Sr. Embedded Detection Analyst

1 month, 2 weeks ago
Full-time
Mid Level
Cybersecurity
Abnormal AI

Abnormal AI

Abnormal AI provides advanced email security solutions designed to block malicious email attacks, including credential phishing, business email compromise, and account takeover.

Internet Software & Services
Founded 2018

Description

  • Own detection performance outcomes for 3–5 strategic customer accounts, tracking and improving measurable detection KPIs (e.g., precision/recall, false positives/negatives).
  • Serve as a reliable technical partner for customer detection issues, handling high-priority false positive and false negative escalations in collaboration with Customer Success and Sales.
  • Monitor and analyze misclassification patterns using internal detection analysis dashboards and tools to identify root causes.
  • Perform incident triage and alert correlation using IOCs and TTPs to systematically diagnose why detections produce false positives or miss threats.
  • Design and implement detection tuning strategies and adjust thresholds/configurations to optimize precision while maintaining coverage against emerging threats.
  • Generate and present impact reports that demonstrate measurable detection improvements to customers and internal stakeholders.
  • Document investigation findings, tuning approaches, and reusable playbook content to enable team learning and program scaling.
  • Provide feedback to tooling teams on analysis gaps and automation opportunities and support training of other team members by sharing methodologies and investigation insights.

Requirements

  • 2–5 years of experience in SOC operations, detection engineering, incident response, email security analysis, or a related cybersecurity role.
  • Experience with security monitoring/detection platforms (SIEM, EDR, email security tools) — experience with Abnormal Security is a plus.
  • Proven experience triaging security alerts, performing root cause analysis, and tuning detection logic to reduce false positives while maintaining coverage.
  • Practical experience in email attack analysis with the ability to identify and leverage IOCs and TTPs to remediate threats.
  • Deep understanding of precision/recall metrics and their business impact on security operations and customer experience.
  • Demonstrated proficiency with AI tools (e.g., ChatGPT, Claude, Copilot) to enhance productivity, automate tasks, and accelerate investigations.
  • Strong technical writing and communication skills with the ability to explain complex issues to both technical and non-technical audiences and to produce customer-facing reports.
  • Ability to remain calm and responsive during high-pressure situations, including customer escalations and active incidents, with a strong ownership mindset.
  • Basic SQL knowledge and familiarity with Python or data analysis scripting/notebook environments (Databricks, Jupyter, Splunk) (nice to have).
  • Familiarity with threat intelligence concepts, MITRE ATT&CK, common email attack vectors, and relevant security certifications (Security+, Network+, GIAC, CISSP, CEH) is preferred.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Intake & Recruitment Coordinator (ABA)

Reworks Solutions Internet Software & Services

ReWorks Solutions is hiring a remote Intake & Recruitment Coordinator (ABA) to manage client intake, support hiring workflows, and coordinate communication across teams during U.S. business hours.

CRM Monday.com
2 hours, 18 minutes ago

Clinical Application Specialist - New York

Sentec 51-250 Health Care Providers & Services

Sentec is hiring a remote Clinical Application Specialist in the greater New York area to provide clinical education, customer training, and sales support for its respiratory care products while helping drive adoption and revenue growth.

8 hours, 41 minutes ago

Case Manager I

HMA is hiring a Case Manager Nurse to provide holistic care management and utilization review for members across medical and behavioral health cases.

HIPAA
9 hours, 51 minutes ago

Vice President, Customer Success

Lone Wolf Technologies 251-1K Internet Software & Services

Lone Wolf Technologies is seeking a Vice President of Customer Success to lead the transformation of its post-sale customer organization across segmentation, retention, adoption, and scalable service delivery.

CRM
12 hours, 47 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers