Cyber Threat Detection Engineer

Reposted Yesterday
Be an Early Applicant
2 Locations
In-Office
Senior level
Information Technology • Consulting
The Role
The Cyber Threat Detection Engineer will develop detection capabilities, automate processes, enhance threat alerts, and collaborate with customer teams to improve cybersecurity posture.
Summary Generated by Built In
About Rearc


At Rearc, we're committed to empowering engineers to build awesome products and experiences. Success as a business hinges on our people's ability to think freely, challenge the status quo, and speak up about alternative problem-solving approaches. If you're an engineer driven by the desire to solve problems and make a difference, you're in the right place!


Our approach is simple — empower engineers with the best tools possible to make

an impact within their industry.



Role Overview


Rearc is looking for a Cybersecurity Threat Detection Engineer with proactive communication skills, a foundation in DevSecOps, Detection-As-Code, deep purple team technical expertise, and an entrepreneurial approach to join our growing Cybersecurity practice. This role involves partnering with Rearc customers to design cutting-edge detection strategies and support the development of top-tier, modern cybersecurity monitoring programs. You will craft tailored security detections to strengthen our clients' cybersecurity efforts by leveraging Security Information and Event Management (SIEM), Security Orchestration Automation and Response (SOAR), Endpoint Detection and Response (EDR), and Network Detection and Response (NDR) services.

What You Bring
  • Enthusiasm about developing and evangelizing services in the cyber space. 
  • Strong cloud, security, SIEM and data engineering fundamentals.
What You'll Do
  • Utilize NDR, EDR, real-time streaming, and SIEM technologies to develop robust threat detection capabilities.
  • Build and optimize detection rules leveraging real-time data streaming to enhance detection accuracy.
  • Design enrichment pipelines and automation workflows to enhance the precision of threat detections.
  • Develop correlation logic and automated processes to create high-fidelity threat alerts.
  • Build compliance and recoverability of customer Data Analytics solutions, including SOPs, data onboarding, normalization, enrichment, and system maintenance.
  • Create automation playbooks for incident triage and response.
  • Align detection content with customer-specific Use Case Frameworks and provide metrics on cybersecurity threats impacting their environment.
  • Collaborate with customer cybersecurity teams to cover gaps and enhance enterprise posture.
  • Support enterprise Cybersecurity, Information Technology (IT), and Operational Technology (OT) teams by providing dashboards and other data exploration tools.
  • Stay continually aware of emerging cybersecurity threats and trends, adapting detection strategies as needed.
  • Work closely with customer teams, including Cybersecurity Operations Center (CSOC), Operational Technology (OT), and Incident Response (IR) teams, to ensure detections are actionable and relevant.
  • Provide feedback to improve the customer's security framework and overall security monitoring strategy.

In this role, you will combine technical expertise with continual situational awareness of emerging threats, driving client success while staying at the cutting edge of cyber security innovations.

Qualifications
  • 6+ years of experience in Cybersecurity with a focus on:
    • Log streaming
    • Cybersecurity data lakes and data warehousing
    • SOAR engineering
    • SIEM engineering, administration, architecture, and operations
    • Data science, statistical analysis, and threat detection development
    • Integrating disparate IT, OT, and business applications into SIEM systems
  • Bachelor's degree in Management Information Systems, Computer Science, or a related field
  • A strong passion for Cybersecurity and a commitment to staying current with industry trends, best practices, and tools
  • Proven experience in documenting, socializing, and operationalizing Cybersecurity technologies and processes
  • Prior programming experience in Python, SQL, and Apache Spark
  • Solid understanding of common attack techniques and their practical applications
  • Demonstrated ability to work effectively across multiple teams, building cross-functional relationships with individuals of varying technical expertise
  • A self-starter with a proven ability to thrive in fast-paced environments
  • Strong technical communication skills, both written and verbal


Nice To Have:

  • Prior experience with platforms like Databricks, Cribl, Tines, or other cybersecurity lakehouse providers


Some More About Us

At Rearc, our mission is straightforward - empower engineers with the best tools possible to make an impact within their industry. We pride ourselves on fostering an environment where creativity flourishes, bureaucracy is non-existent, and individuals are encouraged to challenge the status quo. We're not just a company; we're a community of problem-solvers dedicated to improving the lives of fellow software engineers.

Our commitment is simple - finding the right fit for our team and cultivating a desire to make things better. If you're a cloud professional intrigued by our problem space and eager to make a difference, you've come to the right place. Join us, and let's solve problems together!


Top Skills

Spark
Detection-As-Code
Devsecops
Edr
Ndr
Python
SIEM
Soar
SQL
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, NY
51 Employees
Year Founded: 2016

What We Do

Rearc is a boutique Cloud Software & Services firm with engineers that have years of experience shaping the cloud journey of large scale enterprises. Our engineers are skilled at planning application migrations to the cloud and building cloud-native application environments and patterns for the future. We build strategic partnerships with our enterprise customers to enable long term success in the cloud.

Similar Jobs

CrowdStrike Logo CrowdStrike

India Legal Hub Site Lead

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Hybrid
Pune, Mahārāshtra, IND
10000 Employees

CrowdStrike Logo CrowdStrike

Engineer II - Backend

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Hybrid
Pune, Mahārāshtra, IND
10000 Employees

CrowdStrike Logo CrowdStrike

Engineer II - Backend

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Hybrid
Pune, Mahārāshtra, IND
10000 Employees

CrowdStrike Logo CrowdStrike

Automation Engineer

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
India
10000 Employees

Similar Companies Hiring

Scrunch AI Thumbnail
Software • SEO • Marketing Tech • Information Technology • Artificial Intelligence
Salt Lake City, Utah
Amplify Platform Thumbnail
Fintech • Financial Services • Consulting • Cloud • Business Intelligence • Big Data Analytics
Scottsdale, AZ
62 Employees
Standard Template Labs Thumbnail
Software • Information Technology • Artificial Intelligence
New York, NY
15 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account