Back to the board

Detection Engineer

100% remote Flexible hours Hiring now
Overview:

POSITION OVERVIEW

Fidelity National Financial (FNF) is seeking a Detection Engineer to join our Information Security Office (ISO). The primary purpose of this position is to maintain and improve security detections within FNF. This role is specifically focused on email security. This role can sit 100% remote.

DUTIES & RESPONSIBILITIES

  • Research adversary tradecraft, translate threat intelligence into detection logic
  • Tune and optimize existing detections to reduce alert fatigue while maintaining detection fidelity
  • Perform regular detection coverage and gap analysis assessments
  • Document detection logic, response guidance, and follow-on analysis to support SOC and incident responders
  • Represent detection engineering to cross-functional security teams in meetings, including priorities, capabilities, and progress
  • Collaborate with other teams including threat intelligence, incident response, and security operations for detection authoring and improvements.
  • Represent detection engineering to cross-functional security teams in meetings, including priorities, capabilities, and progress
  • Contribute to detection program standards and processes
  • Other tasks and responsibilities as assigned

MINIMUM REQUIREMENTS

  • Bachelor's degree or the equivalent combination of education and work experience
  • 5+ years experience in cybersecurity/information security
  • Strong experience with Python, including logging, testing, object-oriented concepts, and designing ergonomic tools.
  • Security monitoring experience with one or more SIEM technologies and query languages (SQL, XQL, SPL, KQL, etc.)
  • Detection engineering experience including threat modeling, detection tuning, and metrics-driven-detections
  • Experience in one or more security domains - defensive analyst, malware reversing, offensive security, open-source intelligence, threat intelligence
  • Detail oriented with strong organizational skills
  • Exceptional written and oral communication skills

PREFERRED EXPERIENCE

  • Experienced in detection validation, with a desire to prove coverage
  • Familiar with email analysis and security
  • Experience with detection-as-code, ideally in a continuous integration and continuous delivery (CI/CD) pipeline
  • Hands on experience with popular Breach-as-a-service tools for validation, coverage analysis, and threat modeling
  • Familiarity with Git-based workflows including branching, pull requests, and peer review

COMPENSATION & BENEFITS

This position has the potential to earn compensation in the range of $120,000 - $160,000 annually based on location and job-related factors such as skillset and experience. Actual rate may vary within the range provided, depending on a number of factors, including skillset, experience and location.  The base compensation is one component of the total rewards package offered to our employees, including optional health and welfare insurance (medical/dental/vision/life/disability); paid holidays, vacation, and sick time off; and matching 401(k) plan and matching employee stock purchase plan.

Apply To This Job

Keep exploring

Sales Executive - Tucson, AZ

100% remote Flexible hours

Sales Executive - Tucson, AZ

100% remote Flexible hours

Incident Response & Threat Intelligence Manager

100% remote Flexible hours

Data Engineer

100% remote Flexible hours

Care Advisor, Care Concierge (bilingual English/Spanish preferred but not required)

100% remote Flexible hours

Director of Medicaid Sales

100% remote Flexible hours

THE HELPER BEES INC - IT Generalist

100% remote Flexible hours

Platform Engineer

100% remote Flexible hours

Principal Architect

100% remote Flexible hours

Senior Machine Learning Engineer

100% remote Flexible hours

Senior Property Accountant (CPA required + 5+ yrs EXP in multifamily)

100% remote Flexible hours

Experienced Social Media Chat Sales Representative – Latin America

100% remote Flexible hours

Staff Attorney – Criminal Records Relief

100% remote Flexible hours

Geographic Information System (GIS) Intern - Metropolitan Transportation Plan ARLINGTON, TX, United States at Nctcog Texas

100% remote Flexible hours

Experienced Full Stack Customer Service Representative – Remote Customer Experience Support

100% remote Flexible hours

Experienced Remote Customer Service Representative – Delivering Exceptional Online Support and Driving Customer Satisfaction at blithequark

100% remote Flexible hours

Senior JavaScript & Google Tag Developer

100% remote Flexible hours

COBRA Client Accounts Specialist - Allegiance

100% remote Flexible hours

Sheet Metal Operator B - 3rd Shift

100% remote Flexible hours

Experienced Part-Time Data Entry Clerk – Remote Work Opportunity with Flexible Hours and Competitive Benefits at blithequark

100% remote Flexible hours