Jobs

Detection Engineer

The Basics

The Detection Engineer is responsible for facilitating the development and continuous improvement of Tanium’s internal cybersecurity detection program. Candidates will work closely with operations, engineering, architects and business units throughout Tanium to collaborate on threat models and ensure adequate detection mechanisms are in place for a changing threat landscape. This role will be required to balance strategic thinking and tactical hands-on execution. Candidates will enhance existing methods to measure the coverage and quality of detection while also prioritizing and driving efforts to close gaps. As such, candidates will often create or enhance existing detections mechanisms while ensuring alerts are properly transitioned to the security operations team. Candidates are expected to question the status quo to identify opportunities for continuous improvement and are enabled to take action to ensure the effectiveness of a distributed security program operating within DevOps centric workflows. 

This position is available for remote workers with flexible working hours. When support for incident response is required, this role may require occasional work outside of normal business hours. 

What you'll do

  • Drive continuous development and tuning of detection measures 
  • Partner with security teams and business units to define appropriate log visibility & detection related gaps 
  • Lead continuous improvement efforts to evaluate detection capabilities & related tooling efficiency 
  • Build innovative ways to detect potential threats within on premise and cloud environments 
  • Collaborate with operations personnel to prioritize and close detection gaps
  • Work with security architects and engineers to develop security controls based on threat models
  • Drive standardization and repeatable processes and procedures within operations as it pertains to responding to threats
  • Participate in the development and execution of threat hunting exercises
  • Develop, implement, document and maintain SIEM & Detection engineering tooling management controls, standard operating procedures, narratives and test scripts.
  • Plan, run, and participate in table top exercises
  • Collaborate with engineering teams to develop automation to improve the efficiency of security operations
  • Provide incident response support
  • Leverage threat intelligence reporting to develop new detection capabilities 

We’re looking for someone with

  • Experience
    • In accordance with Department of Defense requirements, applicants for this role must be a U.S. citizen, national, or resident pursuant to 8 U.S.C. 1101(a)(20) and 8 U.S.C. 1324b(a)(3) 
    • 2+ years working in a Security Operations or equivalent role 
    • 2+ years responding to threats in cloud environments (Azure and AWS preferred) 
    • Working knowledge of common frameworks (Mitre ATT&CK) 
    • Ability to use data to derive meaningful metrics to drive prioritization 
    • Firm understanding of attacker tactics, techniques, and procedures and means of detection 
    • Ability to synthesize risks and derive detection countermeasures 
    • Proficiency with security tools and platforms (e.g., SIEMs, vulnerability scanners, and malware analyzers) 
    • Familiarity with IDS/IPS systems and endpoint Antivirus and EDR products 
    • Malware analysis experience preferred 
    • Working knowledge of Python or other scripting languages preferred 

About Tanium 

Tanium, the industry’s only provider of converged endpoint management (XEM), leads the paradigm shift in legacy approaches to managing complex security and technology environments. Only Tanium protects every team, endpoint, and workflow from cyber threats by integrating IT, Operations, Security, and Risk into a single platform that delivers comprehensive visibility across devices, a unified set of controls, and a common taxonomy for a single shared purpose: to protect critical information and infrastructure at scale. Tanium has been named to the Forbes Cloud 100 list for six consecutive years and ranks on Fortune’s list of the Best Large Workplaces in Technology. In fact, more than half of the Fortune 100 and the U.S. armed forces trust Tanium to protect people; defend data; secure systems; and see and control every endpoint, team, and workflow everywhere. That’s the power of certainty. Visit www.tanium.com and follow us on LinkedIn and Twitter.

On a mission. Together. 

At Tanium, we are stewards of a culture that emphasizes the importance of collaboration, respect, and diversity. In our pursuit of revolutionizing the way some of the largest enterprises and governments in the world solve their most difficult IT challenges, we are strengthened by our unique perspectives and by our collective actions.   

We are an organization with stakeholders around the world and it’s imperative that the diversity of our customers and communities is reflected internally in our team members. We strive to create a diverse and inclusive environment where everyone feels they have opportunities to succeed and grow because we know that only together can we do great things. 

Each of our team members has 5 days set aside as volunteer time off (VTO) to contribute to the communities they live in and give back to the causes they care about most.   

What you’ll get

The annual base salary range for this full-time position is $90,000 to $275,000. This range is an estimate for what Tanium will pay a new hire. The actual annual base salary offered may be adjusted based on a variety of factors, including but not limited to, location, education, skills, training, and experience.

In addition to an annual base salary, team members will receive equity awards and a generous benefits package consisting of medical, dental and vision plan, family planning benefits, health savings account, flexible spending account, transportation savings account, 401(k) retirement savings plan with company match, life, accident and disability coverage, business travel accident insurance, employee assistance programs, disability insurance, and other well-being benefits.

For more information on how Tanium processes your personal data, please see our Privacy Policy

Cyber Security Jobs by Category

Cyber Security Salaries