Apple is seeking an exceptional engineer to join its global Detection & Response team. This is a hands-on technical role which involves the creation testing and maintenance of Apples threat detection software. Additional responsibilities include:* Provide feedback and adhere to detection development lifecycle.* Quantify the efficacy of Apples detection software with attack simulation and red team collaboration.* Formulate new detection ideas based on newly-published research industry trends or major incidents.* Drive the requirements for Apples security telemetry and response tools.* Automate the triage and response to security incidents.
- 5 years of experience in security engineering threat detection or incident response.
- Proven ability to write and tune detections for cloud SaaS and endpoint environments.
- Strong software development background with hands-on experience in Apache Spark SQL GitHub workflows and CI/CD practices.
- Knowledge of MITRE ATT&CK threat modeling and common attacker techniques.
- Demonstrated experience analyzing telemetry from logs (endpoint network or application).
- Solid understanding of cloud environments (AWS GCP or Azure) and cloud-native security logging.
- Exceptional written and verbal communication skills can collaborate cross-functionally and write clear detection logic or proposals.
- Track record of team collaboration and working well in globally distributed environments.
- * Experience leading or mentoring detection engineering efforts or demonstrated readiness to lead a regional team in the future.
- * Hands-on experience with automated incident response and containment tooling (SOAR platforms custom scripts etc.).
- * Familiarity with Apple-scale detection challenges including scaling detection-as-a-service.
- * Passion for building tools and platforms that enable other engineers not just writing detections.
- * Holds relevant industry certifications (e.g. GIAC OSCP AWS Security Specialty).
- * High ownership mindset thrives in fast-paced environments and adapts to ambiguity.
- * A sharp eye for automation opportunities and eliminating repetitive work.
- * Strong interpersonal skills with a team-first attitude approachable constructive and solution-oriented.
Apple is seeking an exceptional engineer to join its global Detection & Response team. This is a hands-on technical role which involves the creation testing and maintenance of Apples threat detection software. Additional responsibilities include:* Provide feedback and adhere to detection development...
Apple is seeking an exceptional engineer to join its global Detection & Response team. This is a hands-on technical role which involves the creation testing and maintenance of Apples threat detection software. Additional responsibilities include:* Provide feedback and adhere to detection development lifecycle.* Quantify the efficacy of Apples detection software with attack simulation and red team collaboration.* Formulate new detection ideas based on newly-published research industry trends or major incidents.* Drive the requirements for Apples security telemetry and response tools.* Automate the triage and response to security incidents.
- 5 years of experience in security engineering threat detection or incident response.
- Proven ability to write and tune detections for cloud SaaS and endpoint environments.
- Strong software development background with hands-on experience in Apache Spark SQL GitHub workflows and CI/CD practices.
- Knowledge of MITRE ATT&CK threat modeling and common attacker techniques.
- Demonstrated experience analyzing telemetry from logs (endpoint network or application).
- Solid understanding of cloud environments (AWS GCP or Azure) and cloud-native security logging.
- Exceptional written and verbal communication skills can collaborate cross-functionally and write clear detection logic or proposals.
- Track record of team collaboration and working well in globally distributed environments.
- * Experience leading or mentoring detection engineering efforts or demonstrated readiness to lead a regional team in the future.
- * Hands-on experience with automated incident response and containment tooling (SOAR platforms custom scripts etc.).
- * Familiarity with Apple-scale detection challenges including scaling detection-as-a-service.
- * Passion for building tools and platforms that enable other engineers not just writing detections.
- * Holds relevant industry certifications (e.g. GIAC OSCP AWS Security Specialty).
- * High ownership mindset thrives in fast-paced environments and adapts to ambiguity.
- * A sharp eye for automation opportunities and eliminating repetitive work.
- * Strong interpersonal skills with a team-first attitude approachable constructive and solution-oriented.
View more
View less