Detection Engineer, Global Security Operations

hace 4 semanas


San José, Costa Rica Splunk OLD (Read Only) A tiempo completo

Join us as we pursue our innovative new vision to make machine data accessible, usable and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we’re committed to our work, customers, having fun and most importantly to each other’s success. Learn more about Splunk careers and how you can become a part of our journey

**Role**:
The Splunk Detection Engineer reports to the Senior Manager of Detection Engineering. In this role, you will be responsible for developing security content supporting the 24x7 monitoring operations and response to cybersecurity threats. You will have a deep understanding of Information Security principles and disciplines coupled with expert level knowledge of Splunk Processing Language (SPL), excellent development skills, and a continuous desire to learn and grow. We are a passionate team who has fun, enjoys a good laugh but above all else thinks security first.

**Responsibilities**:

- You will use your deep Splunk expertise in building detection use cases from scratch to identify cybersecurity threats
- Draw from your industry expertise in understanding how an attacker would behave and translate it to custom security detection content
- Engage with other teams to ensure detections are working as intended
- Identify and prioritize new data sources and their applicability to the detection of sophisticated adversaries
- Lead efforts to ensure data sources are aligned with Splunk’s Common Information Model (CIM)
- Drive complex initiatives with key business partners to continuously improve visibility
- Map security content to leading adversarial and defense technique ontologies (e.g. MITRE ATT&CK, D3FEND) and common control frameworks
- Understand & manage development backlog to ensure a steady stream of activities
- Conduct sprint reviews and celebration of successes for all items in the workstream.
- Collaborate across teams for training, development opportunities, and service improvement
- Capture development metrics in direct-support to executive-level briefings (daily, weekly, monthly)
- Ensure that all documents, workflows and processes remain accurate and up-to-date

**Requirements**:

- You have experience as a SOC Analyst, Security Content Developer and/or Security Engineer
- Advanced Splunk Enterprise Security experience
- Deep understanding of Splunk Data Models
- Ability to build and interpret SPL fluidly
- Coding proficiency in Python or equivalent language
- Knowledge of version control systems and automation capabilities within them, Gitlab, Bitbucket, Github, etc
- Ability to understand systems quickly, and translate understanding into logic to detect anomalies with the system
- You can lead people to think critically by guiding them without doing the work for them
- You have a passion for learning and a desire to enable the growth of others
- You possess a demonstrated ability to speak with people with varying knowledge in IT Security concepts and have the tailor your message to the audience
- You have an intimate understanding of Incident Response framework, root cause analysis, and analysis steps need to triage events
- Identifies opportunities for cycle-time reduction via automation or process enhancements
- Advanced knowledge of Cloud technologies in one or more leading cloud providers
- Ability and desire to break the norm and find creative scalable solutions to problems with the moxie to follow-through
- Excellent interpersonal skills and ability to see things through the customer’s eyes
- Tremendous attention to detail
- Bachelor’s degree in computer science, information security or related discipline is required or equivalent work experience



  • San José, Costa Rica Splunk A tiempo completo

    Join us as we pursue our innovative new vision to make machine data accessible, usable and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we’re committed to our work, customers, having fun and most importantly to each other’s success....


  • San José, San José, Costa Rica Splunk A tiempo completo

    Join us as we pursue our innovative new vision to make machine data accessible, usable and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we're committed to our work, customers, having fun and most importantly to each other's success. Learn...


  • San Francisco, Heredia, Costa Rica Experian A tiempo completo

    Company DescriptionAbout us, but we'll be briefExperian is the world's leading global information services company, unlocking the power of data to create more opportunities for consumers, businesses and society. We are thrilled to share that FORTUNE has named Experian one of the 100 Best Companies to work for. In addition, for the last five years we've been...


  • San José, Costa Rica Equifax A tiempo completo

    **What you’ll do** - Create and implement detection and prevention controls using a range of security tools (SIEM, DLP, IPS/IDS, EDR/Cloud) - Management and implementation of network and security tools to support incident response - Implement controls to identify new attack TTPs and mitigation techniques in support of daily operations - Compile metrics and...

  • Senior Security Engineer

    hace 4 semanas


    San José, Costa Rica TreviPay A tiempo completo

    At TreviPay, we believe loyalty begins at the payment. Thousands of sellers use our global B2B payments and invoicing network to provide choice and convenience to buyers, open new markets and automate accounts receivables. With integrations to top eCommerce and ERP solutions and flexible trade credit options, TreviPay brings 40 years of experience serving...


  • San José, Costa Rica Equifax A tiempo completo

    Equifax is where you can power your possibly. If you want to achieve your true potential, chart new paths, develop new skills, collaborate with bright minds, and make a meaningful impact, we want to hear from you. **What you’ll do** - Create and implement detection and prevention controls using a range of security tools (SIEM, DLP, IPS/IDS, EDR) -...

  • Senior Security Engineer

    hace 3 semanas


    San José, Costa Rica Microsoft A tiempo completo

    **Responsibilities**: **Qualifications**: **Required/Minimum Qualifications**: 5+ years of experience in software development lifecycle, large-scale computing, modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), and operations...

  • Security Operations Lead

    hace 3 semanas


    San José, San José, Costa Rica Microsoft A tiempo completo

    Overview Security is a top priority for our customers in a world full of digital threats and complexity. Microsoft Security aims to create a safer environment for everyone. We are dedicated to transforming security and equipping every user, customer, and developer with a security cloud for ultimate protection with simple solutions. The Microsoft...


  • San Francisco, Heredia, Costa Rica Stryker A tiempo completo

    Why join Stryker?:Our total rewards package offering includes bonuses, healthcare, insurance benefits, retirement programs, wellness programs, as well as service and performance awards - not to mention various social and recreational activities, all of which are location specific.Know someone at Stryker?: Analyze cybersecurity threats related or unrelated to...


  • San José, San José, Costa Rica Microsoft A tiempo completo

    Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end-to-end, simplified...

  • Security Operations Lead

    hace 2 semanas


    San José, Costa Rica Microsoft A tiempo completo

    Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end-to-end, simplified...


  • San José, Costa Rica Microsoft A tiempo completo

    Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end-to-end, simplified...

  • Security Operations Lead

    hace 3 semanas


    San José, San José, Costa Rica Microsoft A tiempo completo

    Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end-to-end, simplified...


  • San Francisco, Heredia, Costa Rica TTEC A tiempo completo

    Security Operations Analyst - Remote, Costa RicaOur Enterprise Services organization is the machine behind our market-facing product and solution areas, enabling each of our segments to deliver for our clients. Whether Information Technology, Finance, Accounting, Tax or Treasury, Supply Chain or Legal, Marketing, or one of our Human Capital team members, we...

  • Security Engineer

    hace 3 semanas


    San Francisco, Heredia, Costa Rica Publicis Re:Sources Global A tiempo completo

    Job DescriptionThe Security Engineer for Re: Sources Global Security Organization (GSO), part of the overall Publicis Groupe, is responsible for orchestrating Publicis Groupe-wide security engineering operations and functions. The role must be able to translate the IT-risk requirements and constraints of the agencies into technical control requirements and...


  • San Jose, Costa Rica Microsoft A tiempo completo

    Overview Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with...


  • San Jose, Costa Rica Microsoft A tiempo completo

    Overview Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with...


  • San José, San José, Costa Rica Microsoft A tiempo completo

    OverviewCompany: Microsoft SecurityJob Title: Security Operations Researcher - DefenderSecurity is a top priority for our customers in the digital world full of threats. Microsoft Security aims to make the world safer for everyone, providing simplified solutions to protect users, customers, and developers. Join our team to help identify and report human...

  • IT Data Security Engineer

    hace 2 semanas


    San José, Costa Rica Boston Consulting Group A tiempo completo

    **WHAT YOU'LL DO**: Welcome to BCG Worldwide IT! We are seeking an IT Data Security Engineer to join our growing Information Protection team. You will be working in a Security Engineering, Architecture and Operations capacity to drive and support the continued evolution of our Secure Infrastructure Portfolio, notably in Data Security services providing...


  • San José, Costa Rica Splunk OLD (Read Only) A tiempo completo

    Join us as we pursue our exciting new vision to make machine data accessible, usable and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we’re committed to our work, customers, having fun and most importantly to each other’s success. Learn...