Security Engineer III ( developing and tuning SIEM detections, writing threat hunting queries, and participating in incident response)
AnaplanJob Description
📋 Description SIEM engineering: lead SIEM platform, onboard logs, build parsers, ensure data quality. Detection engineering: build detections with detection code, version control, automated testing. SOAR & automation: develop workflows and playbooks to automate alerts. AI-augmented security ops: explore AI/ML to boost alert triage and incident response. Threat intelligence integration: incorporate indicators and context into detection logic. Threat hunting: proactive hunts; document findings to improve tooling. 🎯 Requirements Technical security experience in security engineering, DevSecOps, or similar in cloud-native Detection & response: tuning SIEM detections, threat hunting, incident response. SecOps tooling: proficiency with SIEMs (Splunk, Microsoft Sentinel), EDR/XDR, scanners, ticketing. Threat intelligence & hunting: experience with threat intel platforms (MISP, Recorded Future Scripting & automation: Python, Go, Bash. Application security knowledge: secure development practices, OWASP top risks.