7 дней назад
Cyber Detection Event Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Cyber Detection Event Analyst (SIEM/EDR/NDR): Investigating security alerts and cyber threats across endpoint, network, cloud, identity, application, and manufacturing environments with an accent on detection engineering, threat intelligence, and security analytics. Focus on developing detection logic, conducting threat hunting, improving automation workflows, and supporting major incident investigations.
Location: Hybrid in Warren, Michigan; report to the specific location at least 3 times per week. The role may be eligible for relocation benefits.
Company
is an automotive company focused on safer, more equitable mobility through its Zero Crashes, Zero Emissions, and Zero Congestion vision.
What you will do
- Monitor, triage, and investigate security alerts across endpoint, network, cloud, identity, application, and manufacturing environments.
- Use SIEM, EDR, NDR, SOAR, cloud security platforms, and threat intelligence to identify indicators of compromise and malicious activity.
- Develop and improve detection logic, correlation rules, analytics, dashboards, queries, scripts, and alerting content.
- Conduct threat hunting and apply adversary TTPs and MITRE ATT&CK methodologies to improve detection coverage and quality.
- Collaborate with Incident Response, Threat Intelligence, Identity Security, Cloud Security, and Engineering teams.
- Support major incident investigations, security tool onboarding, log integration, automation, documentation, and operational maturity improvements.
Requirements
- 2+ years of cybersecurity experience in security operations, incident response, threat detection, detection engineering, or threat hunting.
- Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology, Engineering, or a related field, or equivalent practical experience.
- Working knowledge of SIEM, EDR, network security monitoring, intrusion detection, packet analysis, network telemetry, and flow analysis.
- Hands-on experience with Azure, AWS, or GCP and scripting with Python, PowerShell, or similar technologies.
- Understanding of operating systems, networking, authentication, cyber threat intelligence, APIs, data integrations, and security automation workflows.
- Ability and willingness to participate in a 24x7 on-call rotation; immigration sponsorship is not provided.
Nice to have
- Experience with SOAR, proactive threat hunting, detection engineering, use-case development, content tuning, or security analytics programs.
- Knowledge of MITRE ATT&CK, the Cyber Kill Chain, and modern adversary tradecraft.
- Experience securing cloud-native, SaaS, identity, or manufacturing environments.
- Familiarity with machine learning, AI-assisted security workflows, security automation, or relevant industry certifications.
Culture & Benefits
- Collaborative environment spanning cybersecurity, engineering, threat intelligence, cloud security, and incident response teams.
- Opportunities to build expertise in security operations, threat detection, automation, cloud security, and emerging technologies.
- Employee-focused total rewards and well-being benefits from day one.
- Inclusive workplace committed to belonging, equal opportunity, and reasonable accommodations.
Hiring process
- Role-related assessments and pre-employment screening may be required where applicable.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
8 дней назад
Analyst II, Cybersecurity (Automation)
8 дней назад
Lead Security Analyst (Cybersecurity)
9 дней назад
Manager, Threat Detection Engineer (Cybersecurity)
160 000 - 180 000$
9 дней назад
Security Operations Center (SOC) Tier 3 Analyst / Incident Responder (Cybersecurity)
9 дней назад
Senior Security Analyst (Cybersecurity)
4 дня назад
Cybersecurity Intern
25 - 35$