CSOC Engineer Threat Detection Specialist

Fastly

Not Interested
Bookmark
Report This Job

profile Job Location:

Pune - India

profile Monthly Salary: Not Disclosed
Posted on: 2 days ago
Vacancies: 1 Vacancy

Job Summary

Fastly helps people stay better connected with the things they love. Fastlys edge cloud platform enables customers to create great digital experiences quickly securely and reliably by processing serving and securing our customers applications as close to their end-users as possible at the edge of the Internet. The platform is designed to take advantage of the modern internet to be programmable and to support agile software development. Fastlys customers include many of the worlds most prominent companies including GitHub Yelp Paramount and JetBlue.

Were building a more trustworthy Internet. Come join us.

CSOC Engineer - Threat Detection Specialist

Leveraging our growing security product suite CSOC Engineers contribute real world security insights to Fastly and our customers as we address Internet-scale threats. CSOC Engineers function as the primary escalation point for SOC Analysts in a globally distributed team. A core responsibility and key performance metric for this role is the effective training and mentoring of our SOC analysts reducing escalations to the Senior CSOC-engineering level so you can focus on process improvements data analysis and security tooling to continue advancing our products services and capabilities.

The CSOC team works with our internal platform security and security research engineering and development teams as well operations and customer organisations internally to deliver support solutions for security threats faced on the Internet today.

What Youll Do:

You will be responsible for escalations around monitoring and analysing customer activity like identifying layer 3/4 DDoS attacks account-takeover bot attacks and other malicious web addition as part of CSOC engineering you will be involved in designing building and supporting tooling for our analysts. You will have the opportunity to work on some of the worlds most scalable distributed systems as well as working with the world-class engineers who developed these systems.

  • Experience configuring traffic policing shaping to throttle malicious traffic

  • Identify and mitigate UDP Floods ICMP Floods and Reflection/Amplification attacks

  • Identify and mitigate TCP SYN Floods ACK Floods RST Floods and TCP state exhaustion attacks

  • Requirements gathering and development of Security Monitoring Systems and troubleshooting tools

  • Be an expert in ensuring security for customers providing an outstanding response to security issues

  • Provide deep application-security experience on escalated cases from customers & automated systems.

  • Carry out continuous-improvement work & research to drive our customer security products & operations to be the best they can be.

  • Contribute to the processes and policies that scale our organisation as we grow

  • Create test and deploy security content (e.g. WAF rules) in response to CVEs and other emerging threats

  • Provide guidance mentoring and training for new Security and Customer Support Engineers

  • Create & review reporting for customers on security services

  • Troubleshoot and resolve issues related to Kubernetes deployments and management

  • Provide support for next-generation web application firewalls including troubleshooting and performance optimization

  • Actively participate in sprint planning deliver committed tasks on time with quality code collaborate with team members communicate blockers and contribute to continuous improvement.

  • Manage CSOC tool-related escalations and troubleshooting

What Were Looking For:

  • Understanding stateless communication fragmentation and amplification vectors (DNS NTP CLDAP SSDP)

  • Strong knowledge of BGP (Border Gateway Protocol)

  • Proficiency with IPv4/IPv6 addressing subnetting ICMP types/codes and GRE tunneling.

  • Strong infosec background with strong knowledge & practical skills in application security

  • Strong knowledge of core internet-technologies like DNS HTTP & TLS and how to debug with common tools

  • Some software development skills/experience in any of the following or other common web languages: Python Go Rust JS

  • Experience in security operations or technical support

  • Detection engineering experience developing content for security products and services (e.g. WAF rules)

  • Application server technologies and frameworks experience

  • Ability to work with limited supervision but be a good mentor on security knowledge to the greater team

  • Fluent spoken & written English required tailoring depth to fit varying audiences

  • Focused on delivering exceptional customer experiences

Ideally youll also have experience in some of these:

  • Hands-on experience with enterprise routers and switches

  • Experience with NetFlow/sFlow/IPFIX analysis using tools like Kentik ElastiFlow or NFSen for anomaly detection

  • Analysis with log visualisation tools (Grafana Prometheus Looker Splunk Elastic/ELK or others)

  • Experience working in a SOC or Incident Response Team

  • Apache/NGINX/IIS or other web server platforms

  • Cloud ecosystem knowledge & experience (AWS GCP or similar)

  • Unix/Linux or Windows system administration

  • Systems configuration management and/or orchestration tools

Work Hours:

  • Monday to Friday each week around core hours 9am - 6pm pacific time (17:00 - 02:00 UTC)

Work Location(s) & Travel Requirements:

This position is open to the following preferred office locations:

  • Pune India

Fastly currently embraces a largely hybrid model for most roles which allows employees flexibility to split their time between the office and home.

This position may require travel as required by your role or requested by your manager.

Benefits:

We care about you. Fastly works hard to create a positive environment for our employees and we think your life outside of work is important too. We support our teams with great benefits that start on the first day of your employment with Fastly. Curious about our offerings

We offer a comprehensive benefits package designed to meet your needs. Our offerings may vary depending on the country where you work and are subject to change.


Why Fastly

Were always looking for humble sharp and creative folks to join the Fastly team. If you think you might be a fit please apply! A fully completed application and resume or CV are required when applying.

All job applications must be submitted through our official careers site at We will never request sensitive information such as your Social Security number bank account or credit card information during the application process. All official communication will come from an @ or @ email address.

Fastly is committed to ensuring equal employment opportunity and to providing employees with a safe and welcoming work environment free of discrimination and harassment. Our employment decisions are based on business needs job requirements and individual qualifications. All qualified applicants will receive consideration for employment without regard to age ancestry color family or medical care leave gender identity or expression genetic information marital status medical condition national origin family or parental status physical or mental disability political affiliation protected veteran status race religion sex (including pregnancy) sexual orientation or any other characteristic protected by applicable laws regulations and ordinances.

Consistent with the Americans with Disabilities Act (ADA) and federal or state disability laws Fastly will provide reasonable accommodations for applicants and employees with disabilities. If reasonable accommodation is needed to participate in the job application or interview process to perform essential job functions and/or to receive other benefits and privileges of employment please contact your Recruiter or the Fastly Employee Relations team at or .

Fastly collects and processes personal data submitted by job applicants in accordance with ourPrivacy Policy. Please see ourprivacy notice for job applicants.


Required Experience:

IC

Fastly helps people stay better connected with the things they love. Fastlys edge cloud platform enables customers to create great digital experiences quickly securely and reliably by processing serving and securing our customers applications as close to their end-users as possible at the edge of t...
View more view more

About Company

Company Logo

Fastly, Inc. is an American cloud computing services provider. Fastly's edge cloud platform provides a content delivery network, Internet security services, load balancing, and video & streaming services.

View Profile View Profile