Sr. Detections Content Operations Engineer (Remote)
CrowdstrikeFull Time
Junior (1 to 2 years)
Candidates should possess analysis experience and proficiency in Endpoint (MDR) and one or more of the following functional areas: Cloud/SaaS, Identity, Email, SIEM, and strong written communication skills. Proven experience with automation and orchestration is required, along with critical thinking skills and familiarity with the Mitre ATT&CK framework. Experience leveraging query languages and understanding syntax across EDR or other security platforms is also necessary.
The Senior Detection Engineer will analyze EDR telemetry, alerts, and log sources across various detection domains to uncover threats and communicate findings to customers. They will research coverage opportunities and create new detectors, tune existing ones, improve the CIRT workflow through automation, provide mentorship to peers, and actively engage with the team to challenge the status quo for detecting adversarial behavior. Additionally, they will lead projects to enhance the quality of life for both customers and the CIRT team.
Managed detection and response cybersecurity services
Red Canary provides Managed Detection and Response (MDR) services to help businesses protect their digital assets from cyber threats. Their services include continuous monitoring and expert analysis, which involve collecting and analyzing telemetry data to identify potential security issues in real-time. They focus on Endpoint Detection and Response (EDR) to address threats at the individual device level and conduct ongoing security operations to ensure the effectiveness of their measures. Red Canary stands out from competitors by emphasizing measurable outcomes, using behavioral analytics to detect critical threats, and offering 24/7 expert investigation to minimize false positives. Their subscription-based model allows clients to benefit from ongoing security improvements and support, with the goal of reducing risk and enhancing security for various industries.