Cloudera Logo

Cloudera

Senior Detection Engineer

Posted 10 Days Ago
Remote
Hiring Remotely in Florida, USA
Senior level
Remote
Hiring Remotely in Florida, USA
Senior level
As a Senior Detection Engineer, you'll enhance cybersecurity by developing alerts, collaborating with teams, optimizing data ingestion, and addressing threats based on current threats and attack techniques.
The summary above was generated by AI

Business Area:

IT

Seniority Level:

Mid-Senior level

Job Description: 

At Cloudera, we empower people to transform complex data into clear and actionable insights. With as much data under management as the hyperscalers, we're the preferred data partner for the top companies in almost every industry.  Powered by the relentless innovation of the open source community, Cloudera advances digital transformation for the world’s largest enterprises.

As a Senior Detection Engineer at Cloudera, you will fortify our security posture by continuously developing, tuning, and refining our alerting and detection capabilities to stay ahead of evolving threats. This role requires deep technical expertise in cybersecurity and data pipelines, alongside strong problem-solving and communication skills to thrive in both independent and collaborative environments.

Within our Incident Response Team, you will bridge threat intelligence, incident response, and the broader engineering ecosystem. By ensuring our visibility and alerting scale alongside the business, your work will empower our 24/7 operations. Success requires building strong cross-functional relationships, maintaining high performance, and exceptional attention to detail.

As a Senior Detection Engineer, you will:

  • Develop & Refine Detections: Primarily be responsible for the development of new alerts and constantly tuning and refining our current alerting and detection capabilities to reduce false positives and minimize alert fatigue.

  • Align with Incident Response: Communicate proactively with the Incident Response team to determine needed alerting methods and understand the gaps identified during past investigations.

  • Collaborate Cross-Functionally: Work throughout the organization with teams such as Engineering, Sales, SRE, and Product Security to determine critical logging sources and security-related datasets that should be analyzed.

  • Build Actionable Runbooks: Collaborate with these various teams to identify how to properly detect threats within their specific environments and build actionable runbooks tailored to those domains.

  • Optimize Data Ingestion: Assist in the ingestion of new data sources from end products into our SIEM platform, actively working on the parsing of those sources to enable better searching, correlations, and high-fidelity detections.

  • Proactively Address Threats: Create detections in a forward-looking manner to address new threats based upon the current cybersecurity environment, threat intelligence, and ongoing adversary campaigns.

  • Map Coverage Strategies: Map and track detection coverage against industry-standard frameworks, such as MITRE ATT&CK, to identify and remediate visibility gaps across the enterprise.

We are excited about you if you have:

  • Experience: Relevant Educational Degree or Equivalent Cybersecurity Work Experience (3-5 Years), with three or more years of technical experience in Detection Engineering, Security Analytics, Threat Hunting, or Incident Response.

  • Analytical Mindset: A robust analytical mindset and self-starter attitude with a genuine interest in forward-thinking Cybersecurity.

  • SIEM Proficiency: Deep proficiency with SIEM platforms, including hands-on experience with data ingestion, custom parsing, and advanced query development.

  • Threat & Attack Knowledge: Strong understanding of cyber threats, attack techniques, and incident response methodologies.

  • Advanced Analytics: Experience leveraging Machine Learning, Deep Learning, or User and Entity Behavior Analytics (UEBA) to build anomaly-based detections that go beyond traditional static rules.

  • Coding & Scripting: Scripting and programming proficiency (e.g., Python, Go, Bash) for automating log retrieval, API integrations, and data parsing tasks.

  • Environment Telemetry: Proficiency in understanding telemetry and security logging across Cloud Environments (AWS, Azure, GCP), endpoints (macOS, Windows, Linux), and network appliances.

  • Communication Skills: Excellent cross-functional communication and relationship-building skills, with the ability to influence and collaborate seamlessly with non-security teams.

You may also have:

  • Advanced Certifications: Supporting certifications such as GIAC (e.g., GCDA - Certified Detection Analyst), AWS Certified Security - Specialty, or SIEM-specific vendor certifications.

  • AI/ML Integration: Experience utilizing AI assistants (e.g., Copilot, LLMs) to streamline scripting, query generation, and data analysis, as well as familiarity with the OWASP Top 10 for LLMs and "Shadow AI" usage.

  • Automation & Orchestration: Experience in Automation and Orchestration, specifically integrating detections with SOAR platforms (e.g., Tines, Splunk Phantom, Torq).

  • Environment & Threat Expertise: Knowledge of Threat Intelligence Methodologies to operationalize IOCs and TTPs, and deep experience securing and gaining visibility into Kubernetes environments.

This role is not eligible for immigration sponsorship

What you can expect from us:

  • Generous PTO Policy 

  • Support work life balance with Unplugged Days

  • Flexible WFH Policy 

  • Mental & Physical Wellness programs 

  • Phone and Internet Reimbursement program 

  • Access to Continued Career Development 

  • Comprehensive Benefits and Competitive Packages 

  • Paid Volunteer Time

  • Employee Resource Groups

EEO/VEVRAA

# LI-BV1
#LI-REMOTE

Cloudera Austin, Texas, USA Office

515 Congress, Austin, TX, United States, 78701

Similar Jobs

3 Days Ago
Remote or Hybrid
USA
117K-154K Annually
Senior level
117K-154K Annually
Senior level
Edtech • Information Technology • Software
The Sr Detection Engineer will design and tune detection rules in a SIEM, support SOC operations, and onboard data from various tools while collaborating with MDR providers.
Top Skills: AWSAzureBashGCPPowershellPythonSIEM
18 Days Ago
Remote or Hybrid
US
Senior level
Senior level
Mobile • Security • Software • Cybersecurity
Design and maintain datasets, build and evaluate domain-specific ML and vision-language models for real-time privileged access threat detection; deploy and optimize Python/Docker inference services integrated with WebSocket/WebRTC and protocol-level interfaces; monitor and document production models.
Top Skills: AWSAws BedrockAzureClaudeDatabase ProtocolsDockerGCPGeminiGitGptGraph Data StructuresHugging FaceLlm FrameworksPythonQwenRdpSshVision-Language ModelsVncWebrtcWebsocket
6 Days Ago
Remote or Hybrid
United States
126K-154K Annually
Senior level
126K-154K Annually
Senior level
eCommerce • Information Technology • Marketing Tech • Software
The Senior Detection Engineer will architect scalable detection systems, develop automation for security response, and collaborate cross-functionally to enhance security measures.
Top Skills: AWSKqlPythonSigmaSoarYara-L

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account