Detection Engineer, Global Security Operations

hace 4 días


San José, Costa Rica Splunk A tiempo completo

Join us as we pursue our innovative new vision to make machine data accessible, usable and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we’re committed to our work, customers, having fun and most importantly to each other’s success. Learn more about Splunk careers and how you can become a part of our journey

**Role**:
The Splunk Detection Engineer reports to the Senior Manager of Detection Engineering. In this role, you will be responsible for developing security content supporting the 24x7 monitoring operations and response to cybersecurity threats. You will have a deep understanding of Information Security principles and disciplines coupled with expert level knowledge of Splunk Processing Language (SPL), excellent development skills, and a continuous desire to learn and grow. We are a passionate team who has fun, enjoys a good laugh but above all else thinks security first.

**Responsibilities**:

- You will use your deep Splunk expertise in building detection use cases from scratch to identify cybersecurity threats
- Draw from your industry expertise in understanding how an attacker would behave and translate it to custom security detection content
- Engage with other teams to ensure detections are working as intended
- Identify and prioritize new data sources and their applicability to the detection of sophisticated adversaries
- Lead efforts to ensure data sources are aligned with Splunk’s Common Information Model (CIM)
- Drive complex initiatives with key business partners to continuously improve visibility
- Map security content to leading adversarial and defense technique ontologies (e.g. MITRE ATT&CK, D3FEND) and common control frameworks
- Understand & manage development backlog to ensure a steady stream of activities
- Conduct sprint reviews and celebration of successes for all items in the workstream.
- Collaborate across teams for training, development opportunities, and service improvement
- Capture development metrics in direct-support to executive-level briefings (daily, weekly, monthly)
- Ensure that all documents, workflows and processes remain accurate and up-to-date

**Requirements**:

- You have experience as a SOC Analyst, Security Content Developer and/or Security Engineer
- Advanced Splunk Enterprise Security experience
- Deep understanding of Splunk Data Models
- Ability to build and interpret SPL fluidly
- Coding proficiency in Python or equivalent language
- Knowledge of version control systems and automation capabilities within them, Gitlab, Bitbucket, Github, etc
- Ability to understand systems quickly, and translate understanding into logic to detect anomalies with the system
- You can lead people to think critically by guiding them without doing the work for them
- You have a passion for learning and a desire to enable the growth of others
- You possess a demonstrated ability to speak with people with varying knowledge in IT Security concepts and have the tailor your message to the audience
- You have an intimate understanding of Incident Response framework, root cause analysis, and analysis steps need to triage events
- Identifies opportunities for cycle-time reduction via automation or process enhancements
- Advanced knowledge of Cloud technologies in one or more leading cloud providers
- Ability and desire to break the norm and find creative scalable solutions to problems with the moxie to follow-through
- Excellent interpersonal skills and ability to see things through the customer’s eyes
- Tremendous attention to detail
- Bachelor’s degree in computer science, information security or related discipline is required or equivalent work experience



  • San José, Costa Rica Splunk A tiempo completo

    Join us as we pursue our innovative new vision to make machine data accessible, usable and valuable to everyone. We are a company filled with people who are passionate about our product and seek to deliver the best experience for our customers. At Splunk, we’re committed to our work, customers, having fun and most importantly to each other’s success....


  • San Francisco, Heredia, Costa Rica Experian A tiempo completo

    Company DescriptionAbout us, but we'll be briefExperian is the world's leading global information services company, unlocking the power of data to create more opportunities for consumers, businesses and society.We are thrilled to share that FORTUNE has named Experian one of the 100 Best Companies to work for.In addition, for the last five years we've been...

  • Senior Security Engineer

    hace 2 semanas


    San José, Costa Rica TreviPay A tiempo completo

    At TreviPay, we believe loyalty begins at the payment. Thousands of sellers use our global B2B payments and invoicing network to provide choice and convenience to buyers, open new markets and automate accounts receivables. With integrations to top eCommerce and ERP solutions and flexible trade credit options, TreviPay brings 40 years of experience serving...


  • San Francisco, Heredia, Costa Rica Experian A tiempo completo

    At Experian, we're unlocking the power of data to create more opportunities for consumers, businesses, and society.We're a global leader in information services, with a team that's passionate about making a difference.The Threat Detection Engineering team is responsible for developing and maintaining high-quality threat detection rules that inform our...


  • San José, San José, Costa Rica Trevipay A tiempo completo

    At TreviPay, we leverage our global B2B payments and invoicing network to empower sellers with choice and convenience. Our platform seamlessly integrates with top eCommerce and ERP solutions, providing flexible trade credit options that bring 40 years of experience in serving leaders in manufacturing, retail, and transportation.Job Description:The Security...


  • San Francisco, Heredia, Costa Rica Experian A tiempo completo

    Experian is a global leader in information services, committed to unlocking the power of data to create more opportunities for consumers, businesses, and society.Our Threat Detection Engineering team plays a critical role in maintaining the security posture of our organization, working closely with our global security operations center (GSOC).The Cyber...


  • San Francisco, Heredia, Costa Rica Experian A tiempo completo

    We're seeking an Information Protection Engineer to join our Threat Detection Engineering team at Experian.This team plays a critical role in maintaining the security posture of our organization, working closely with our global security operations center (GSOC).The Information Protection Engineer will be responsible for designing and implementing...


  • San José, San José, Costa Rica Smartsheet A tiempo completo

    Join Our TeamWe are seeking a talented Security Operations and Response Expert to join our security team. In this critical role, you will be responsible for providing technical deep understanding of managing and coordinating security incidents, conducting lessons learned (PIR), mitigating cyber risks and improving security controls. You will also be...


  • San José, Costa Rica Microsoft A tiempo completo

    Security represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end-to-end, simplified...


  • San Francisco, Heredia, Costa Rica Boston Consulting Group A tiempo completo

    Who We AreBCG pioneered strategy consulting more than 50 years ago, and we continue to innovate and redefine the industry.We offer multiple career paths for the world's best talent to have a real impact on business and society.As part of our team, you will benefit from the breadth and diversity of what we are doing today and where we are headed next.We count...

  • Security Lead Engineer

    hace 3 días


    San Francisco, Heredia, Costa Rica Auxis A tiempo completo

    Job Summary:Security Lead Engineer is responsible for the provisioning, deployment, configuration, and administration of many different pieces of network and security-related hardware and software.Security Lead Engineer is also responsible to mitigate any potential threats that become evident, but also to strategize and prepare before any security threat is...


  • San Francisco, Heredia, Costa Rica Boston Consulting Group A tiempo completo

    Who We AreBCG pioneered strategy consulting more than 50 years ago, and we continue to innovate and redefine the industry. We offer multiple career paths for the world's best talent to have a real impact on business and society. As part of our team, you will benefit from the breadth and diversity of what we are doing today and where we are headed next. We...


  • San José, San José, Costa Rica Johnson Controls A tiempo completo

    Job SummaryWe are looking for a skilled Security Systems Engineer to join our team. The successful candidate will be responsible for designing and implementing security systems for various clients.Responsibilities:Design and create detailed drawings and specifications for security systems.Work with clients to understand their needs and...


  • San José, Costa Rica Equifax A tiempo completo

    Equifax is where you can power your possible. If you want to achieve your true potential, chart new paths, develop new skills, collaborate with bright minds, and make a meaningful impact, we want to hear from you. As a **Security Operations Center Technical Lead **, you will be required to lead and act as senior support for the SOC analysts and work closely...


  • San José, Costa Rica Splunk A tiempo completo

    Splunk is here to build a safer and more resilient digital world. The world's leading enterprises use our unified security and observability platform to keep their digital systems secure and reliable. While customers love our technology, it's our people that make Splunk stand out as an amazing career destination and why we've won so many awards as a best...


  • San José, San José, Costa Rica Splunk A tiempo completo

    About UsSplunk is a company that makes machine data accessible, usable and valuable to everyone. Our team is passionate about our product and seeks to deliver the best experience for our customers.Job DescriptionMain ResponsibilitiesWork closely with Splunk Global Security teams to improve existing automation and search initiatives that deliver resilient...

  • Security Engineer

    hace 4 semanas


    San Francisco, Heredia, Costa Rica Experian A tiempo completo

    Company DescriptionExperian is a global leader in consumer and business credit reporting and marketing services and a constituent of the United Kingdom's FTSE 100 index, with total revenue for the year ended March 31, 2020, of US$5.2 billion.We support clients in more than 100 countries and employ approximately 17,800 people in 45 countries.Job...


  • San Francisco, Heredia, Costa Rica Citi A tiempo completo

    About the RoleThe CSIS Operations Center Team Lead will oversee the day-to-day operations of the team, ensuring alignment with the CSIS Global Operations franchise manual. This position focuses on managing Third Party Management (TPM) activities, including on-boarding, contract management, ongoing monitoring, and termination, as well as invoice...

  • Security Engineer 3

    hace 2 semanas


    San José, Costa Rica Oracle A tiempo completo

    Security Engineer 3-220000TF **Applicants are required to read, write, and speak the following languages**: English **Preferred Qualifications** OTA-RM-LAD-CR We are seeking a **Senior Security Engineer to join the Oracle+NetSuite Security team** responsible for securing systems, infrastructure, services, and data. We have mid and senior level positions...


  • San José, San José, Costa Rica Equifax A tiempo completo

    Equifax is where you can power your possible.If you want to achieve your true potential, chart new paths, develop new skills, collaborate with bright minds, and make a meaningful impact, we want to hear from you.As a **Security Operations Center Technical Lead **, you will be required to lead and act as senior support for the SOC analysts and work closely...