Senior Security Detection Engineer

New
G
GitLabCybersecurity software
Remote, United StatesFull-TimeSenior
Salary139,200 - 190,000 USD per year
Apply NowOpens the employer's application page

Job Details

Required Skills
AWSElasticSearchGCPKubernetesTerraform

Requirements

  • Bring SOC, incident response, or detection engineering expertise.
  • Have SIEM or security data lake detection and query expertise.
  • Demonstrate the ability to detect potentially malicious patterns proactively.
  • Collaborate with incident response on incident root-cause analyses and implement new detection opportunities.
  • Have strong AWS or GCP experience.
  • Have some Kubernetes or Terraform experience.
  • Have experience orchestrating teams of agents to write detections.
  • Bring experience with mature detection capabilities, such as Detections as Code, signal versus detection development, risk-based alerting, and behavior analytics.
  • Bring threat-hunting and purple-teaming experience.

Responsibilities

  • Identify MITRE ATT&CK and top threat actor detection gaps, then write behavioral detections to address them.
  • Develop deep expertise in GitLab’s detection methodology, DaC framework, detection types, and quality thresholds.
  • Orchestrate agents across the detection lifecycle and ensure detection quality and consistency.
  • Write and troubleshoot threat detections using a SIEM or data lake platform such as Splunk or Elastic.
  • Collaborate with peer GitLab teams to identify and close security observability improvement opportunities.
  • Work with incident response, red team, and threat intelligence to improve detection coverage.
  • Use, maintain, and build DaC, AI, and process-efficiency automations for the signals engineering program.
  • Turn GitLab threat insights into actionable customer alerts.
View Full Description & ApplyYou'll be redirected to the employer's site
139,200 - 190,000 USD per year
Apply Now