Detection Engineer, Global Security Operations

hace 2 semanas


San José, Costa Rica Splunk A tiempo completo

Join us as we pursue our innovative new vision to make machine data accessible, usable and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we’re committed to our work, customers, having fun and most importantly to each other’s success. Learn more about Splunk careers and how you can become a part of our journey

**Role**:
The Splunk Detection Engineer reports to the Senior Manager of Detection Engineering. In this role, you will be responsible for developing security content supporting the 24x7 monitoring operations and response to cybersecurity threats. You will have a deep understanding of Information Security principles and disciplines coupled with expert level knowledge of Splunk Processing Language (SPL), excellent development skills, and a continuous desire to learn and grow. We are a passionate team who has fun, enjoys a good laugh but above all else thinks security first.

**Responsibilities**:

- You will use your deep Splunk expertise in building detection use cases from scratch to identify cybersecurity threats
- Draw from your industry expertise in understanding how an attacker would behave and translate it to custom security detection content
- Engage with other teams to ensure detections are working as intended
- Identify and prioritize new data sources and their applicability to the detection of sophisticated adversaries
- Lead efforts to ensure data sources are aligned with Splunk’s Common Information Model (CIM)
- Drive complex initiatives with key business partners to continuously improve visibility
- Map security content to leading adversarial and defense technique ontologies (e.g. MITRE ATT&CK, D3FEND) and common control frameworks
- Understand & manage development backlog to ensure a steady stream of activities
- Conduct sprint reviews and celebration of successes for all items in the workstream.
- Collaborate across teams for training, development opportunities, and service improvement
- Capture development metrics in direct-support to executive-level briefings (daily, weekly, monthly)
- Ensure that all documents, workflows and processes remain accurate and up-to-date

**Requirements**:

- You have experience as a SOC Analyst, Security Content Developer and/or Security Engineer
- Advanced Splunk Enterprise Security experience
- Deep understanding of Splunk Data Models
- Ability to build and interpret SPL fluidly
- Coding proficiency in Python or equivalent language
- Knowledge of version control systems and automation capabilities within them, Gitlab, Bitbucket, Github, etc
- Ability to understand systems quickly, and translate understanding into logic to detect anomalies with the system
- You can lead people to think critically by guiding them without doing the work for them
- You have a passion for learning and a desire to enable the growth of others
- You possess a demonstrated ability to speak with people with varying knowledge in IT Security concepts and have the tailor your message to the audience
- You have an intimate understanding of Incident Response framework, root cause analysis, and analysis steps need to triage events
- Identifies opportunities for cycle-time reduction via automation or process enhancements
- Advanced knowledge of Cloud technologies in one or more leading cloud providers
- Ability and desire to break the norm and find creative scalable solutions to problems with the moxie to follow-through
- Excellent interpersonal skills and ability to see things through the customer’s eyes
- Tremendous attention to detail
- Bachelor’s degree in computer science, information security or related discipline is required or equivalent work experience



  • San José, Costa Rica Splunk A tiempo completo

    Join us as we pursue our innovative new vision to make machine data accessible, usable and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we’re committed to our work, customers, having fun and most importantly to each other’s success....

  • Senior Security Engineer

    hace 4 semanas


    San José, Costa Rica TreviPay A tiempo completo

    At TreviPay, we believe loyalty begins at the payment. Thousands of sellers use our global B2B payments and invoicing network to provide choice and convenience to buyers, open new markets and automate accounts receivables. With integrations to top eCommerce and ERP solutions and flexible trade credit options, TreviPay brings 40 years of experience serving...


  • San José, Costa Rica Splunk A tiempo completo

    Security Sustainability is responsible for maintaining the overall security posture and the improvement of security services operating in both our IT and cloud environments. We are security and software engineers who engage with product and infrastructure teams at every level, helping address a litany of security challenges. Our goal is to make the Splunk...


  • San José, Costa Rica DXC Technology A tiempo completo

    Are you passionate about Cybersecurity, love what you do and have a genuine desire to outsmart the bad guys? Do you have the experience to analyze an enterprise’s Cybersecurity posture, anticipate Cybersecurity requirements and help find right-sized solutions based on industry leading practices? If so, DXC has an exciting opportunity with a focus on the...


  • San José, Costa Rica Splunk OLD (Read Only) A tiempo completo

    Join us as we pursue our exciting new vision to make machine data accessible, usable and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we’re committed to our work, customers, having fun and most importantly to each other’s success. Learn...


  • San José, Costa Rica Splunk A tiempo completo

    Join us as we pursue our exciting new vision to make machine data accessible, usable and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we’re committed to our work, customers, having fun and most importantly to each other’s success. Learn...


  • San José, Costa Rica Splunk A tiempo completo

    Join us as we pursue our exciting new vision to make machine data accessible, usable and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we’re committed to our work, customers, having fun and most importantly to each other’s success. Learn...

  • ITSM Engineer

    hace 4 semanas


    San José, Costa Rica Splunk Inc A tiempo completo

    Splunk is here to build a safer and more resilient digital world. The world's leading enterprises use our unified security and observability platform to keep their digital systems secure and reliable. While customers love our technology, it's our people that make Splunk stand out as an amazing career destination and why we've won so many awards as a best...

  • Security Program Manager

    hace 4 semanas


    San José, Costa Rica Fragomen A tiempo completo

    Job Description The Security Program Manager - EPMO, accountable for the success of strategic projects of high complexity within the Security Portfolio. Engages resources across the firm and supports multiple projects. Eager to the learn the business and works with cross-functional teams in planning and executing the delivery of project(s). Leverages...

  • Mac Security Engineer

    hace 5 días


    San Pedro, Costa Rica CRG Solutions A tiempo completo

    We are seeking a skilled and knowledgeable Mac Security Engineer to join our dynamic team. As a Mac Security Engineer, you will play a critical role in ensuring the security and integrity of our macOS-based systems and infrastructure. Your expertise in Mac system and security architecture will be instrumental in monitoring, detecting, and responding to...


  • San José, Costa Rica Encora A tiempo completo

    At Encora we are looking for a great talent like you to join our team as the next **_Product Member Security Engineer Senior (5710)_** Would you like to join our great team of engineers? Here we will tell you more about us and the role! **About the role**: As a **_Product Member Security Engineer Senior_** you will be part of a highly skilled technology...


  • San José, Costa Rica GSB A tiempo completo

    An important and internationally recognized company is looking for a Cloud Security Engineer, trained to: Advise and follow best practices, ensure cloud environments are configured to meet compliance requirements and prevent the latest security threats, and the continuous vigilance needed to protect against advanced attacks from around the world **Key...


  • San José, Costa Rica Encora A tiempo completo

    At Encora we are looking for a great talent like you to join our team as the next Sr Site Operations Engineer (60) Would you like to join our great team of engineers? Here we will tell you more about us and the role! **About the role**: **Our Requirement**: - Bachelor's degree in Computer Science, Engineering, or related field (or equivalent...

  • Incident Response Analyst

    hace 2 semanas


    San José, Costa Rica Splunk A tiempo completo

    Join us as we pursue our vision to make machine data accessible, usable and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we’re committed to our work, customers, having fun, and most importantly to each other’s success. Learn more about...

  • Security Engineer Ii

    hace 2 días


    San José, Costa Rica Syniverse A tiempo completo

    Syniverse is the world’s most connected company. Whether we’re developing the technology that enables intelligent cars to safely react to traffic changes or freeing travelers to explore by keeping their devices online wherever they go, we believe in leading the world forward. Which is why we work with some of the world’s most recognized brands. Eight...


  • San José, Costa Rica Splunk Inc A tiempo completo

    Splunk is here to build a safer and more resilient digital world. The world's leading enterprises use our unified security and observability platform to keep their digital systems secure and reliable. While customers love our technology, it's our people that make Splunk stand out as an amazing career destination and why we've won so many awards as a best...

  • Security Associate

    hace 3 días


    San José, San José, Costa Rica UNHCR - UN High Commissioner for Refugees A tiempo completo

    Grade: GS6Staff Member / Affiliate Type: General ServiceReason: Temporary AssignmentHardship Level: A (least hardship)Family Type: FamilyResidential location (if applicable): Not specifiedTarget Start Date: 2024-05-07Target End Date: 2024-12-31Job Posting End Date: May 26, 2024Standard Job Description:Field Security AssociateThe Field Security Associate...


  • San José, Costa Rica Splunk Inc A tiempo completo

    Splunk is here to build a safer and more resilient digital world. The world's leading enterprises use our unified security and observability platform to keep their digital systems secure and reliable. While customers love our technology, it's our people that make Splunk stand out as an amazing career destination and why we've won so many awards as a best...

  • Client Platform Engineer

    hace 4 semanas


    San José, Costa Rica Chainalysis A tiempo completo

    Blockchain technology is powering a growing wave of innovation. Businesses and governments around the world are using blockchains to make banking more efficient, connect with their customers, and investigate criminal cases. As adoption of blockchain technology grows, more and more organizations seek access to all this ecosystem has to offer. That’s where...

  • Operations Engineer

    hace 2 semanas


    San José, Costa Rica Syniverse A tiempo completo

    Syniverse is the world’s most connected company. Whether we’re developing the technology that enables intelligent cars to safely react to traffic changes or freeing travelers to explore by keeping their devices online wherever they go, we believe in leading the world forward.Which is why we work with some of the world’s most recognized brands. Eight...