Snowflake6 дней назад
Staff Security Engineer - Threat Detection
Зарплата не указана
РЫНОК
15 167 ₽медиана по профессии
Cloud Engineer · 5 вакансий с указанной зарплатой
6 283половина предложений: 13 358–15 250150 000
Работодатель не указал зарплату — сравните с рынком сами.
Полная занятостьУдалёнка
Обязанности
- 01Develop and deploy detections using modern engineering practices (testing and validation, CI/CD pipelines, detections as code, and a full detection development lifecycle), spanning both rules-based and AI-assisted detections
- 02Mature our threat detection program by analyzing coverage gaps and mitigating risks through detective controls, experimenting with AI/ML approaches where they improve signal-to-noise ratio or analyst efficiency
- 03Make data-driven recommendations for detective and preventative controls based on threat models, proactive threat hunts, and data science-oriented exploration of logs and telemetry
- 04Design and build automations and AI-driven workflows that strengthen our security posture and reduce mean time to detect and respond
- 05Build and maintain strong partnerships with stakeholders to deliver detection as a service, including self-service patterns, reusable components, and AI-enhanced detections that support their domains
- 06Continuously measure and improve detection quality across coverage, precision and recall, false positive rate, and latency
Требования
- 018+ years of security engineering experience across one or more of threat detection, incident response, threat hunting, product security, or corporate security, or equivalent experience
- 02Strong coding ability in a high-level language such as Python or Go, with a track record of building software, data tooling, or automations, and a desire to apply those skills to AI/ML-powered detection and response
- 03Experience handling data programmatically (SQL, Python), ideally including large-scale log and telemetry datasets used for detection logic or analytics
- 04Experience writing production code, including unit tests, version control, and CI/CD integration
- 05Experience developing and operating agent-based or agentic workflows (for example, LangGraph or similar orchestration frameworks)
- 06Hands-on experience with at least one major cloud provider (AWS, Azure, or GCP) and a solid understanding of its native logging, monitoring, and security services
- 07Familiarity with the risks that impact SaaS products and workstations, such as account compromise, data exfiltration, phishing, and supply chain attacks
- 08A risk-based approach that helps prioritize key security initiatives and judge when AI provides meaningful value over traditional rules and heuristics, paired with a humble, team-oriented mindset in a zero-ego environment
Условия
- 01Fully remote role open to candidates across the United States