Detection Engineer

1 Month ago • 3 Years +

Job Summary

Job Description

As a Detection Engineer at Optiv, you will be at the forefront of identifying and mitigating threats. This role involves analyzing logs, developing advanced detection strategies, and building intricate YARA-L 2.0 queries. You will guide clients through onboarding, optimize threat detection, and collaborate with threat analysts and intelligence teams. Furthermore, you will be expected to share your expertise by training clients and internal teams on best practices. This role requires a deep understanding of SIEM systems, Google SecOps, regular expressions, automation, and various security tools.
Must have:
  • 3+ years managing SIEM systems like QRadar, Exabeam, or Splunk.
  • 1+ year expertise in writing Google SecOps threat detection rules.
  • Experience extracting data from logs with complex regex.
  • Experience with Detection/Content Libraries and CI/CD processes.
Good to have:
  • GIAC, CISSP, CCSE, or CISA certifications are a plus.
  • In-depth knowledge of security logging, EDRs, firewalls, directory services and major applications.
Perks:
  • Company commitment to Diversity, Equality, and Inclusion
  • Work/life balance
  • Professional training resources
  • Creative problem-solving and complex projects
  • Volunteer Opportunities

Job Details

Become a Threat Hunting Mastermind: Join the Optiv Detection Engineering Team.

At Optiv, we’re on a mission to help our clients make their businesses more secure. We’re one of the fastest growing companies in a truly essential industry. 

In your role at Optiv, you’ll be inspired by a team of the brightest business and technical minds in cybersecurity. We are passionate champions for our clients and know from experience that the best solutions for our client’s needs come from working hard together. As part of our team, your voice matters, and you will do important work that has an impact, on people, businesses, and nations. Our industry and our company move fast, and you can be sure that you will always have room to learn and grow. We’re proud of our team and the important work we do to build confidence for a more connected world. 

How you'll make an impact:

  • Uncover hidden threats: Be the first to identify malicious activity through log analysis and advanced detection strategies. 

  • Craft cutting-edge defenses: Build intricate YARA-L 2.0 queries and detection rules using a Detection-as-Code approach. 

  • Empower clients: Guide them through onboarding, optimize threat detection, and share your expertise. 

  • Collaborate with the best: Partner with threat analysts, intelligence teams, and responders to stay ahead of attackers. 

  • Become a thought leader: Train clients and internal teams on best practices and showcase your Google SecOps mastery. 

What we're looking for:

  • SIEM Savvy: 3+ years managing and maintaining SIEM systems like QRadar, Exabeam, Splunk, etc. 

  • SecOps Champion: 1+ year expertise in writing Google SecOps threat detection rules and navigating its architecture. 

  • Regex Rockstar: Extract valuable data from structured and unstructured logs with complex regular expressions. 

  • Automation Advocate: Experience with Detection/Content Libraries, CI/CD processes and version control systems. 

  • Security Swiss Army Knife: In-depth knowledge of security logging, EDRs, firewalls, directory services, and major applications. 

  • Certified Professional (Optional): GIAC, CISSP, CCSE, CISA, or other relevant security certifications are a plus. 

  • Team Player & Adaptable: Thrive in a collaborative environment and handle on-call support with flexibility. 

What you can expect from Optiv

  • A company committed to championing Diversity, Equality, and Inclusion through our Employee Resource Groups.
  • Work/life balance
  • Professional training resources
  • Creative problem-solving and the ability to tackle unique, complex projects
  • Volunteer Opportunities. “Optiv Chips In” encourages employees to volunteer and engage with their teams and communities.
  • The ability and technology necessary to productively work remotely/from home (where applicable)

EEO Statement

Optiv is an equal opportunity employer. All qualified applicants for employment will be considered without regard to race, color, religion, sex, gender identity or expression, sexual orientation, pregnancy, age 40 and over, marital status, genetic information, national origin, status as an individual with a disability, military or veteran status, or any other basis protected by federal, state, or local law.

Optiv respects your privacy. By providing your information through this page or applying for a job at Optiv, you acknowledge that Optiv will collect, use, and process your information, which may include personal information and sensitive personal information, in connection with Optiv’s selection and recruitment activities.  For additional details on how Optiv uses and protects your personal information in the application process, click here to view our Applicant Privacy Notice. If you sign up to receive notifications of job postings, you may unsubscribe at any time.

Similar Jobs

Moving Walls India - Full Stack Developer

Moving Walls India

Chennai, Tamil Nadu, India (Remote)
3 Years ago
Thales - Senior Software Engineer – Full stack

Thales

Noida, Uttar Pradesh, India (Hybrid)
1 Month ago
Boomi  - Manager 2, Software Engineering

Boomi

Bengaluru, Karnataka, India (Hybrid)
1 Month ago
Philips - Software Technologist I

Philips

Bengaluru, Karnataka, India (On-Site)
2 Weeks ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Postman - Senior Security Engineer, Application Security

Postman

San Francisco, California, United States (Hybrid)
1 Month ago
Interactive Brokers - Senior DevOps/Software Engineer

Interactive Brokers

Greenwich, Connecticut, United States (Hybrid)
8 Months ago
Enphase Energy - Senior Front-end Design (Drupal)

Enphase Energy

Bengaluru, Karnataka, India (On-Site)
6 Months ago
Crunchyroll - Staff iOS Games Integration Engineer

Crunchyroll

San Francisco, California, United States (Hybrid)
1 Month ago
Rockstar Games - Associate Principal Technical Artist: Performance Capture Pipeline

Rockstar Games

Edinburgh, Scotland, United Kingdom (On-Site)
8 Months ago
ARHS - Cloud & S3 Storage Architect

ARHS

Luxembourg (On-Site)
1 Month ago
fortis games - Staff Full-Stack Engineer (Game Team)

fortis games

Romania (Remote)
1 Month ago
Zenoti - Senior DevOps Engineer

Zenoti

Hyderabad, Telangana, India (On-Site)
1 Month ago
Capgemini - CHATBOT -AWS CONNECT + AWS LEX + AWS LAMBDA

Capgemini

India (On-Site)
3 Weeks ago
NVIDIA - Senior System Software Engineer

NVIDIA

Bengaluru, Karnataka, India (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Bengaluru, Karnataka, India

Daxko - Atlassian Administrator

Daxko

Noida, Uttar Pradesh, India (Hybrid)
1 Month ago
Synechron - Full Stack Python Developer (Cloud, IoT, Blockchain & Agile Expertise)

Synechron

Pune, Maharashtra, India (On-Site)
1 Month ago
Intel  - CPU DFT Engineer

Intel

Bengaluru, Karnataka, India (On-Site)
2 Weeks ago
Capgemini - Digital Continuity & Manufacturing Engineer

Capgemini

Mumbai, Maharashtra, India (On-Site)
1 Month ago
caliogo - Data Integration Engineer

caliogo

Hyderabad, Telangana, India (Remote)
2 Months ago
Landor - Senior Designer (Corporate Branding)

Landor

Mumbai, Maharashtra, India (Hybrid)
1 Month ago
Capgemini - Backup Administration - EMC Networker Avamar

Capgemini

Bengaluru, Karnataka, India (On-Site)
1 Month ago
Capgemini - Senior Software Engineer

Capgemini

Bengaluru, Karnataka, India (On-Site)
3 Weeks ago
Assystems - Design Engineer – Substation (Civil & Structural)

Assystems

Gurugram, Haryana, India (On-Site)
8 Months ago
P99 soft - Sr.QA Engineer (Manual & Automation)

P99 soft

Hyderabad, Telangana, India (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Similar Category Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

We work alongside clients to manage cyber risk and equip them with perspectives and programs to accelerate business progress. Our real-world experience, deep vertical expertise and diverse teams enable us to face any challenge with confidence. We put you at the center of our unmatched ecosystem of people, products, partners and programs to design and implement agile solutions. Our adaptive approach continually assesses risk in the context of cyber and broader objectives to secure today's business and fortify it for the future.

Leawood, Kansas, United States (Remote)

Kansas City, Kansas, United States (Hybrid)

Bengaluru, Karnataka, India (On-Site)

San Francisco, California, United States (On-Site)

Overland Park, Kansas, United States (Remote)

Overland Park, Kansas, United States (Remote)

Overland Park, Kansas, United States (Remote)

Columbia, Maryland, United States (On-Site)

Tampa, Florida, United States (Remote)

Fort Worth, Texas, United States (On-Site)

View All Jobs

Get notified when new jobs are added by Optiv

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug