Senior Detection Engineer

Zscaler Red Canary
3d$119,000 - $127,000Remote

About The Position

Serving thousands of enterprise customers around the world including 45% of Fortune 500 companies, Zscaler (NASDAQ: ZS) was founded in 2007 with a mission to make the cloud a safe place to do business and a more enjoyable experience for enterprise users. As the operator of the world’s largest security cloud, Zscaler accelerates digital transformation so enterprises can be more agile, efficient, resilient, and secure. The pioneering, AI-powered Zscaler Zero Trust Exchange™ platform, which is found in our SASE and SSE offerings, protects thousands of enterprise customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location. Named a Best Workplace in Technology by Fortune and others, Zscaler fosters an inclusive and supportive culture that is home to some of the brightest minds in the industry. If you thrive in an environment that is fast-paced and collaborative, and you are passionate about building and innovating for the greater good, come make your next move with Zscaler. The Red Canary Detection Engineering team at Zscaler continues to push the boundaries of threat detection and response with a unique combination of operations, threat research, and engineering in tight integration with the development team that designs our analysis platform and the Red Canary Threat Detection Engine. The security landscape is always shifting and introducing new adversaries and our team operates 24/7 to track down threats in endpoint data and deliver fast and practical detections to our customers. We're looking for an experienced Senior Detection Engineer to join our Detection Engineering team. Reporting to the Manager, Detection Engineering, you'll be responsible for:

Requirements

  • Strong experience in Endpoint (MDR) and one or more of the following functional areas: Cloud/SaaS, Identity, Email or SIEM
  • Proven experience with automation and orchestration to effectively handle an extreme volume of telemetry and logs in a timely and efficient manner
  • Strong analytical thought-process and critical thinking skills to translate disparate activity into the realm of threat analysis
  • Experience using query languages and understanding syntax across EDR or other security platforms (SQL, K, Lucene, etc.)
  • Experience creating and tuning detectors/rules using commonly known tools such as YARA, SIGMA, Snort, Splunk, Elastic, etc.
  • Ability to work from Wednesday - Saturday from 5pm MST - 3am MST.

Nice To Haves

  • You enjoy impacting the Infosec community through writing blogs, participating in webinars, and presenting at conference talks
  • Experience using version control software for the deployment of detectors, rules, or other automations (GitHub, CircleCi, etc)
  • Previous Red Team experience

Responsibilities

  • Using Red Canary’s detection platform to analyze EDR telemetry, alerts, and log sources across several detection domains (Endpoint, Identity, SIEM, Cloud/SaaS, etc.)
  • Publishing threats for customers using concisely-written communication while effectively conveying key and important indicators
  • Researching coverage opportunities then creating new detectors, and tune existing ones.
  • Improving the Detection Engineering workflow through orchestration & automation
  • Providing mentorship to your peers and communicate effectively with others for efficient cross-team collaboration
  • Help lead projects to improve the quality of life for both the customer and the CIRT

Benefits

  • Various health plans
  • Time off plans for vacation and sick time
  • Parental leave options
  • Retirement options
  • Education reimbursement
  • In-office perks, and more!
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service