Senior Security Engineer - Threat Detection

1 Hour ago • 5 Years + • Cyber Security • $138,500 PA - $185,600 PA

Job Summary

Job Description

The Senior Security Engineer - Threat Detection will design, develop, and maintain detection mechanisms to identify malicious activities. Responsibilities include developing advanced detection logic in Splunk, creating detection rules and dashboards, collaborating with stakeholders on use cases, integrating threat intelligence, testing and tuning detection content, automating workflows, and working with security teams for threat response. The role requires proficiency in Splunk, scripting languages, and cybersecurity frameworks like MITRE ATT&CK. Continuous improvement and documentation are key aspects of the position.
Must have:
  • 5+ years experience in detection engineering
  • Splunk expertise (rules, dashboards, alerts)
  • Scripting (Python, PowerShell, Bash)
  • Cybersecurity frameworks (MITRE ATT&CK, NIST)
  • Threat intelligence integration
  • Collaboration with security teams
Good to have:
  • APT investigation experience
  • Cloud security experience (AWS, Azure, GCP)
  • Red teaming experience
  • Data science concepts
  • Mentoring junior team members
Perks:
  • Bonus
  • Long-term incentive units
  • Full range of medical, financial, and other benefits

Job Details

Job Summary:

At Disney, we’re storytellers. We make the impossible, possible. The Walt Disney Company (TWDC) is a world-class entertainment and technological leader. Walt’s passion was to continuously envision new ways to move audiences around the world—a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences — and we’re constantly looking for new ways to enhance these exciting experiences.

The Enterprise Technology mission is to deliver technology solutions that align to business strategies while enabling enterprise efficiency and promoting cross-company collaborative innovation. Our group drives competitive advantage by enhancing our consumer experiences, enabling business growth, and advancing operational excellence.

The Global Information Security (GIS) organization strives to secure the magic by employing best-in-class services to assess, prevent, detect, and respond to cyber threats that present risk to The Walt Disney Company. We enable the business by integrating enterprise and business segment-specific supported services to create a robust, efficient, and adaptable cybersecurity program. Our key objectives are to:

  • Secure the Magic by protecting information systems and platforms.
  • Reduce Risk by proactively assessing, preventing, and detecting to prevent harm to the Company and our Guests.
  • Strengthen the business through optimizing execution, application, and technology used to protect the Company.
  • Innovate by investing in core capabilities to enhance operational efficiency.

Team Description:

We are seeking a skilled and experienced Senior Security Engineer with a specialization in Detection Engineering to join our GIS Anomaly Detection Team. In this role, you will be responsible for designing, developing, and maintaining detection mechanisms to identify anomalous and malicious activities within our environment. Your expertise in Splunk and detection content development will be instrumental in improving visibility and detecting threats before they can impact our systems and data. You will collaborate closely with security teams, stakeholders, and engineers to enhance our overall security posture through innovative detection strategies and continuous improvement.

Key Responsibilities:

  • Detection Engineering: Lead and execute the development of advanced detection logic to identify potential security threats, vulnerabilities, and malicious activities within the enterprise environment. 
  • Content Development: Design and implement detection rules, alerts, and dashboards in Splunk to enhance threat visibility and response capabilities. Optimize detection logic to minimize false positives and ensure actionable alerts. 
  • Detection Use Case Development: Collaborate with stakeholders to build and refine detection use cases aligned with the threat landscape and organizational priorities. Leverage frameworks such as MITRE ATT&CK to create robust, behavior-based detections. 
  • Threat Intelligence Integration: Partner with the Cyber Threat Intelligence (CTI) team to incorporate threat intelligence feeds, indicators, and TTPs into detection rules. Ensure detection content is adaptive to emerging threats. 
  • Testing and Tuning: Perform continuous testing and tuning of detection content to ensure effectiveness, reliability, and performance. Collaborate with red team and threat hunting teams to validate detection coverage. 
  • Automation: Partner with the SOAR team to develop and implement automated workflows and integrations that enhance the efficiency and scalability of detection processes. Collaborate to ensure seamless integration of detection logic with automation capabilities for improved threat response. 
  • Collaboration: Work closely with security operations, threat hunting, and engineering teams to ensure seamless integration of detection capabilities. Share insights and contribute to a unified approach to threat detection and response. 
  • Continuous Improvement: Stay current with emerging cybersecurity trends, detection methodologies, and tools. Proactively propose and implement improvements to detection capabilities and workflows. 
  • Documentation and Reporting: Maintain thorough documentation of detection content, processes, and improvements. Support the Threat Detection Staff Lead in generating detailed reports and metrics for stakeholders to showcase detection program effectiveness.

Must Haves:

  • 5+ years of experience with a focus on detection engineering, SIEM content development, or security operations.
  • Experience working with large enterprises or cybersecurity firms.
  • Solid understanding of cybersecurity frameworks and standards (e.g., MITRE ATT&CK, NIST).
  • Proficiency in at least one scripting language (e.g., Python, PowerShell, Bash) for creating detection logic and automation.
  • Extensive hands-on experience with Splunk, including developing and tuning detection rules, dashboards, and alerts.
  • Experience in kill chain analysis, network traffic analysis, and advanced behavior-based detection logic.
  • Familiarity with integrating threat intelligence into detection systems and processes.
  • Effective communication skills for conveying detection logic, findings, and metrics to technical and non-technical stakeholders.
  • Experience with detection automation and integration with SOAR platforms.
  • Relevant certifications or equivalent training, such as Splunk Core Certified Power User, CISSP, or GIAC GCDA (GIAC Certified Detection Analyst).

Nice To Haves:

  • Experience with advanced persistent threat (APT) investigations and understanding their TTPs.
  • Hands-on experience in detection engineering for cloud environments (e.g., AWS, Azure, Google Cloud).
  • Familiarity with red teaming operations and leveraging their outputs to improve detection capabilities.
  • Expertise in searching and parsing various log/event types, such as Active Directory logs, network traffic, syslog, web server logs, and endpoint telemetry, to identify threats and anomalies.
  • Ability to mentor junior team members in detection engineering practices and tools.
  • Proven ability to present complex technical concepts and findings to executive leadership.
  • Fundamental understanding of statistics or data science concepts (e.g., anomaly detection, trend analysis, clustering) to improve detection logic and threat analysis.

Education:

  • Bachelor’s degree in Computer Science, Information Systems, Software, Electrical or Electronics Engineering, or comparable field of study, and/or equivalent work experience

The hiring range for this remote position is $138,500 to $185,600 per year, which factors in various geographic regions. The base pay actually offered will take into account internal equity and also may vary depending on the candidate’s geographic region, job-related knowledge, skills, and experience among other factors. A bonus and/or long-term incentive units may be provided as part of the compensation package, in addition to the full range of medical, financial, and/or other benefits, dependent on the level and position offered.

Similar Jobs

The Walt Disney Company - Security Engineer, Software Engineer

The Walt Disney Company

Orlando, Florida, United States (On-Site)
2 Days ago
The Walt Disney Company - Lead Media Systems Engineer

The Walt Disney Company

Los Angeles, California, United States (On-Site)
2 Months ago
Brillio - Azure DB Architect - Migration - R01531206

Brillio

Bengaluru, Karnataka, India (Hybrid)
5 Months ago
Playrix - Senior Release Engineer

Playrix

Cyprus (Remote)
5 Months ago
Auros Global - Senior Site Reliability Engineer

Auros Global

United Kingdom (Remote)
4 Weeks ago
PwC - Digital Risk Solutions Manager

PwC

Vancouver, British Columbia, Canada (On-Site)
5 Months ago
Varonis  - Technical Support Engineer L2

Varonis

New Delhi, Delhi, India (Remote)
1 Week ago
ByteDance - Security Governance Engineer

ByteDance

San Jose, California, United States (On-Site)
3 Weeks ago
Reversing Labs - Director, Product Management, Integrations

Reversing Labs

United States (Remote)
3 Weeks ago
PwC - Implementation Consultant, Associate - contractor

PwC

Bangkok, Bangkok, Thailand (On-Site)
6 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Rackspace Technology - AWS Support Engineer L2

Rackspace Technology

Gurugram, Haryana, India (Remote)
1 Month ago
Red Point Labs - Java Backend Developer (Remote OK)

Red Point Labs

Argentina (Remote)
10 Months ago
NVIDIA - Clock Design Engineer

NVIDIA

Tel Aviv-Yafo, Tel Aviv District, Israel (Hybrid)
1 Month ago
Netflix - Senior Software Engineer (L5) - Developer Infrastructure

Netflix

Los Gatos, California, United States (On-Site)
2 Hours ago
Microsoft - Senior Site Reliability Engineer

Microsoft

Redmond, Washington, United States (On-Site)
4 Hours ago
Ajmera Infotech - Site Reliability Engineer (SRE) - Kubernetes

Ajmera Infotech

Austin, Texas, United States (On-Site)
2 Months ago
Playtech - Operations Engineer

Playtech

Tallinn, Harju County, Estonia (On-Site)
2 Weeks ago
Offworld - DevOps Engineer

Offworld

New Westminster, British Columbia, Canada (On-Site)
3 Weeks ago
Tencent - Cloud Engineer

Tencent

(On-Site)
5 Months ago
PwC - IN_Associate_Azure Cloud Data Engineer_OneCloud _Advisory _Bangalore

PwC

Gurugram, Haryana, India (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Burbank, California, United States

On Location - Staff Accountant

On Location

Raleigh, North Carolina, United States (Hybrid)
1 Month ago
On Location - Senior Finance Systems Manager

On Location

New York, New York, United States (On-Site)
3 Weeks ago
ByteDance - Indirect Tax Manager - US (Seattle)

ByteDance

Seattle, Washington, United States (On-Site)
1 Day ago
NVIDIA - Senior Director, Revenue Accounting

NVIDIA

Santa Clara, California, United States (On-Site)
1 Month ago
Power Integrations - Field Sales Engineer (Remote)

Power Integrations

Ohio, United States (On-Site)
6 Months ago
VX Media - Creator Talent Manager

VX Media

New York, New York, United States (On-Site)
3 Weeks ago
Fantastic Pixel Castle - Senior Concept Artist

Fantastic Pixel Castle

United States (Remote)
3 Weeks ago
Lionsgate Games - Staff Accountant

Lionsgate Games

Santa Monica, California, United States (On-Site)
3 Weeks ago
Notion - Software Engineer, Data Platform

Notion

San Francisco, California, United States (On-Site)
6 Months ago
Oculus VR - Senior Narrative Systems Designer

Oculus VR

San Mateo, California, United States (Remote)
4 Weeks ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

PwC - Cloud Security | Manager | Cyber Security | Technology Consulting

PwC

Dublin, County Dublin, Ireland (On-Site)
6 Months ago
ByteDance - Senior Security Tech Lead Manager - Security Engineering

ByteDance

San Jose, California, United States (On-Site)
2 Months ago
Trend Micro - (Sr.) Cloud Developer (Vision One)

Trend Micro

Taipei City, Taiwan (On-Site)
6 Months ago
PwC - Technologie & Operation Intern

PwC

Pointe-Noire, Kouilou, Republic Of The Congo (On-Site)
5 Months ago
Don't Nod - Cybersecurity Internship

Don't Nod

Paris, Île-de-France, France (On-Site)
1 Month ago
PearlAbyss - Game Security Technical Support (Entry/Experienced)

PearlAbyss

(On-Site)
2 Days ago
PwC - Risk Services - Change Management Specialist

PwC

Singapore (On-Site)
6 Months ago
Varonis  - Technical Support Engineer L2

Varonis

Sydney, New South Wales, Australia (Remote)
2 Weeks ago
Epic Games - Senior Security Programmer - Asset Integrity

Epic Games

Montreal, Quebec, Canada (On-Site)
3 Weeks ago
PwC - Implementation Consultant, Associate - contractor

PwC

Bangkok, Bangkok, Thailand (On-Site)
6 Months ago

Get notifed when new similar jobs are uploaded

About The Company

From classic animated features and exhilarating theme park attractions to cutting edge sports coverage, and the hottest shows on television, The Walt Disney Company has been making magic since 1923, creating unforgettable stories that connect with audiences around the world. And we’re just getting started!

The key to our success…. The Cast, Crew, Imagineers and Employees who honor Disney’s rich legacy by stretching the bounds of imagination to create the never-before-seen, bringing unparalleled entertainment experiences to people of all ages. Begin a career that delivers unparalleled creative content and experiences to audiences around the world and just imagine the stories you could be part of…

What is #LifeAtDisney like? It’s a series of magical moments with cast members and employees developing and telling our stories in the most innovative ways. Whether it’s a day spent as a Disney VoluntEAR, or celebrating the release of a new interactive experience, retail product or movie, our days are filled with the knowledge that we are creating entertainment experiences the whole family can enjoy. Follow @DisneyCareers on Facebook, Twitter and Instagram for a peek behind-the-curtain, and discover how you could connect to a world of stories with Disney!

Florida, United States (On-Site)

Celebration, Florida, United States (On-Site)

Île-de-France, France (On-Site)

Lake Buena Vista, Florida, United States (On-Site)

Toronto, Ontario, Canada (On-Site)

Serris, Île-de-France, France (Hybrid)

Toronto, Ontario, Canada (On-Site)

Toronto, Ontario, Canada (On-Site)

View All Jobs

Get notified when new jobs are added by The Walt Disney Company

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug