As part of the ASE Detection Team you will: - Deliver technology and insights to get more value out of existing datasets and detection alerts combining existing datasets and detection signals to surface up high quality alerts and malicious activities.- Deliver technology to facilitate and/or automate efficient initial analysis and investigation of the roll-up alerts leveraging Slack Ops.- Perform initial triage and security investigation of roll-up alert triggers then work cross-team if incident response is needed.- Drive improvement in manual response to detection alerts.
7 years of experience developing and delivering technology. 5 years should be hands-on writing code in either Scala or Python.
Masters Degree in Data Science Statistics Mathematics Computer Science Engineering or Information Systems. Educational coursework must have provided a strong foundation in statistical theory algorithms and data structures.
Credible understanding of real attacker behaviors (e.g. threat intelligence incident response threat hunting red teaming etc).
Proven track record to incubate technology solutions from zero to one with minimal guidance.
Knowledge of AI/ML techniques to find malicious activity
Experience delivering systems to find very small amounts of signal in a very large dataset that has high noise.
Publicly accessible source code or published papers related to finding very small amounts of signal in a very large and diverse dataset.
Experience developing custom slack integrations and integrating with various ticket tracking systems.
Experience with kubernetes.
Experience with web services and databases.
Experience with syscall events especially around network and process.
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.