Cyber Detection & Automation Engineer (WA) Job at CEDENT, Washington State

QzRxTzdVYlRwNTlyKzAvVW9lU1hJeTk3
  • CEDENT
  • Washington State

Job Description

Job description:

• Design, implement and automate high-fidelity detection rules using SIEM, EDR,  and other telemetry sources (e.g. Sentinel, Defender, AWS, etc.) to improve  efficiency and accuracy. 

• Monitor and tune alerts to reduce false positives and improve signal-to-noise  ratio. 

• Regularly test and validate detection content to ensure its effectiveness and  accuracy.

• Create documentation and knowledge transfer materials for detections and  engineering processes. 

• Perform gap analysis and continuously improve detection coverage, accuracy,  and resilience. 

• Design and develop security automations workflows using SOAR (Security  Orchestration, Automation, and Response) primarily using Microsoft  Sentinel/Logic Apps. 

• Build and maintain custom integrations with SIEM, EDR, Threat Intel feeds,  ticketing systems, and other SOC tools. 

• Automate repetitive SOC tasks such as alert triage, enrichment, IOC lookups,  and ticket creation. 

• Develop dashboards or utilities to improve visibility and operational insights into  SOC metrics. 

• Collaborate with security operations center analysts & threat intelligence to stay  ahead of evolving adversary tactics (MITRE ATT&CK-based). 

• Create and update relevant runbooks, playbooks and other necessary  documentation around detection rules and attacker TTP's. 

• Prepare and present detailed reports on detection/automation activities,  findings, and improvements to senior management. 

Qualifications:  

• Bachelor’s degree in cybersecurity, computer science, information  technology, or related field. 

• 5+ years in cybersecurity, with 3+ years specifically in detection and  automation engineering. 

• Proficiency in writing detection logic using KQL, SPL or other relevant query  languages. 

• Experience with query languages such as KQL, SPL and scripting languages  (Bash, PowerShell, Python, JavaScript) 

• Proficient in developing automations using SOAR platforms, specifically  Microsoft Sentinel/Logic Apps 

• Understanding of SOC operations, incident response workflows, and threat  detection techniques. 

• Experience with RESTful APIs and integration of third-party tools. • Experience building advanced analytics (ML) and developing AI agents/tools • Experience in a cloud-first or hybrid cloud environment (preferably AWS and  Azure). 

• Strong, practical knowledge of the MITRE ATT&CK framework, and how to  map adversary behaviors to telemetry for detection design. 

• Deep understanding of attacker TTPs, threat modeling, and detection  methodologies. 

• Familiarity with version control (Git), CI/CD pipelines, and infrastructure as  code concepts. 

• Experience in using security orchestration, automation, and response tools. • Strong analytical skills to analyze large volumes of data and identifying  potential threats, patterns. 

• The ability to effectively communicate both verbally and in writing to  audiences of different technical skill levels. 

• Relevant certifications such as: 

o Microsoft SC-200, Azure Security Engineer Associate 

o AWS Certified Security – Specialty 

o GIAC (GCIA, GCTI, GDAT), CISSP, or CISM 

Department: Preferred Vendors
This is a contract position

Job Tags

Contract work,

Similar Jobs

PISTOL JO’S CHERRY POINT BBQ

Dishwasher / Food Prep Job at PISTOL JO’S CHERRY POINT BBQ

Pistol Jos Cherry Point Bbq in Ridgeland, SC is looking for one dishwasher/food prep to join our 10 person strong team. We are located on 2915 N Okatie Hwy. Our ideal candidate is self-driven, ambitious, and hard-working. Benefits ~ We offer many great benefits, including...

MRINetwork Jobs

Dentist Job at MRINetwork Jobs

 ...|E:****@*****.*** Schedule a Meeting: Job Description Job ID:3428133 Job Title: Temporary Dentist Schedule: For the month December - Monday to Thursday, 8am-5pm (No evening or weekend) Location: Hagerstown, MD Key... 

Atwell Suites by IHG Denver Airport

Hotel Sales Manager Job at Atwell Suites by IHG Denver Airport

Overview: Hotel Sales ManagerWe are seeking a motivated and detail-oriented Hotel Sales Coordinator to support our sales team in achieving goals through account management, lead generation, and customer service. The ideal candidate will have strong communication skills... 

Circle K

CDL Class A Fuel Delivery Driver Job at Circle K

 ...Local Deliveries. Home Every day. No fuel-hauling experiences! That is ok we will train you! Drivers earn $95-$110+ K annually - pay is based on Fuel...  ...Hazmat/Tanker Truck Driver Requirements: Valid Class A CDL. Hazmat/tanker endorsement. Company Benefits... 

General Motors

GA Controls Engineer Job at General Motors

 ...ON A GOVERNMENT FORM, AND ANY WORK AUTHORIZATION REQUIRING A WRITTEN...  ...support of a vehicle assembly facility and manufacturing processes...  ...your well-beingat work and at homeso you can focus on realizing...  ...a workplace that is not only free of unlawful discrimination, but...