to make a difference, Rearc welcomes you to join their community of problem-solvers dedicated to improving the lives of fellow software engineers. As a Cybersecurity Threat Detection Engineer at Rearc, you will be responsible for partnering with Rearc customers to design cutting-edge detection strategies and support the development of top-tier, modern cybersecurity monitoring programs. Your role will involve crafting tailored security detections using tools such as SIEM, SOAR, EDR, and NDR services to strengthen clients' cybersecurity efforts. You will be instrumental in developing threat detection capabilities, optimizing detection rules, designing enrichment pipelines, and creating automation workflows to enhance the precision of threat detections. Your proactive communication skills, foundation in DevSecOps, and deep technical expertise will be crucial in driving client success and staying at the forefront of cybersecurity innovations. Key Responsibilities: - Utilize NDR, EDR, real-time streaming, and SIEM technologies to develop robust threat detection capabilities - Build and optimize detection rules leveraging real-time data streaming to enhance detection accuracy - Design enrichment pipelines and automation workflows to enhance the precision of threat detections - Develop correlation logic and automated processes to create high-fidelity threat alerts - Build compliance and recoverability of customer Data Analytics solutions, including SOPs, data onboarding, normalization, enrichment, and system maintenance - Create automation playbooks for incident triage and response - Align detection content with customer-specific Use Case Frameworks and provide metrics on cybers

One address, no account. We’ll tell you when matching roles go live.

More at REARC LLC

Related open roles

View all roles