Security Engineer, Detection and Response
Lead day-to-day security threat management, identify and manage potential incidents, and support threat intelligence, threat hunting, intrusion detection, and incident response efforts.
Builds and maintains security infrastructure including SIEM, data pipelines, and integrations for EDR, SOAR, CASB across IT, OT, cloud, and data centers. Embeds security into SDLC; requires 2+ years in security tooling and cloud/virtualization experience.
Lead day-to-day security threat management, identify and manage potential incidents, and support threat intelligence, threat hunting, intrusion detection, and incident response efforts.
Security Engineer triages events, responds to incidents, manages AWS security services, and improves vulnerability management/threat detection on the security operations team. Requires 1-3 years security experience, scripting (Python), Linux, and security tools like SIEM and scanners.
Design and implement infrastructure security controls, develop and manage infrastructure as code for cloud security, and conduct security assessments. Collaborate with cross-functional teams to address risks and enhance the security posture of the cloud environment.
Product Security Engineer embeds security in Databricks' SDLC through threat modeling, design reviews, code audits, exploit development, and tool automation. Requires 2-4 years threat modeling experience and proficiency in Python/Java/Scala/JavaScript.