Snowflake6 дней назад

Staff Security Engineer - Threat Detection

Зарплата не указана
РЫНОК
15 167медиана по профессии
Cloud Engineer · 5 вакансий с указанной зарплатой
6 283половина предложений: 13 358–15 250150 000
Работодатель не указал зарплату — сравните с рынком сами.
Полная занятостьУдалёнка

Обязанности

  • 01Develop and deploy detections using modern engineering practices (testing and validation, CI/CD pipelines, detections as code, and a full detection development lifecycle), spanning both rules-based and AI-assisted detections
  • 02Mature our threat detection program by analyzing coverage gaps and mitigating risks through detective controls, experimenting with AI/ML approaches where they improve signal-to-noise ratio or analyst efficiency
  • 03Make data-driven recommendations for detective and preventative controls based on threat models, proactive threat hunts, and data science-oriented exploration of logs and telemetry
  • 04Design and build automations and AI-driven workflows that strengthen our security posture and reduce mean time to detect and respond
  • 05Build and maintain strong partnerships with stakeholders to deliver detection as a service, including self-service patterns, reusable components, and AI-enhanced detections that support their domains
  • 06Continuously measure and improve detection quality across coverage, precision and recall, false positive rate, and latency

Требования

  • 018+ years of security engineering experience across one or more of threat detection, incident response, threat hunting, product security, or corporate security, or equivalent experience
  • 02Strong coding ability in a high-level language such as Python or Go, with a track record of building software, data tooling, or automations, and a desire to apply those skills to AI/ML-powered detection and response
  • 03Experience handling data programmatically (SQL, Python), ideally including large-scale log and telemetry datasets used for detection logic or analytics
  • 04Experience writing production code, including unit tests, version control, and CI/CD integration
  • 05Experience developing and operating agent-based or agentic workflows (for example, LangGraph or similar orchestration frameworks)
  • 06Hands-on experience with at least one major cloud provider (AWS, Azure, or GCP) and a solid understanding of its native logging, monitoring, and security services
  • 07Familiarity with the risks that impact SaaS products and workstations, such as account compromise, data exfiltration, phishing, and supply chain attacks
  • 08A risk-based approach that helps prioritize key security initiatives and judge when AI provides meaningful value over traditional rules and heuristics, paired with a humble, team-oriented mindset in a zero-ego environment

Условия

  • 01Fully remote role open to candidates across the United States