2 days ago
Boston, MA, USAMid Level / Senior
H1B Sponsor
Base Salary
$130k - $170k/yr
Responsibilities
- Design, build, and scale high-signal detections across various layers using Detection-as-Code principles.
- Develop and maintain detection logic aligned to real-world attacker behavior and frameworks.
- Translate threat intelligence into actionable detections and validate effectiveness through testing.
- Build behavioral detections to protect against various threats such as account takeover and data exfiltration.
- Continuously improve detection quality by tuning alerts and implementing automated enrichment.
- Define and track detection KPIs and implement processes to measure detection health.
- Support and lead incident investigations, including root cause analysis.
- Contribute to the on-call rotation while reducing operational overhead through automation.
- Partner with various teams to ensure systems launch with strong monitoring coverage.
- Map detections to threat models and improve coverage as the environment scales.
- Explore and apply advanced analytics and machine learning techniques to enhance detection fidelity.
- Stay ahead of evolving threats by researching emerging attack techniques.
Requirements
- 4+ years of hands-on experience in Information Security, focusing on detection engineering.
- Demonstrated experience writing and tuning detections across various environments.
- Familiarity with detection frameworks and tooling such as YARA and SIGMA.
- Strong understanding of attacker techniques across identity compromise and data exfiltration.
- Expertise analyzing and building detections on cloud and SaaS telemetry.
- Strong scripting skills in languages such as Python, Go, or PowerShell.
- Ability to operate effectively in a fast-paced, high-growth environment.
- Strong analytical mindset with a systems-thinking approach.
- Experience supporting incident response investigations and participating in on-call rotations.
- Experience building detective controls for consumer-facing platforms is a plus.
- Effective communicator who can collaborate with engineers and explain detection strategy.
- Familiarity with applying data analysis or machine learning techniques to security detection is a plus.
- Bachelor’s degree in Computer Science, Information Security, or a related field is preferred.