Snowflake18 days ago
Старший инженер безопасности по детекции угроз
Salary not specified
MARKET
11,333 ₽median for this role
Cloud Engineer · 15 jobs with disclosed pay
5,233half of the offers: 6,149–15,37561,617
The employer didn't disclose pay — compare with the market yourself.
Полная занятостьУдалёнка
Responsibilities
- 01Develop and deploy detections using modern engineering practices (testing and validation, CI/CD pipelines, detections as code, and a full detection development lifecycle), spanning both rules-based and AI-assisted detections
- 02Mature our threat detection program by analyzing coverage gaps and mitigating risks through detective controls, experimenting with AI/ML approaches where they improve signal-to-noise ratio or analyst efficiency
- 03Make data-driven recommendations for detective and preventative controls based on threat models, proactive threat hunts, and data science-oriented exploration of logs and telemetry
- 04Design and build automations and AI-driven workflows that strengthen our security posture and reduce mean time to detect and respond
- 05Build and maintain strong partnerships with stakeholders to deliver detection as a service, including self-service patterns, reusable components, and AI-enhanced detections that support their domains
- 06Continuously measure and improve detection quality across coverage, precision and recall, false positive rate, and latency
Requirements
- 018+ years of security engineering experience across one or more of threat detection, incident response, threat hunting, product security, or corporate security, or equivalent experience
- 02Strong coding ability in a high-level language such as Python or Go, with a track record of building software, data tooling, or automations, and a desire to apply those skills to AI/ML-powered detection and response
- 03Experience handling data programmatically (SQL, Python), ideally including large-scale log and telemetry datasets used for detection logic or analytics
- 04Experience writing production code, including unit tests, version control, and CI/CD integration
- 05Experience developing and operating agent-based or agentic workflows (for example, LangGraph or similar orchestration frameworks)
- 06Hands-on experience with at least one major cloud provider (AWS, Azure, or GCP) and a solid understanding of its native logging, monitoring, and security services
- 07Familiarity with the risks that impact SaaS products and workstations, such as account compromise, data exfiltration, phishing, and supply chain attacks
- 08A risk-based approach that helps prioritize key security initiatives and judge when AI provides meaningful value over traditional rules and heuristics, paired with a humble, team-oriented mindset in a zero-ego environment
What we offer
- 01Fully remote role open to candidates across the United States