What are the responsibilities and job description for the Cybersecurity Detection Engineer position at PTR Global?
Must be able to obtain government security clearance.
The specific compensation for this position will be determined by a number of factors, including the scope, complexity and location of the role as well as the cost of labor in the market; the skills, education, training, credentials and experience of the candidate; and other conditions of employment. Our full-time consultants have access to benefits including medical, dental, vision and 401K contributions as well as any other PTO, sick leave, and other benefits mandated by appliable state or localities where you reside or work.
- Develop and refine detection techniques to identify malicious activities and security breaches.
- Analyze descriptions of IOCs and design effective searches to detect these activities in large data sets.
- Create and maintain detection content, ensuring it is up-to-date with the latest threat intelligence.
- Collaborate with threat hunters to continuously improve detection capabilities.
- Utilize advanced Splunk query skills to develop and run complex searches and analyze security data.
- Ensure the accuracy and efficiency of detection mechanisms to reduce false positives and improve response times.
- Proven experience as a Detection Engineer, with a strong emphasis on detection engineering as a primary job function.
- In-depth knowledge of threat hunting methodologies and experience working as a threat hunter.
- Expertise in Splunk, including the ability to create and optimize complex queries independently.
- Demonstrated ability to analyze and interpret various data sets to identify suspicious activities.
- Strong understanding of cyber security threats, vulnerabilities, and attack vectors.
- Ability to work independently and collaboratively within a team environment.
- Certifications related to cyber security and detection engineering (e.g., GIAC Certified Detection Analyst, Splunk Certified User).
- Experience in a Security Operations Center (SOC) environment, specifically in a detection engineering role.
- Familiarity with other security information and event management (SIEM) tools and technologies.
The specific compensation for this position will be determined by a number of factors, including the scope, complexity and location of the role as well as the cost of labor in the market; the skills, education, training, credentials and experience of the candidate; and other conditions of employment. Our full-time consultants have access to benefits including medical, dental, vision and 401K contributions as well as any other PTO, sick leave, and other benefits mandated by appliable state or localities where you reside or work.
Salary : $100