- Build and tune detections, alerts, and monitoring workflows across cloud, application, identity, and edge environments
- Review API, authentication-flow, and WAF traffic patterns to identify malicious activity, abuse patterns, and anomalous behavior
- Use AI for triage, analysis, and workflow automation while helping define guardrails for AI-enabled systems
- Operate the vulnerability management program by triaging, prioritizing, and driving remediation of findings from Wiz and vulnerability scanning
- Develop Python-based tooling and automation for investigations, enrichment, response, and operational scale
- Partner with Product Security to translate threat models, security reviews, and product risks into production detections and response playbooks
- Investigate security events end to end, including triage, scoping, containment support, and remediation follow-through
- Support vulnerability management and operational security practices aligned with PCI and SOC 2 expectations
- Participate in proactive threat hunting, detection improvement, and a 24x7 security incident response on-call rotation
Requirements
- 5+ years of experience in information security, threat detection, security operations, detection engineering, or incident response
- Strong experience investigating suspicious activity in web, API, authentication, and infrastructure telemetry
- Ability to distinguish attacker behavior from normal production noise
- Experience identifying malicious activity, fraud, account abuse, credential attacks, reconnaissance, and exploitation attempts
- Strong Python programming skills
- Experience building and tuning detections in a SIEM or detection platform
- Experience with observability and logging systems such as CloudWatch, Datadog, or similar platforms
- Experience operating or supporting a vulnerability management program
- Familiarity with Wiz, including CNAPP, runtime, code, and vulnerability scanning use cases
- Experience with at least one major cloud provider, preferably AWS
- Working knowledge of identity and access systems and modern authentication flows
- Understanding of security implications of internet-facing applications and APIs
- Strong understanding of threat modeling, risk prioritization, and practical security controls
- Practical experience using AI tools in security workflows
- Judgment regarding AI risks including prompt injection, data leakage, excessive tool access, and weak auditability
- Excellent analytical, communication, and cross-functional collaboration skills
- United States work authorization required
- Must disclose whether immigration sponsorship is required
Core Competencies
Demonstrates expertise in threat detection, incident response, and vulnerability management, with strong proficiency in Python programming and experience in cloud environments. Capable of leveraging AI tools for security workflows and collaborating effectively across teams to enhance security posture.
Highest-signal resume keywords
- Threat Detection Engineering
- Python Programming
- Vulnerability Management
- Security Incident Response
- Cloud Security (AWS)
ATS Optimization Keywords
Hard Skills
- Information Security
- Threat Detection
- Incident Response
- Malicious Activity Identification
- Detection Tuning
- AI Tools in Security Workflows
- Security Controls
- Threat Modeling
- API Security
- Credential Attack Analysis
Soft Skills
- Analytical Skills
- Communication Skills
- Cross-Functional Collaboration
Industry Keywords
- PCI Compliance
- SOC 2 Compliance
- Cloud Security
- Identity and Access Management
- Observability
Tools & Technologies
- SIEM
- Wiz
- CloudWatch
- Datadog
- Vulnerability Scanning Tools
#J-18808-Ljbffr
Security and Threat Operations Engineer Arbeitgeber: Jobtailor
Als Front Office Supervisor in unserem dynamischen Team bieten wir Ihnen die Möglichkeit, in einem unterstützenden und freundlichen Arbeitsumfeld zu wachsen. Wir legen großen Wert auf die berufliche Entwicklung unserer Mitarbeiter und bieten regelmäßige Schulungen sowie die Chance, Verantwortung zu übernehmen. Unsere Lage ermöglicht es Ihnen, Teil einer lebendigen Gemeinschaft zu sein, während Sie gleichzeitig die Standards unseres Franchise-Partners einhalten und unseren Gästen einen unvergesslichen Aufenthalt bieten.