Security Monitoring Detection Engineer (R-00143)

1 month ago
Full-time
Mid Level
Data Science and Analytics
True Zero Technologies

True Zero Technologies

True Zero Technologies specializes in cybersecurity programs and software solutions, focusing on proactive defense and IT engineering services.

Internet Software & Services
11-50
Founded 2016

Description

  • Apply detection-as-code practices to security rules using version control, CI/CD, and testing.
  • Map detection strategies to frameworks such as MITRE ATT&CK to identify coverage gaps.
  • Analyze telemetry from endpoint, network, cloud, and identity systems to identify anomalous patterns.
  • Continuously tune and optimize detection rules to reduce noise and improve actionable alerts.
  • Design, develop, test, deploy, and maintain detection rules across the detection lifecycle.

Requirements

  • Strong proficiency in Python scripting, SQL, and regex.
  • Experience with SIEM platforms such as Splunk or Microsoft Sentinel.
  • Understanding of attacker techniques, tactics, and procedures (TTPs).
  • Ability to parse and analyze large-scale log data for anomalies.
  • Background in SOC analysis, incident response, or threat hunting is often required.
  • Experience applying software engineering practices to security detections (preferred implied by the role).

Benefits

  • Competitive salary paid twice per month.
  • Best-in-class medical coverage with 100% of medical premiums covered by True Zero.
  • Company-wide new business incentive programs.
  • Contribution incentives for content such as white papers, blog posts, and internal webinars.
  • 3 weeks of PTO plus 11 paid holidays annually.
  • 401(k) program with 100% company match on the first 4%.
  • Monthly reimbursement for cell phone and home internet costs.
  • Paternity/maternity leave.
  • Investment in training and certifications to expand technical skills.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

DevSecOps Engineer

INflow Federal 51-250 Aerospace & Defense

INflow Federal is seeking a fully remote DevSecOps Engineer to support an enterprise case management solution for Department of Defense mission partners by securing and automating cloud-based CI/CD and infrastructure operations in AWS GovCloud.

Agile AWS Bash CI/CD CloudFormation Docker ELK Stack Git GitLab CI Helm Jenkins Kubernetes PowerShell Prometheus Python Terraform
1 hour, 36 minutes ago

Lead Security Engineer, Enterprise Security

Klaviyo 1K-5K IT Services

Klaviyo is hiring a Lead Security Engineer to secure its corporate systems and platforms across SaaS, identity, endpoints, Zero Trust networking, and perimeter security.

AWS Azure Cloudflare CrowdStrike GCP OAuth Secrets Management Terraform Vercel
2 hours, 16 minutes ago

Senior Detection and Response Engineer

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is hiring a Senior Detection and Response Engineer to build and operate defensive security controls that protect the infrastructure supporting its defense technology products.

AWS Azure CI/CD CloudFormation Docker GitHub Go Kubernetes Network Security Python Rust SQL Terraform
3 hours, 57 minutes ago

Lead Security Engineer, Enterprise Security

Klaviyo 1K-5K IT Services

Klaviyo is hiring a Lead Security Engineer to secure its corporate systems and platforms across SaaS, identity, endpoints, Zero Trust networking, and perimeter defenses in a hands-on technical leadership role.

AWS Azure Cloudflare CrowdStrike GCP OAuth OpenID Connect Secrets Management Terraform Vercel
4 hours, 30 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers