Detection Engineering & Threat Hunting Lead

6 Months ago • 5-8 Years • Cyber Security • $113,800 PA - $168,390 PA

Job Summary

Job Description

Marvell seeks a Detection Engineering & Threat Hunting Lead with 5+ years of SOC/Network Analysis experience in large enterprises. Expertise in MITRE ATT&CK, threat intelligence, and SIEM is crucial. Strong communication skills and experience with incident response are essential.
Must have:
  • SOC Analyst
  • MITRE ATT&CK
  • Threat Hunting
  • SIEM Expertise
Good to have:
  • Incident Response
  • Scripting Languages
  • Security Certifications
  • NIST Framework
Perks:
  • Hybrid Work
  • Equity Compensation

Job Details

About Marvell

Marvell’s semiconductor solutions are the essential building blocks of the data infrastructure that connects our world. Across enterprise, cloud and AI, automotive, and carrier architectures, our innovative technology is enabling new possibilities. 

At Marvell, you can affect the arc of individual lives, lift the trajectory of entire industries, and fuel the transformative potential of tomorrow. For those looking to make their mark on purposeful and enduring innovation, above and beyond fleeting trends, Marvell is a place to thrive, learn, and lead. 

Your Team, Your Impact

Joining Marvell as Detection Engineering and Threat Hunt Lead, you will be a senior-level expert at identifying and responding to cyber threats against Marvell. The SOC is the central nervous system for the cybersecurity organization, a 24x7 service responsible for detection, assessing, and responding to security threats globally. In this role you will enable the SOC to excel. You will have a high degree of freedom to hunt for and investigate sophisticated threats, and to develop detection logic, response playbooks, and automation to accelerate Marvell's ability to respond to emerging threats.

What You Can Expect

  • Keep a finger on the pulse of threat and actor trends; advise IT and business stakeholders when immediate action is justified; and adjust detection engineering priorities based on the current threat landscape.
  • Identify and digest threat data from various open and closed sources, correlating it against environmental context and ATT&CK matrix to produce threat intelligence. Validate for actionable items, and communicate validated threats to SOC for appropriate action.
  • Threat hunting and forensic analysis. You will devise hunt hypotheses, creatively find new and unusual threats, and will confirm the reach of threats identified by the front line.
  • You will test existing detection logic for gaps and faulty assumptions, creatively identifying ways adversaries might evade detection, and then come up with solutions.
  • Provide expert threat analysis support to CSIRT and Global SOC. Research actors and tactics, identify ways for SOC to detect and CSIRT to contain a threat in real-time. Research anomalies detected by SOC to assess whether threat or benign.
  • Produce threat reports tailored to Marvell business and distributed to the relevant stakeholders throughout the company; in varying forms from real-time immediate action to in-depth periodic assessments of trends and future expectations.
  • When required, provide real-time and expert threat investigation support to the global Cyber Security Incident Response Team.
  • Collaborate with the SIEM and SOAR engineering teams as well as SOC to turn hunting hypotheses into production detection cases and response playbooks.

What We're Looking For

  • 8+ years' experience in one or more security-relevant domains including 5+ years as a SOC Analyst, or a Network Analyst with security scope; preferably for a >5000 person enterprise.
  • Experience in working with a geographically diverse team in multiple time zones around the globe
  • Strong communication skills and an ability to adapt a message to audiences ranging from technology SMEs to company executives to stakeholders in every business discipline.
  • Deep understanding of MITRE ATT&CK, with demonstrated experience building detection cases and playbooks around the tactics and techniques most relevant to your business.
  • Proficient technical writing skills (documenting processes and procedures);
  • Ability to solve problems and work through ambiguity and uncertainty;
  • Proficiency in common scripting languages such as PowerShell, Bash, Python, etc.
  • Proficiency with one or more SIEM query language
  • Experience working extensively with technologies such as IDS/IPS, NGFW, EDR, SIEM, HIDS/HIPS, AV, and Vulnerability Scanners.
  • Expert level and continually expanding understanding of common and emerging security threats and vulnerabilities
  • Self-motivated and proven ability to deliver end-to-end solutions in a high-tech and fast moving industry.
  • Industry security certifications such as CISSP and relevant GIAC certifications or equivalent highly desirable.
  • Understanding of NIST Cyber Security Framework standard and requirements and ability to apply them to an enterprise environment.
  • Experience with infrastructure operations and processes associated with IT service management in an Enterprise-level organization.

#LI-JS22

Expected Base Pay Range (USD)

113,800 - 168,390, $ per annum

The successful candidate’s starting base pay will be determined based on job-related skills, experience, qualifications, work location and market conditions. The expected base pay range for this role may be modified based on market conditions.

Additional Compensation and Benefit Elements 

At Marvell, we offer a total compensation package with a base, bonus and equity.Health and financial wellbeing are part of the package. That means flexible time off, 401k, plus a year-end shutdown, floating holidays, paid time off to volunteer. Have a question about our benefits packages - health or financial? Ask your recruiter during the interview process.

This role is eligible for our hybrid work model in which you will be able to split time between working from home and on-site in a Marvell office.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status.

Any applicant who requires a reasonable accommodation during the selection process should contact Marvell HR Helpdesk at TAOps@marvell.com.

Similar Jobs

ElevenLabs - IT Security Engineer

ElevenLabs

London, England, United Kingdom (Remote)
5 Months ago
ION - Cloud Engineer Kubernetes

ION

Rome, Lazio, Italy (Hybrid)
5 Months ago
Eightfold - Staff Engineer-Backend

Eightfold

Bengaluru, Karnataka, India (Hybrid)
6 Months ago
Zeta - Cloud Security Enegineer II/III

Zeta

Bengaluru, Karnataka, India (On-Site)
5 Months ago
Sagent - Lead Devops Engineer - India

Sagent

Chennai, Tamil Nadu, India (Hybrid)
5 Months ago
ION - Platform Security Analyst

ION

Pisa, Tuscany, Italy (On-Site)
5 Months ago
Saviynt - Senior Engineer II, Software Engineering

Saviynt

Bengaluru, Karnataka, India (Hybrid)
5 Months ago
ION - Senior Security Architect

ION

Milan, Lombardy, Italy (On-Site)
5 Months ago
Zuora - Sr Security Engineer

Zuora

Chennai, Tamil Nadu, India (Hybrid)
5 Months ago
PwC - Intern/ Trainee

PwC

Gurugram, Haryana, India (On-Site)
5 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

PwC - IN_Senior Associate_ VAPT _S&G_ Advisory _Chennai

PwC

Chennai, Tamil Nadu, India (On-Site)
5 Months ago
ION - Senior DevSecOps Engineer, Italy

ION

Milan, Lombardy, Italy (On-Site)
5 Months ago
Fluence - Controls Engineer (m/f/d) - German speaker

Fluence

Berlin, Berlin, Germany (Hybrid)
5 Months ago
ign - Principal DevOps Engineer

ign

(Remote)
5 Months ago
PwC - Senior Cyber Security Engineer

PwC

Athens, Greece (Hybrid)
6 Months ago
The Walt Disney Company - Systems Administrator

The Walt Disney Company

Sydney, New South Wales, Australia (On-Site)
4 Months ago
Fluence - Controls Engineer (m/f/d)

Fluence

Amsterdam, North Holland, Netherlands (Remote)
5 Months ago
Devoteam - Managed Services Technical Leader

Devoteam

(Remote)
5 Months ago
Cyara - Sr. Cloud Architect - Kubernetes

Cyara

Hyderabad, Telangana, India (Hybrid)
5 Months ago
Nielsen - Senior Software Engineer Backend

Nielsen

Bengaluru, Karnataka, India (Hybrid)
5 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Austin, Texas, United States

Matic Robots - Senior Mechanical Design Engineer

Matic Robots

Mountain View, California, United States (On-Site)
5 Months ago
Passive Logic - Platform Embedded Software Engineer

Passive Logic

Salt Lake City, Utah, United States (On-Site)
4 Months ago
Google - Software Engineer III, Machine Learning (Recommendations, Rankings, and Predictions), YouTube

Google

Mountain View, California, United States (On-Site)
4 Months ago
Lifechurch - Director of Analytics

Lifechurch

Edmond, Oklahoma, United States (On-Site)
5 Months ago
PlayStation Global - Software Engineer Intern - Masters

PlayStation Global

San Mateo, California, United States (Hybrid)
5 Months ago
paypal - Senior Director, UX Research

paypal

San Jose, California, United States (Hybrid)
6 Months ago
WebMD - Client Success Manager

WebMD

Portland, Oregon, United States (On-Site)
5 Months ago
company3methodstudios - Facility Technician (10:00am - 6:30pm PT)

company3methodstudios

Hollywood, Florida, United States (On-Site)
5 Months ago
Casumo - Data Engineer

Casumo

Macedonia, Ohio, United States (Hybrid)
5 Months ago
Next Level Business Services - JDE Manufacturing Lead

Next Level Business Services

Huntsville, Alabama, United States (On-Site)
5 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

PwC - Salesforce Technical Lead (Manager)

PwC

Makati, Metro Manila, Philippines (Hybrid)
6 Months ago
PwC - Workday reporting Sr.

PwC

Buenos Aires, Buenos Aires, Argentina (On-Site)
6 Months ago
PwC - Cybersecurity Associate

PwC

Makati, Metro Manila, Philippines (On-Site)
5 Months ago
HP - Business Information Security Analyst

HP

Tlaquepaque, Jalisco, Mexico (On-Site)
6 Months ago
Axinous - Product Support Engineer II

Axinous

Melbourne, Victoria, Australia (Hybrid)
4 Months ago
HP - Cybersecurity Metrics Analyst

HP

Tlaquepaque, Jalisco, Mexico (On-Site)
6 Months ago
PwC - IN_Associate_Internal Audit _Internal Audit Services_Advisory_Gurgaon

PwC

Gurugram, Haryana, India (On-Site)
6 Months ago
brightline - Information Systems Security Engineer

brightline

Ashburn, Virginia, United States (On-Site)
5 Months ago
PwC - Cybersecurity Solutions Architect

PwC

Calgary, Alberta, Canada (On-Site)
5 Months ago
Rolls Royce - Systems Security Engineering Specialist

Rolls Royce

Indianapolis, Indiana, United States (Hybrid)
5 Months ago

Get notifed when new similar jobs are uploaded