drjobs Security and Automation Detection Engineer

Security and Automation Detection Engineer

Employer Active

drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Alexander City - USA

Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Job Description

Overview:
TekWissen is a global workforce management provider headquartered in Ann Arbor Michigan that offers strategic talent solutions to our clients worldwide. Our client is a media and entertainment company that develops produces and markets entertainment news and information. It owns and operates a portfolio of news and entertainment television networks a motion picture company television production operations a television stations group theme parks and a suite of Internetbased businesses.
Position: Security and Automation & Detection Engineer
Location: New York NY 10112
Duration: 3 Months
Job Type: Contract
Work Type: Remote
Shift: (MonFri) (8.00 AM5.00 PM)
Job Description:
Responsibilities:
  • As an Automation and Detection Engineer you will play a critical role in enhancing our organizations security posture by automating security processes and developing advanced threat detection capabilities.
  • You will combine technical expertise in scripting automation and security analysis to streamline operations improve efficiency and proactively identify and mitigate cyber threats.
Automation:
  • Design develop and implement automated solutions for various security tasks including threat detection incident response and vulnerability management.
  • Utilize scripting languages (Python PowerShell etc.) and automation tools (Ansible Jenkins etc.) to create efficient and scalable automation workflows.
  • Integrate automation solutions with existing security tools and platforms.
  • Collaborate with security stakeholders to gather requirements and identify opportunities for automation.
  • Analyze requirements and translate them into technical specifications for automation solutions.
  • Prioritize automation projects based on business impact and security risk.
  • Monitor the performance and availability of automation platforms and tools.
  • Troubleshoot and resolve issues to ensure platform uptime and reliability.
  • Optimize automation workflows to improve efficiency and reduce manual effort.
  • Develop and maintain integrations with various APIs to automate data collection analysis and response.
  • Ensure API integrations are secure reliable and compliant with security best practices.
  • Thoroughly test automation scripts and workflows to identify and fix errors.
  • Develop test cases to ensure the accuracy and reliability of automation solutions.
  • Conduct performance testing to optimize automation processes.
    Detection Engineering:
  • Develop test and deploy highfidelity detection rules and signature
  • Tune and optimize detection rules to reduce false positives and negatives
  • Conduct regular reviews of detection coverage and identify gaps
  • Perform threat hunting and incident response activities
  • Create and refine alerts to prioritize critical security events
  • Develop automated response actions to mitigate threats efficiently
  • Collaborate with security operations teams to improve incident response times
  • Develop and maintain key performance indicators (KPIs) to measure the effectiveness of detection capabilities
  • Generate regular reports on threat trends and security posture
  • Contribute to the development and maintenance of security standards and best practices
  • Participate in security reviews and audits
  • Stay uptodate on the latest security threats and vulnerabilities
Qualifications:
  • Must have experience with XSOAR and Splunk.
  • Strong understanding of security principles threat intelligence and attack methodologies
  • Proficiency in scripting languages (Python PowerShell etc.) and automation tools.
  • Experience with API integration and RESTful APIs
  • Knowledge of cloud technologies (AWS Azure GCP)
  • Strong problemsolving and analytical skills
  • Excellent communication and collaboration skills
  • Experience with security information and event management (SIEM) systems and security orchestration automation and response (SOAR) platforms
  • Knowledge of cloud security and cloudnative technologies
TekWissen Group is an equal opportunity employer supporting workforce diversity.

Employment Type

Full Time

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.