Senior Security Engineer - Threat Detection

1 Month ago • 5 Years + • Cyber Security • $138,500 PA - $185,600 PA

Job Summary

Job Description

The Senior Security Engineer - Threat Detection will design, develop, and maintain detection mechanisms to identify malicious activities. Responsibilities include developing advanced detection logic in Splunk, creating detection rules and dashboards, collaborating with stakeholders on use cases, integrating threat intelligence, testing and tuning detection content, automating workflows, and working with security teams for threat response. The role requires proficiency in Splunk, scripting languages, and cybersecurity frameworks like MITRE ATT&CK. Continuous improvement and documentation are key aspects of the position.
Must have:
  • 5+ years experience in detection engineering
  • Splunk expertise (rules, dashboards, alerts)
  • Scripting (Python, PowerShell, Bash)
  • Cybersecurity frameworks (MITRE ATT&CK, NIST)
  • Threat intelligence integration
  • Collaboration with security teams
Good to have:
  • APT investigation experience
  • Cloud security experience (AWS, Azure, GCP)
  • Red teaming experience
  • Data science concepts
  • Mentoring junior team members
Perks:
  • Bonus
  • Long-term incentive units
  • Full range of medical, financial, and other benefits

Job Details

Job Summary:

At Disney, we’re storytellers. We make the impossible, possible. The Walt Disney Company (TWDC) is a world-class entertainment and technological leader. Walt’s passion was to continuously envision new ways to move audiences around the world—a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences — and we’re constantly looking for new ways to enhance these exciting experiences.

The Enterprise Technology mission is to deliver technology solutions that align to business strategies while enabling enterprise efficiency and promoting cross-company collaborative innovation. Our group drives competitive advantage by enhancing our consumer experiences, enabling business growth, and advancing operational excellence.

The Global Information Security (GIS) organization strives to secure the magic by employing best-in-class services to assess, prevent, detect, and respond to cyber threats that present risk to The Walt Disney Company. We enable the business by integrating enterprise and business segment-specific supported services to create a robust, efficient, and adaptable cybersecurity program. Our key objectives are to:

  • Secure the Magic by protecting information systems and platforms.
  • Reduce Risk by proactively assessing, preventing, and detecting to prevent harm to the Company and our Guests.
  • Strengthen the business through optimizing execution, application, and technology used to protect the Company.
  • Innovate by investing in core capabilities to enhance operational efficiency.

Team Description:

We are seeking a skilled and experienced Senior Security Engineer with a specialization in Detection Engineering to join our GIS Anomaly Detection Team. In this role, you will be responsible for designing, developing, and maintaining detection mechanisms to identify anomalous and malicious activities within our environment. Your expertise in Splunk and detection content development will be instrumental in improving visibility and detecting threats before they can impact our systems and data. You will collaborate closely with security teams, stakeholders, and engineers to enhance our overall security posture through innovative detection strategies and continuous improvement.

Key Responsibilities:

  • Detection Engineering: Lead and execute the development of advanced detection logic to identify potential security threats, vulnerabilities, and malicious activities within the enterprise environment. 
  • Content Development: Design and implement detection rules, alerts, and dashboards in Splunk to enhance threat visibility and response capabilities. Optimize detection logic to minimize false positives and ensure actionable alerts. 
  • Detection Use Case Development: Collaborate with stakeholders to build and refine detection use cases aligned with the threat landscape and organizational priorities. Leverage frameworks such as MITRE ATT&CK to create robust, behavior-based detections. 
  • Threat Intelligence Integration: Partner with the Cyber Threat Intelligence (CTI) team to incorporate threat intelligence feeds, indicators, and TTPs into detection rules. Ensure detection content is adaptive to emerging threats. 
  • Testing and Tuning: Perform continuous testing and tuning of detection content to ensure effectiveness, reliability, and performance. Collaborate with red team and threat hunting teams to validate detection coverage. 
  • Automation: Partner with the SOAR team to develop and implement automated workflows and integrations that enhance the efficiency and scalability of detection processes. Collaborate to ensure seamless integration of detection logic with automation capabilities for improved threat response. 
  • Collaboration: Work closely with security operations, threat hunting, and engineering teams to ensure seamless integration of detection capabilities. Share insights and contribute to a unified approach to threat detection and response. 
  • Continuous Improvement: Stay current with emerging cybersecurity trends, detection methodologies, and tools. Proactively propose and implement improvements to detection capabilities and workflows. 
  • Documentation and Reporting: Maintain thorough documentation of detection content, processes, and improvements. Support the Threat Detection Staff Lead in generating detailed reports and metrics for stakeholders to showcase detection program effectiveness.

Must Haves:

  • 5+ years of experience with a focus on detection engineering, SIEM content development, or security operations.
  • Experience working with large enterprises or cybersecurity firms.
  • Solid understanding of cybersecurity frameworks and standards (e.g., MITRE ATT&CK, NIST).
  • Proficiency in at least one scripting language (e.g., Python, PowerShell, Bash) for creating detection logic and automation.
  • Extensive hands-on experience with Splunk, including developing and tuning detection rules, dashboards, and alerts.
  • Experience in kill chain analysis, network traffic analysis, and advanced behavior-based detection logic.
  • Familiarity with integrating threat intelligence into detection systems and processes.
  • Effective communication skills for conveying detection logic, findings, and metrics to technical and non-technical stakeholders.
  • Experience with detection automation and integration with SOAR platforms.
  • Relevant certifications or equivalent training, such as Splunk Core Certified Power User, CISSP, or GIAC GCDA (GIAC Certified Detection Analyst).

Nice To Haves:

  • Experience with advanced persistent threat (APT) investigations and understanding their TTPs.
  • Hands-on experience in detection engineering for cloud environments (e.g., AWS, Azure, Google Cloud).
  • Familiarity with red teaming operations and leveraging their outputs to improve detection capabilities.
  • Expertise in searching and parsing various log/event types, such as Active Directory logs, network traffic, syslog, web server logs, and endpoint telemetry, to identify threats and anomalies.
  • Ability to mentor junior team members in detection engineering practices and tools.
  • Proven ability to present complex technical concepts and findings to executive leadership.
  • Fundamental understanding of statistics or data science concepts (e.g., anomaly detection, trend analysis, clustering) to improve detection logic and threat analysis.

Education:

  • Bachelor’s degree in Computer Science, Information Systems, Software, Electrical or Electronics Engineering, or comparable field of study, and/or equivalent work experience

The hiring range for this remote position is $138,500 to $185,600 per year, which factors in various geographic regions. The base pay actually offered will take into account internal equity and also may vary depending on the candidate’s geographic region, job-related knowledge, skills, and experience among other factors. A bonus and/or long-term incentive units may be provided as part of the compensation package, in addition to the full range of medical, financial, and/or other benefits, dependent on the level and position offered.

Similar Jobs

NVIDIA - Deep Learning Software Engineering Intern, Test Development - 2025

NVIDIA

Shanghai, Shanghai, China (On-Site)
1 Month ago
RoofStack - Senior Platform Engineer

RoofStack

İstanbul, İstanbul, Türkiye (On-Site)
3 Months ago
Technicolor Creative Studios - Supervisor-Compositing

Technicolor Creative Studios

Adelaide, South Australia, Australia (On-Site)
6 Months ago
PwC - ETIC, Cloud Infrastructure - Manager

PwC

Cairo, Cairo Governorate, Egypt (On-Site)
6 Months ago
Zoox - Senior Software Engineer: Secure Embedded Operating Systems

Zoox

Foster City, California, United States (On-Site)
7 Months ago
Google - Senior Red Team Security Consultant

Google

Atlanta, Georgia, United States (On-Site)
4 Weeks ago
ION - Network Security Engineer

ION

Castellazzo Bormida, Piedmont, Italy (Hybrid)
7 Months ago
ION - Cyber Security Analyst, Italy

ION

Turin, Piedmont, Italy (On-Site)
7 Months ago
Nintendo - Security Engineer

Nintendo

Redmond, Washington, United States (Hybrid)
5 Months ago
Google - Senior Security Engineer, Chrome, Product Security

Google

Mexico City, Mexico City, Mexico (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Netflix - IT Support Engineer - Netflix Animation Studios (NAS)

Netflix

Sydney, New South Wales, Australia (On-Site)
1 Month ago
Nintendo - DevOps Engineer

Nintendo

Redmond, Washington, United States (On-Site)
4 Months ago
NVIDIA - Vehicle Adaptation Intern - 2025

NVIDIA

Stuttgart, Baden-Württemberg, Germany (On-Site)
1 Month ago
Sinch - Site Reliability Engineer II

Sinch

France (Remote)
1 Month ago
Roofstacks - Senior Platform Engineer

Roofstacks

İstanbul, İstanbul, Türkiye (On-Site)
3 Months ago
Wind River Systems - Star Lab - Principal Technologist - Embedded Security Professional Services

Wind River Systems

United States (On-Site)
6 Months ago
G5 Games - Monitoring Engineer

G5 Games

(Remote)
1 Month ago
Aristocrat Gaming - Senior Systems Reliability Engineer (SRE)

Aristocrat Gaming

Austin, Texas, United States (Hybrid)
1 Month ago
Zoox - Senior Software Engineer: Secure Embedded Operating Systems

Zoox

Foster City, California, United States (On-Site)
7 Months ago
ION - Cloud Engineer Kubernetes

ION

Milan, Lombardy, Italy (Hybrid)
7 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Burbank, California, United States

Google - Data Scientist III, Product, ODS

Google

San Francisco, California, United States (On-Site)
1 Month ago
Axiom Zen - Growth Marketing Manager

Axiom Zen

United States (Remote)
3 Months ago
Games For Love - Project Manager for League of Pros Cause Jam

Games For Love

Washington, United States (Remote)
5 Months ago
Nagarro - Associate Director

Nagarro

New York, New York, United States (On-Site)
7 Months ago
The Walt Disney Company - Senior Manager, DET Marketing Reporting and Analytics – Disney Entertainment Television

The Walt Disney Company

Santa Monica, California, United States (On-Site)
5 Months ago
Interface AI - Director of Demand Generation

Interface AI

United States (Remote)
3 Months ago
The Walt Disney Company - Sr Software Engineer (Roku/BrightScript/SceneGraph)

The Walt Disney Company

Seattle, Washington, United States (On-Site)
6 Months ago
On Location - Manager, Corporate Marketing – FIFA World Cup 26™

On Location

New York, New York, United States (On-Site)
4 Months ago
Anavation - Systems Administrator (SME)

Anavation

Clarksburg, West Virginia, United States (Remote)
1 Month ago
Netflix - Engineering Manager - Edge Gateway & Services

Netflix

United States (Remote)
4 Weeks ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

NVIDIA - Senior Networking Security Research Architect

NVIDIA

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
4 Months ago
PearlAbyss - Game Security Technical Support (Entry/Experienced)

PearlAbyss

(On-Site)
1 Month ago
ByteDance - Security Software Engineer

ByteDance

Singapore (On-Site)
6 Months ago
Nintendo - Security Engineer

Nintendo

Redmond, Washington, United States (Hybrid)
5 Months ago
The Walt Disney Company - Senior Security Specialist, Third-Party Risk Management

The Walt Disney Company

Seattle, Washington, United States (On-Site)
1 Month ago
NVIDIA - Senior Networking Security Research Architect

NVIDIA

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
2 Months ago
Google - Silicon System Security Architect

Google

San Diego, California, United States (On-Site)
1 Month ago
PwC - IN_Associate _ Internal Audit _Internal Audit Services_ Advisory_ Bangalore

PwC

Bengaluru, Karnataka, India (On-Site)
7 Months ago
Canva - Senior Backend Software Engineer - Security Platform Engineering

Canva

Auckland, Auckland, New Zealand (Remote)
1 Month ago
PwC - Associate_Advisory_IA_GRC_Risk Consulting_Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
7 Months ago

Get notifed when new similar jobs are uploaded

About The Company

From classic animated features and exhilarating theme park attractions to cutting edge sports coverage, and the hottest shows on television, The Walt Disney Company has been making magic since 1923, creating unforgettable stories that connect with audiences around the world. And we’re just getting started!

The key to our success…. The Cast, Crew, Imagineers and Employees who honor Disney’s rich legacy by stretching the bounds of imagination to create the never-before-seen, bringing unparalleled entertainment experiences to people of all ages. Begin a career that delivers unparalleled creative content and experiences to audiences around the world and just imagine the stories you could be part of…

What is #LifeAtDisney like? It’s a series of magical moments with cast members and employees developing and telling our stories in the most innovative ways. Whether it’s a day spent as a Disney VoluntEAR, or celebrating the release of a new interactive experience, retail product or movie, our days are filled with the knowledge that we are creating entertainment experiences the whole family can enjoy. Follow @DisneyCareers on Facebook, Twitter and Instagram for a peek behind-the-curtain, and discover how you could connect to a world of stories with Disney!

New York, New York, United States (On-Site)

New York, New York, United States (On-Site)

Burbank, California, United States (On-Site)

Celebration, Florida, United States (On-Site)

Buenos Aires, Buenos Aires, Argentina (On-Site)

Seattle, Washington, United States (On-Site)

Santa Monica, California, United States (On-Site)

Glendale, California, United States (On-Site)

Anaheim, California, United States (On-Site)

View All Jobs

Get notified when new jobs are added by The Walt Disney Company

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug