Sr. Security Detection Engineer

Full-time
USA
$108k-$240k per year
Posted 1 year ago
Go ad-free with Premium ×
The job listing has expired. Unfortunately, the hiring company is no longer accepting new applications.

To see similar active jobs please follow this link: Remote System Administration jobs

While candidates in the listed locations are encouraged for this role, we are open to remote candidates in other locations.

RDQ125R45

The Detection & Response team's mission is to protect Databricks products, cloud infrastructure, endpoints and employees from security threats and modern attacks. We are a team of expert engineers combining log analysis expertise, cybersecurity skills and software development to build a mature and durable detection platform. We embrace “Detection-as-Code” model by doing “Security for Databricks on Databricks”, using our own platform to build alerts and detections. You are passionate about ML-based intrusion detection. You have experience building ML at enterprise scale, and are comfortable implementing models from conception to production. You also love to learn continuously about novel attacks, dig into the inner details of cyber-security incidents, discover new log sources and undocumented schemas to detect suspicious activities, and think about attacks using graphs.

You will be an individual contributor on the Security Detection team at Databricks, reporting to the Sr Manager of Detection Engineering.

The impact you will have:

  • Dive into new or unknown log sources to understand events, schemas, raw data and build a detection strategy based on threats and adversaries knowledge

  • Partner with our data team to build the most efficient and useful log ingestion pipelines

  • Engineer detections on Spark in Python using Databricks (with good design, clean code, unit testing, full documentation).

  • Fuse numerous log types to implement anomaly- and ML-based intrusion detection on the Databricks platform.

  • Partner with Incident Response to provide rich logs, hunting playbooks and relevant alerts with full context, with near-zero false positives

  • Present at security/engineering conferences novel detection work and ideas 

What we look for:

  • 5+ years of software engineering experience

  • 3+ years of Security-related engineering (Detection Engineering preferred)

  • Proficient in one major cloud, broad experience in at least one other major cloud (AWS, Azure or GCP)

  • Knowledge across two or more Security SME areas: Network security, Host/Disk analysis, Application/Log analysis, Memory/Malware analysis, Endpoint security

  • Experience with Python, Git/GitHub, and CI/CD automation.

  • Experience with applying machine learning (ML) to security problems.

  • Individuals who love to learn, execute fast, take feedback well, and give feedback in an environment of mutual respect and aid.

  • Communicates effectively with internal and external stakeholders; communicates recommendations and decisions through appropriate collateral (e.g., design docs, tech talks, etc.

Benefits

  • Comprehensive health coverage including medical, dental, and vision

  • 401(k) Plan

  • Equity awards

  • Flexible time off

  • Paid parental leave

  • Family Planning

  • Fitness reimbursement

  • Annual personal development fund

  • Work headphones reimbursement

  • Employee Assistance Program (EAP)

  • Business travel accident insurance

  • Mental wellness resources

Go ad-free with Premium ×
About the Job
Full-time
USA
$108k-$240k per year
Posted 1 year ago
Check if your resume is a good fit
25/100
Get Full Report
+ 1,284 new jobs added today
30,000+
Remote Jobs

Don't miss out — new listings every hour

Join Premium

Sr. Security Detection Engineer

The job listing has expired. Unfortunately, the hiring company is no longer accepting new applications.

To see similar active jobs please follow this link: Remote System Administration jobs

While candidates in the listed locations are encouraged for this role, we are open to remote candidates in other locations.

RDQ125R45

The Detection & Response team's mission is to protect Databricks products, cloud infrastructure, endpoints and employees from security threats and modern attacks. We are a team of expert engineers combining log analysis expertise, cybersecurity skills and software development to build a mature and durable detection platform. We embrace “Detection-as-Code” model by doing “Security for Databricks on Databricks”, using our own platform to build alerts and detections. You are passionate about ML-based intrusion detection. You have experience building ML at enterprise scale, and are comfortable implementing models from conception to production. You also love to learn continuously about novel attacks, dig into the inner details of cyber-security incidents, discover new log sources and undocumented schemas to detect suspicious activities, and think about attacks using graphs.

You will be an individual contributor on the Security Detection team at Databricks, reporting to the Sr Manager of Detection Engineering.

The impact you will have:

  • Dive into new or unknown log sources to understand events, schemas, raw data and build a detection strategy based on threats and adversaries knowledge

  • Partner with our data team to build the most efficient and useful log ingestion pipelines

  • Engineer detections on Spark in Python using Databricks (with good design, clean code, unit testing, full documentation).

  • Fuse numerous log types to implement anomaly- and ML-based intrusion detection on the Databricks platform.

  • Partner with Incident Response to provide rich logs, hunting playbooks and relevant alerts with full context, with near-zero false positives

  • Present at security/engineering conferences novel detection work and ideas 

What we look for:

  • 5+ years of software engineering experience

  • 3+ years of Security-related engineering (Detection Engineering preferred)

  • Proficient in one major cloud, broad experience in at least one other major cloud (AWS, Azure or GCP)

  • Knowledge across two or more Security SME areas: Network security, Host/Disk analysis, Application/Log analysis, Memory/Malware analysis, Endpoint security

  • Experience with Python, Git/GitHub, and CI/CD automation.

  • Experience with applying machine learning (ML) to security problems.

  • Individuals who love to learn, execute fast, take feedback well, and give feedback in an environment of mutual respect and aid.

  • Communicates effectively with internal and external stakeholders; communicates recommendations and decisions through appropriate collateral (e.g., design docs, tech talks, etc.

Benefits

  • Comprehensive health coverage including medical, dental, and vision

  • 401(k) Plan

  • Equity awards

  • Flexible time off

  • Paid parental leave

  • Family Planning

  • Fitness reimbursement

  • Annual personal development fund

  • Work headphones reimbursement

  • Employee Assistance Program (EAP)

  • Business travel accident insurance

  • Mental wellness resources