Full-Time Senior Security Detection Engineer | SPLUNK
ServiceNow is hiring a remote Full-Time Senior Security Detection Engineer | SPLUNK. The career level for this job opening is Senior Manager and is accepting Atlanta, Georgia based applicants remotely. Read complete job description before applying.
ServiceNow
Job Title
Posted
Career Level
Career Level
Locations Accepted
Share
Job Details
The ServiceNow Security Organization (SSO) delivers world-class, innovative security solutions. We enable customers to migrate data and workloads to the cloud. We create a positive work environment for employees. Threat Detection is seeking a Senior Detection Engineer.
This role focuses on building detections, workflows, and services to enhance incident response efficiency. An engineering mindset is required for high-quality solutions.
Daily tasks involve utilizing Agile processes, primarily using the ServiceNow platform. Collaboration with peer teams is crucial for project success. This role demands a blend of technical development and customer support skills.
This role has high visibility and will be critical for scaling threat detection and response. It includes supporting US Federal customers.
Requirements for this role include:
- 6+ years experience in Security Engineering or Security Operations
- 3+ years experience writing advanced Splunk queries (including regex field extractions)
- Understanding attacks against JavaScript and Java applications
- 1+ year experience with public cloud technology IaaS (AWS/Azure/GCP)
- Familiarity with incident response/digital forensics
- Experience working with security operations teams
- Strong interpersonal skills
- Familiarity with the ServiceNow platform (preferred)
- Openness to exploring innovative ideas for automating tasks
- Bachelor's degree in technical science or equivalent experience
What you get to do in this role:
- Build threat detection use cases leveraging threat intelligence and incident response data
- Document products and deliver demos to operational teams
- Work with security platform engineering, platform development teams, and product managers on requirements and future product roadmaps
- Collaborate with other detection engineers and incident responders on new detections
- Design and build systems in various public cloud ecosystems
- Provide input on future products for a digital transformation cloud company
- Work with a data scientist on training novel ML models for detection use cases