Senior Security Content Engineer
New
B
BlueVoyantCybersecurity
Remote, USFull-TimeSenior
Salary not disclosed
Apply NowOpens the employer's application page
Job Details
- Experience
- 10+ years of experience in IT or cybersecurity preferred
- Required Skills
- PythonGitRubyCI/CDJSON
Requirements
- Expert experience writing detection signatures or algorithms.
- Expert-level proficiency in analyzing event logs and identifying indicators of compromise.
- Hands-on experience with Microsoft Azure, Sentinel, Defender, and related tools.
- Deep experience with Sentinel Incidents, Workbooks, Hunting Queries, and Notebooks.
- Proficiency in Kusto Query Language (KQL) or similar.
- Experience with complex JSON data structures.
- Proficiency in development tools including Git, IDEs, and CI/CD pipelines.
- Expert scripting skills in Python, Ruby, or similar languages.
- Experience in digital forensics and blue team operations.
- Expert understanding of network protocols and infrastructure.
- Bachelor's degree in a related field or equivalent professional experience; Master's preferred.
Responsibilities
- Enrich security signals to improve SOC efficiency and outcomes.
- Research threat actors and attack vectors to develop detection content.
- Design and build automation content for onboarding new products.
- Design and build complex detection analytic rules.
- Assist clients in testing and tuning detection logic to reduce false positives.
- Perform expert-level global tuning for complex alerts.
- Identify and promote reusable content across clients.
- Lead integration initiatives to optimize log ingestion and reduce noise.
- Deliver research-driven content such as queries, signatures, rules, and knowledge base articles.
- Develop supplemental detection coverage for high-risk vulnerabilities and exploits.
View Full Description & ApplyYou'll be redirected to the employer's site