Security Incident Response Engineer

United States Digital Space LLC

United States

Hybrid

USD 125,000 - 165,000

Full time

7 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

United States Digital Space LLC is seeking a Security Incident Response Engineer to advance incident response capabilities with a focus on user and entity behavior analytics and endpoint hardening. You will gain deep familiarity with our systems and workflows to distinguish legitimate activity from threats.

Collaborate with security engineering and data science teams to build scalable detection pipelines using threat intelligence and telemetry, guiding incident response to reduce uncertainty and

Qualifications

  • 3+ years analyzing large data sets for security problems.
  • BS/MS in CS or related field, or equivalent experience.
  • Expert Python and SQL; familiarity with other languages.
  • Experience with log analysis, network security, and IR investigations.

Responsibilities

  • Analyze and investigate threats on client devices.
  • Develop detection model requirements and enhancements.
  • Ingest data from diverse sources into threat pipelines.
  • Streamline incident response tooling and processes.
  • Collaborate with security engineering and data science teams to analyze events at scale.
  • Provide actionable insights to detect and respond to anomalies.
  • Serve as SME and main liaison for security analytics initiatives.
  • Lead projects, mentor teammates, and uphold quality standards.

Skills

Python
SQL
Log analysis
Incident response
UEBA
Data analysis

Education

BS/MS Computer Science or related field

Tools

Databricks
Jupyter
Trino
Splunk/LogScale
PySpark

Job description

About the company

the company is a financial infrastructure platform for businesses. Millions of companies-from the worlds largest enterprises to the most ambitious startups- use the company to accept payments, grow their revenue, and accelerate new business opportunities. Our mission is to increase the GDP of the internet, and we have a staggering amount of work ahead. That means you have an unprecedented opportunity to put the global economy within everyone's reach while doing the most important work of your career.

About the team

The Security Incident Response team works to analyze, investigate, and respond to threats before they impact the company's business or users. From external attacks to insider threats, our goal is to respond with speed and precision, remediate, and support the incident postmortem process. The team is distributed, working across multiple AMER time zones, and will regularly coordinate with stakeholders in EMEA and APAC.

What you'll do

You will leverage your security engineering experience to improve incident response capabilities at the company. With an emphasis on user and entity behavior analytics, as well as endpoint hardening, you will gain a deep understanding of the company's systems, tooling, and workflows to be able to differentiate between legitimate and malicious activity. Using both threat intelligence and collected telemetry, you will guide and build the company-specific signals enrichment logic and incident response solutions that scale with our company. Lastly, your analytic capabilities will be critical during security incidents to reduce uncertainty, uncover root causes, and inform future prevention and detection mechanisms.

Responsibilities
  • Analyze and investigate a broad range of threats or activities occurring on client devices
  • Develop requirements for detection models and enhancements to existing systems
  • Collect, transform, and ingest raw data from disparate sources into threat detection pipelines
  • Streamline incident response capabilities, ensuring the tooling and processes are clear
  • Work cross-functionally with security engineering and data science teams to build solutions for analyzing security events data at scale and protecting the company networks, systems, and data from threats
  • Provide actionable insights to help identify, prevent, detect, and respond to anomalous or potentially malicious user and entity activity
  • Act as the subject-matter expert and primary contact for stakeholder teams invested in Security Analytics and Detection programs as well as the company-wide security initiatives
  • Collaborate effectively with teammates, leading projects, mentoring others, and developing and championing quality standards within the team
Who you are

We're looking for someone who meets the minimum requirements to be considered for the role. If you meet these requirements, you are encouraged to apply. The preferred qualifications are a bonus, not a requirement.

Minimum requirements
  • 3+ years experience analyzing large data sets to solve problems and/or building models with a behavioral approach to security
  • B.S. or M.S. Computer Science or related field, or equivalent experience
  • Expert knowledge of Python and SQL, and familiarity with other programming languages
  • Existing experience with log analysis (e.g. first or third party applications, system / data access, event logs), network security, digital forensics, and incident response investigations
  • Proficiency with developing and using novel analytical methods to build, automate, and improve detection and response systems
  • Ability to communicate results clearly and focus on impact
  • Ability to think creatively and holistically about reducing risk in a complex environment
Preferred qualifications
  • An adversarial mindset, understanding the goals, behaviors, and TTPs of threat actors.
  • Experience with software engineering, data processing and analysis tools (e.g. Databricks/Jupyter, Trino, etc.)
  • Familiarity with common open-source frameworks for big data processing and/or data science (PySpark, Pandas, Sci-kit Learn, etc.)
  • Experience with tactical threat intelligence and/or hunting for sophisticated threat actors in an enterprise environment
  • Familiarity with network observability, security software, or data engineering solutions (osquery, Splunk/LogScale, etc.)
  • Experience in one or more of the following areas: user and entity behavior analytics (UEBA), security information event management (SIEM), security orchestration automation and response (SOAR), or data loss prevention (DLP)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer, Incident Response
Security Engineer, Incident Response

United States Digital Space LLC • New York (NY)

On-site
USD 120,000 - 180,000
Security Engineer, Detection & Response
Security Engineer, Detection & Response

Scale AI, Inc. • Seattle (WA)

On-site
USD 237,000 - 297,000
Comprehensive health benefits
Retirement benefits
Learning and development stipend
+2
Security Engineer, Detection & Response
Security Engineer, Detection & Response

Scale AI, Inc. • New York (NY)

On-site
USD 237,000 - 297,000
Comprehensive health coverage
Equity options
Paid time off
+2
Security Engineer, Detection & Response
Security Engineer, Detection & Response

Scale AI, Inc. • Washington

On-site
USD 237,000 - 297,000
Comprehensive health, dental, vision coverage
Retirement benefits
Learning and development stipend
+2
Security Engineer, Detection & Response
Security Engineer, Detection & Response

Scale AI, Inc. • San Francisco (CA)

On-site
USD 237,000 - 297,000
Health benefits
Retirement benefits
Learning and development stipend
+2
Incident Response Engineer - Cyber Defense
Incident Response Engineer - Cyber Defense

Career Techniques • Dallas (TX)

Hybrid
USD 130,000 - 170,000
Senior Security Analyst
Senior Security Analyst

Yardi • Santa Barbara (CA)

On-site
USD 97,000 - 110,000
Senior Security Analyst
Senior Security Analyst

Yardi Systems • Santa Barbara (CA)

Hybrid
USD 97,000 - 110,000
Flexible work arrangements
100% paid employee medical premiums
Company profit-sharing plan
Sr. SOC Analyst
Sr. SOC Analyst

HW3 • Village of Great Neck (NY)

On-site
USD 130,000 - 170,000
Detection and Response Engineer
Detection and Response Engineer

United States Digital Space LLC • New York (NY)

On-site
USD 140,000 - 200,000