Talent.com
Threat Detection Engineer
Threat Detection EngineerCData Software • San Antonio, TX, United States
Threat Detection Engineer

Threat Detection Engineer

CData Software • San Antonio, TX, United States
1 day ago
Job type
  • Full-time
Job description

Job Title

Threat Detection Engineer

Relevant Experience

(in Yrs)

6+

Technical / Functional Skills

ELK stack , Fireeye HX, Sysmon, Winlogbeat

Experience Required

6+

Roles & Responsibilities

Technical knowledge to write & develop rules for CIRT analysis, experience on ELK stack , Fireeye HX, Sysmon, Winlogbeat, CI-CD pipeline.

  • Deep understanding of cyber threat actor attacker techniques and tools (such as malware, common attack types) including evasion techniques, reconnaissance, scanning, exploitation, evasion, lateral movement, persistence, and exploits), proficient with MITRE ATT&CK
  • Deep understanding of security operations center processes, tools, and data for analysis & control mitigations, security event timeline analysis and baselining with experience in the analysis of logs and data for the development and implementation of custom detections to counter attacker techniques, known vulnerabilities and evasion methods
  • Security architecture (network topology, firewalls, proxies, web content filtering, wireless, EDR, IDS, IPS, SIEM, SOAR, etc.)
  • Network data sources (full packet analysis, flow data, dns logs, proxy logs, NIDS, etc.)
  • Knowledge and experience with common scripting languages and tools Python, PowerShell, Bash, YAML
  • Deep knowledge of compound logical operations (AND, OR, NOT), regular expressions
  • Experience extracting data from logs, SQL, and APIs
  • Knowledge and experience with tools used to build threat detections (Elastalert, Logstash, Kibana (ELK), Fireeye HX, Sysmon, Winlogbeat, Linux Auditd)
  • Deep understanding and experience with Operating Systems Including : Administration, configuration, registry, processes (Windows, Mac, and Linux)
  • Experience in red team / blue team / incident responder interactions
  • Understanding of CI / CD pipelines
  • Experience with source control tools (Git)

Generic Managerial Skills

Good Communication, Team coordination and Status update to customers

Education

B. Tech

Start date (dd-mmm-yy)

06-July-23

Duration of assignment (in Months)

3 to 6 Months

Work Location (State, City and Zip)

Remote, San Antonio,TX

Rates payable to vendor $ / hr

$70

Key words to search in resume

Develop Use cases for Threats, Python, Bash scripting

Create a job alert for this search

Detection Engineer • San Antonio, TX, United States

Related jobs
Security Engineer

Security Engineer

TradeSTAR • San Antonio, TX, United States
Full-time
Job Position : Security Engineer.Location : San Antonio, TX 78249.Description : Security Engineer - San Antonio | Direct-Hire Opportunity with Leading Integration Team. San Antonio continues to grow in...Show more
Last updated: 1 day ago • Promoted
Defensive Counter Cyber - DCC

Defensive Counter Cyber - DCC

Bristol Bay Native Corporation • San Antonio, TX, United States
Full-time
STS Systems Support, LLC (SSS) is seeking a Defensive Counter Cyber - DCC - Senior to support our mission at Lackland AFB in San Antonio, TX. Perform threat hunting for suspicious activity based on ...Show more
Last updated: 1 day ago • Promoted
Security Detection Engineer

Security Detection Engineer

Artech • Fair Oaks Ranch, TX, United States
Full-time
We are seeking a skilled professional to join our team.This role involves designing, building, and maintaining systems to effectively detect security threats. The ideal candidate will have 6 years o...Show more
Last updated: 1 day ago • Promoted
Travel Emergency Department Registered Nurse

Travel Emergency Department Registered Nurse

GLC On-The-Go • Jourdanton, TX, US
Full-time
GLC On-The-Go is seeking a travel nurse RN ED - Emergency Department for a travel nursing job in Jourdanton, Texas.Job Description & Requirements. Pay package is based on 8 hour shifts and 40 ho...Show more
Last updated: 30+ days ago • Promoted
Cloud Security Engineer - Threat Modeling

Cloud Security Engineer - Threat Modeling

Diverse Lynx • San Antonio, TX, United States
Full-time
Strong understanding of at least one major cloud provider (AWS, Azure, or GCP).Familiarity with threat modeling frameworks (e. STRIDE, DREAD, PASTA, LINDDUN).Knowledge of cloud architecture patterns...Show more
Last updated: 30+ days ago • Promoted
Cyber Security Engineer

Cyber Security Engineer

Abacus Technology • San Antonio, TX, United States
Full-time
Abacus Technology is seeking a Cyber Security Engineer to provide system, application, and personnel security support for the EPASS program at Lackland AFB. Support the system / application authorizat...Show more
Last updated: 6 hours ago • Promoted • New!
GPS - Cyber Security Engineer - Supervising Associate

GPS - Cyber Security Engineer - Supervising Associate

EY • San Antonio, TX, United States
Full-time
At EY, we're all in to shape your future with confidence.We'll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.Join EY and help ...Show more
Last updated: 1 day ago • Promoted
Ambulatory Endoscopy Technologist - Ambulatory Surgery Center

Ambulatory Endoscopy Technologist - Ambulatory Surgery Center

Christus Health • Redwood, TX, US
Part-time
Provides direct and indirect services to the GI patient under the supervision of the professional nurse and performs tasks as necessary for the efficient and effective functioning of the GI room, a...Show more
Last updated: 10 hours ago • Promoted • New!
System Security Engineer

System Security Engineer

Cymertek • San Antonio, TX, United States
Full-time
TS / SCI Full Poly (Please note this position requires full U.We are seeking a highly motivated and detail-oriented System Security Engineer to design, implement, and maintain security measures that ...Show more
Last updated: 1 day ago • Promoted
Remote Text Quality Evaluator

Remote Text Quality Evaluator

Outlier • New Braunfels, TX, United States
Remote
Full-time
Earn up to $15 / hour + performance bonuses.Outlier, a platform owned and operated by Scale AI, is looking for.If you're passionate about improving models and excited by the future of AI, this is you...Show more
Last updated: 7 days ago • Promoted
CST, Certified Surgical Technologist - Ambulatory Surgery Center - PRN

CST, Certified Surgical Technologist - Ambulatory Surgery Center - PRN

Christus Health • Timberwood Park, TX, US
Full-time
Description Summary : Performs a variety of technical duties to assist in preparing and caring for pre-operative patients. Prepares patient skin for surgery in accordance with hospital standards.Main...Show more
Last updated: 7 hours ago • Promoted • New!
Lead AI Security Engineer

Lead AI Security Engineer

Capital Group • San Antonio, TX, United States
Full-time
I can succeed as a Lead AI Security Engineer at Capital Group".As aLeadAISecurity Engineer, you willbe responsible forsecuring Capital Group's enterprise AI Platforms. You'llcollaborate with platfor...Show more
Last updated: 14 days ago • Promoted
Security Engineer (Junior)

Security Engineer (Junior)

Applied Training Solutions LLC Defunct • San Antonio, TX, United States
Full-time
CONTINGENT UPON CONTRACT AWARD.Higher Headquarters Assessments (HHA) : .Applied Training Solutions, LLC (ATS) is developing a team that is contingent upon award. The Security Engineer (Junior) shall b...Show more
Last updated: 6 hours ago • Promoted • New!
Intermediate Cyber Security Engineer (MUST HAVE DOD CLEARANCE)

Intermediate Cyber Security Engineer (MUST HAVE DOD CLEARANCE)

Sandoval Technology Solutions, LLC. • San Antonio, TX, United States
Full-time
We are seeking a Cyber Security Engineer with a DOD clearance to join our team.The ideal candidate will be responsible for protecting our organization's computer network and systems.They will analy...Show more
Last updated: 6 hours ago • Promoted • New!
Senior Cyber Security Engineer (MUST HAVE DOD CLEARANCE)

Senior Cyber Security Engineer (MUST HAVE DOD CLEARANCE)

Sandoval Technology Solutions, LLC. • San Antonio, TX, United States
Full-time
We are seeking a Senior Cyber Security Engineer with active Department of Defense (DoD) clearance to join our team.The ideal candidate will be responsible for designing, implementing, and maintaini...Show more
Last updated: less than 1 hour ago • Promoted • New!
Security Engineer (Mid)

Security Engineer (Mid)

Applied Training Solutions LLC Defunct • San Antonio, TX, United States
Full-time
CONTINGENT UPON CONTRACT AWARD.Higher Headquarters Assessments (HHA) : .Applied Training Solutions, LLC (ATS) is developing a team that is contingent upon award. The Security Engineer (Mid) shall be r...Show more
Last updated: 30+ days ago • Promoted
ICAM and Cyber Security Engineer with Security Clearance

ICAM and Cyber Security Engineer with Security Clearance

Softek International • San Antonio, TX, United States
Full-time
Description Senior Identity & PKI Engineer to design, implement, and maintain enterprise-class identity, credential, and access management (ICAM) solutions. Deep expertise in directory services, PKI...Show more
Last updated: 6 hours ago • Promoted • New!
Infection Preventionist Manager

Infection Preventionist Manager

University Health • PLEASANTON, Texas, United States
Full-time
Infection Preventionist Manager.Lead the Fight Against Infection.Join a mission-driven team committed to protecting patients, staff, and our broader healthcare community through evidence-based infe...Show more
Last updated: 20 days ago • Promoted