Talent.com
Senior Cyber Threat Detection Engineer - Remote

Senior Cyber Threat Detection Engineer - Remote

UnitedHealth GroupRaleigh, NC, United States
20 hours ago
Job type
  • Full-time
  • Remote
Job description

Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale. Join us to start Caring. Connecting. Growing together.

The Enterprise Information Security (EIS) team is responsible for cybersecurity across our organization. We support our business and members by reducing risk, rapidly responding to threats, focusing on business resiliency and securing new acquisitions.

As a Senior Cyber Threat Detection Engineer, you will be responsible for leading the design, implementation, and maintenance of advanced detection strategies and rules. You will work independently or with a team to analyze security logs, perform threat hunting, and coordinate detection engineering. This role requires a deep understanding of security technologies, threat intelligence, and extensive hands-on experience in cyber threat detection.

You'll enjoy the flexibility to work remotely

  • from anywhere within the U.S. as you take on some tough challenges.

For all hires in the Minneapolis or Washington, D.C. area, you will be required to work in the office a minimum of four days per week.

Primary Responsibilities :

  • Lead the development, testing, tuning, implementation, and maintenance of high-fidelity detection rules for the purpose of identifying potential security threats
  • Utilize a SIEM to monitor and analyze security logs, identify security threats, and investigate complex security incidents
  • Conduct proactive threat hunting, analyze attack techniques, and develop countermeasures
  • Coordinate and lead incident response activities, including containment, root cause analysis, eradication, and recovery
  • Enhance threat intelligence capabilities through research, analysis, and collaboration
  • Configure and optimize security tools and platforms to enhance detection capabilities
  • Collaborate with cross-functional teams to identify relevant security telemetry, integrate new log sources, and enhance existing data sources for improved detection and analysis
  • Conduct research on emerging cyber threats and vulnerabilities to proactively develop detection strategies
  • Plan, develop, and maintain supporting code libraries to enrich security telemetry as it traverses the detection pipeline
  • Perform code reviews for fellow engineers working on the detection pipeline
  • Provide expertise and guidance to junior team members on detection methodologies and best practices
  • Collaborate and build relationships with multiple teams throughout UHG
  • You'll be rewarded and recognized for your performance in an environment that will challenge you and give you clear direction on what it takes to succeed in your role as well as provide development for other roles you may be interested in.

    Required Qualifications :

  • 3+ years of experience and deep understanding of Splunk Enterprise Security platform
  • 3+ years of hands-on experience writing and optimizing detection queries using various query languages, particularly in SPL for Splunk and KQL for Microsoft Defender EDR
  • 3+ years of experience in utilizing SIEM for log analysis, monitoring, and investigation
  • 2+ years of experience working in a Security Operations Center (SOC) environment
  • 2+ years of experience in Detection Engineering or Digital Forensics with broad knowledge of security domain
  • 2+ years of experience identifying attacker tactics, techniques, and procedures
  • 2+ years of experience in intrusion detection, security investigations, and incident response
  • 2+ years of experience using threat intelligence to find suspicious activities proactively and iteratively in available security telemetry
  • 2+ years of experience with log sources, including various network, host, and application logs
  • Demonstrated understanding of modern attack patterns and threat landscape
  • Demonstrated expertise in EDR, email security, and securing SaaS applications
  • Demonstrated excellent analytical and problem-solving skills with the ability to identify and mitigate security risks
  • Demonstrated communication and collaboration skills, with the ability to work effectively in a team environment
  • All employees working remotely will be required to adhere to UnitedHealth Group's Telecommuter Policy.
  • Pay is based on several factors including but not limited to local labor markets, education, work experience, certifications, etc. In addition to your salary, we offer benefits such as, a comprehensive benefits package, incentive and recognition programs, equity stock purchase and 401k contribution (all benefits are subject to eligibility requirements). No matter where or when you begin a career with us, you'll find a far-reaching choice of benefits and incentives. The salary for this role will range from $89,900 to $160,600 annually based on full-time employment. We comply with all minimum wage laws as applicable.

    Application Deadline : This will be posted for a minimum of 2 business days or until a sufficient candidate pool has been collected. Job posting may come down early due to volume of applicants.

    At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission.

    UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations.

    UnitedHealth Group is a drug - free workplace. Candidates are required to pass a drug test before beginning employment.

    Create a job alert for this search

    Detection Engineer • Raleigh, NC, United States

    Related jobs
    • Promoted
    • New!
    Senior Cyber Threat Hunter

    Senior Cyber Threat Hunter

    VirtualVocationsRaleigh, North Carolina, United States
    Full-time
    A company is looking for a Senior Cyber Threat Hunter to enhance its cybersecurity efforts.Key Responsibilities Identify vulnerabilities using penetration testing tools and techniques to secure c...Show moreLast updated: 21 hours ago
    • Promoted
    • New!
    Senior Insider Threat Analyst

    Senior Insider Threat Analyst

    VirtualVocationsDurham, North Carolina, United States
    Full-time
    Key Responsibilities Identify and respond to insider threat security events Analyze alerts from DLP, UEBA, and other monitoring tools to detect anomalous activity Develop insider threat use cas...Show moreLast updated: 11 hours ago
    • Promoted
    Risk Detection Representative

    Risk Detection Representative

    First National Bank of PennsylvaniaRaleigh, NC, United States
    Full-time
    Make a difference - for us and for your future.The Risk Detection Representative is critical in identifying and mitigating potential risks to ensure the security and integrity of the bank's operati...Show moreLast updated: 13 days ago
    • Promoted
    Senior Azure Security Engineer

    Senior Azure Security Engineer

    VirtualVocationsRaleigh, North Carolina, United States
    Full-time
    A company is looking for a Senior Azure Security Engineer to join their team of cloud, security, and compliance experts.Key Responsibilities Lead the continuous monitoring and security operations...Show moreLast updated: 1 day ago
    • Promoted
    Application Security Engineer

    Application Security Engineer

    VirtualVocationsDurham, North Carolina, United States
    Full-time
    A company is looking for an Application Security Engineer - 100% Remote.Key Responsibilities Develop and implement a complete security stack for endpoint management, vulnerability management, and...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Cyber Threat Engineer

    Senior Cyber Threat Engineer

    VirtualVocationsDurham, North Carolina, United States
    Full-time
    A company is looking for a Senior Cyber Threat Detection Engineer, remote position.Key Responsibilities Lead the development and maintenance of high-fidelity detection rules to identify security ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Network Security Engineer

    Senior Network Security Engineer

    VirtualVocationsDurham, North Carolina, United States
    Temporary
    A company is looking for a Senior Network Security Engineer for a fully remote, 5-month contract position.Key Responsibilities Monitor, install, configure, administer, troubleshoot, and maintain ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Threat Intelligence Manager

    Senior Threat Intelligence Manager

    VirtualVocationsDurham, North Carolina, United States
    Full-time
    A company is looking for a Sr Manager, Threat Intelligence to lead proactive cyber defense efforts through intelligence-driven strategies. Key Responsibilities Lead and mentor a team of threat int...Show moreLast updated: 2 days ago
    • Promoted
    Nuclear Cyber Security Engineer

    Nuclear Cyber Security Engineer

    VirtualVocationsRaleigh, North Carolina, United States
    Full-time
    A company is looking for a Lead Cyber Security Engineer 1 - Nuclear.Key Responsibilities Reviewing Critical Digital Asset (CDA) determinations and assessments for technical accuracy Supporting i...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Cybersecurity Engineer

    Senior Cybersecurity Engineer

    VirtualVocationsDurham, North Carolina, United States
    Full-time
    A company is looking for a Senior Cybersecurity Engineer to provide technical leadership and support for cybersecurity operations. Key Responsibilities Lead day-to-day SOC operations, including th...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Senior Threat Research Manager

    Senior Threat Research Manager

    VirtualVocationsDurham, North Carolina, United States
    Full-time
    A company is looking for a Senior Manager, Threat Research.Key Responsibilities Manage a cross-functional team of data analysts, scientists, and security researchers Lead the delivery of new fra...Show moreLast updated: 19 hours ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    VirtualVocationsRaleigh, North Carolina, United States
    Full-time
    Application Security Engineer / Sr.Product Security Engineer (Remote).Key Responsibilities Collaborate with product and engineering teams to integrate security throughout the software development l...Show moreLast updated: 30+ days ago
    • Promoted
    AI Security Engineer

    AI Security Engineer

    VirtualVocationsRaleigh, North Carolina, United States
    Full-time
    A company is looking for a Security Engineer with a focus on AI.Key Responsibilities Support ongoing security operations including monitoring, incident response, and risk assessment Assess and m...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Cyber Threat Analyst

    Senior Cyber Threat Analyst

    VirtualVocationsDurham, North Carolina, United States
    Full-time
    A company is looking for a Senior Cyber Threat Intelligence Analyst to join their cybersecurity team.Key Responsibilities Conduct in-depth analysis of cyber threats, identifying patterns, indicat...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    VirtualVocationsDurham, North Carolina, United States
    Full-time
    A company is looking for a Security Engineer to support corporate security and information technology operations.Key Responsibilities Champion application security program strategy and implementa...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    VirtualVocationsDurham, North Carolina, United States
    Full-time
    A company is looking for a Security Engineer II to provide expertise in cyber security services and risk management.Key Responsibilities Provide daily operational support for various cyber securi...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer

    Security Engineer

    VirtualVocationsRaleigh, North Carolina, United States
    Full-time
    A company is looking for a Security Engineer to enhance its Identity and Access Management (IAM) and fraud programs.Key Responsibilities Design, deploy, and maintain IAM infrastructure using tool...Show moreLast updated: 30+ days ago
    • Promoted
    Adversary Emulation Engineer

    Adversary Emulation Engineer

    VirtualVocationsDurham, North Carolina, United States
    Full-time
    A company is looking for an Adversary Emulation & Defense Engineer.Key Responsibilities : Plan and execute purple team exercises to emulate adversary tactics across the attack lifecycle Develop a...Show moreLast updated: 2 days ago