Senior Security Detection Engineer
New
G
GitLabCybersecurity software
Remote, United StatesFull-TimeSenior
Salary139,200 - 190,000 USD per year
Apply NowOpens the employer's application page
Job Details
- Required Skills
- AWSElasticSearchGCPKubernetesTerraform
Requirements
- Bring SOC, incident response, or detection engineering expertise.
- Have SIEM or security data lake detection and query expertise.
- Demonstrate the ability to detect potentially malicious patterns proactively.
- Collaborate with incident response on incident root-cause analyses and implement new detection opportunities.
- Have strong AWS or GCP experience.
- Have some Kubernetes or Terraform experience.
- Have experience orchestrating teams of agents to write detections.
- Bring experience with mature detection capabilities, such as Detections as Code, signal versus detection development, risk-based alerting, and behavior analytics.
- Bring threat-hunting and purple-teaming experience.
Responsibilities
- Identify MITRE ATT&CK and top threat actor detection gaps, then write behavioral detections to address them.
- Develop deep expertise in GitLab’s detection methodology, DaC framework, detection types, and quality thresholds.
- Orchestrate agents across the detection lifecycle and ensure detection quality and consistency.
- Write and troubleshoot threat detections using a SIEM or data lake platform such as Splunk or Elastic.
- Collaborate with peer GitLab teams to identify and close security observability improvement opportunities.
- Work with incident response, red team, and threat intelligence to improve detection coverage.
- Use, maintain, and build DaC, AI, and process-efficiency automations for the signals engineering program.
- Turn GitLab threat insights into actionable customer alerts.
View Full Description & ApplyYou'll be redirected to the employer's site