Posted in

Senior Detection Engineer

Senior Detection Engineer

CompanyThe Trade Desk
LocationNew York, NY, USA
Salary$102400 – $187700
TypeFull-Time
DegreesBachelor’s
Experience LevelSenior

Requirements

  • Bachelor’s degree in related field or equivalent years of experience required.
  • 5+ years of experience in a dedicated cybersecurity role, or a combination of equivalent information technology experience, training, and education.
  • Experience working with telemetry from a wide variety of sources including Endpoint Detection and Response (EDR) Data Loss Prevention (DLP), SaaS applications, databases, identity providers, and cloud platforms.
  • Proficiency in at least one general purpose programming language.
  • Experience building threat detections for large cloud infrastructures and workloads running in Kubernetes.
  • Experience with at least one major public cloud provider, such as AWS, Azure, or GCP.
  • Experience with SIEM, logging, and query development in the security context.
  • Experience working with code to automate redundant tasks and integrating with new tools and technology relatively quickly.
  • The ability to relay the same information to a developer, accountant, and executive in a tailored fashion.
  • Experience working across differing but complimentary disciplines such as IT, Network, Database, Engineering/Dev, Product Security, Compliance, etc.

Responsibilities

  • Partner with the Incident Response, Engineering, and Product Management teams to engineer new detections and high-quality alerting mechanisms to improve response and adapt to the ever-evolving threat landscape.
  • Build and maintain a detection and response pipeline including log collection, data processing and ingestion, detection content development, and alert/case management.
  • Consume security assessments produced by Infrastructure Security and Application Security and develop detections for identified abuse-cases.
  • Develop automations to enrich and respond to security alerts.
  • Identify, prioritize, and remediate logging and visibility gaps.
  • Identify trends and build observability into areas that need it.
  • Consult on technology initiatives to provide industry best-practice as a baseline for security observability and detections.
  • Support our internal customers through world-class communication and customer service.
  • Proactively improve our security frameworks, documentation, tools, processes, and methodologies.

Preferred Qualifications

    No preferred qualifications provided.