Embedded Detection Analyst (AI)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Embedded Detection Analyst (Cybersecurity/AI): Improving detection performance for strategic customers by identifying root causes of misclassifications and implementing tuning solutions with an accent on email security and AI-powered analysis. Focus on optimizing precision/recall metrics, reducing false positives, and translating technical findings into measurable business value for high-value accounts.
Company
is a cybersecurity company utilizing AI to protect organizations from advanced email attacks.
What you will do
- Own detection performance outcomes for 3-5 strategic customer accounts, ensuring high AI engine efficacy.
- Handle high-priority false positive and false negative escalations using threat intelligence inputs.
- Diagnose root causes of misclassifications through incident triage, alert correlation, and analysis of IOCs and TTPs.
- Design and implement detection tuning strategies and optimize precision/recall thresholds.
- Generate and present impact reports demonstrating measurable detection improvements to customers and stakeholders.
- Leverage AI tools (ChatGPT, Claude) to accelerate research, automate routine tasks, and enhance documentation.
Requirements
- 2-5 years of experience in SOC operations, detection engineering, incident response, or email security analysis.
- Proficiency with security monitoring platforms such as SIEM, EDR, or specialized email security tools.
- Deep understanding of precision/recall metrics (true/false positives/negatives) and their business impact.
- Demonstrated proficiency with AI tools (ChatGPT, Claude, Copilot) to automate workflows and problem-solving.
- Strong technical writing skills with the ability to communicate complex issues to diverse audiences.
- Proven ability to remain responsive and calm during high-pressure customer escalations or active incidents.
Nice to have
- Background in phishing detection, anti-abuse systems, or email threat containment.
- Basic SQL knowledge for data filtering and understanding data structures.
- Familiarity with Python, Databricks, Jupyter, or Splunk for data analysis.
- Knowledge of the MITRE ATT&CK framework and common email attack vectors.
- Relevant security certifications such as Security+, CISSP, GCIA, or GCIH.
Culture & Benefits
- AI-forward environment that encourages the use of productivity enhancers (Claude, ChatGPT) in daily workflows.
- Outcome-oriented culture where success is measured by customer impact and detection improvement.
- Equal opportunity employer with a strong commitment to diversity, inclusion, and professional ethics.
- Collaborative atmosphere partnering closely with GTM and Customer Success teams.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →