26 sep
|
Jobrapido
|
Barcelona
26 sep
Jobrapido
Barcelona
Overview In this role you will design, implement and refine threat detection capabilities to protect ADP assets, collaborating with General Security and cross-functional teams. You will build and maintain cyber alert catalogs, leverage threat intelligence, and advance detection across SOAR, EDR, and NDR platforms. You will stay current on threats, contribute to playbooks and SOPs, and help automate detection and response processes. This position offers the opportunity to shape the security detections program and work with diverse tech and security teams to reduce risk and false positives.
ResponsabilidadesDevelop advanced alerting capabilities based on threat intelligence, post-incident findings, new threats, and vulnerabilitiesMaintain an expert-level understanding of attacks, vectors, and emergent threatsDevelop new detection for the SOAR platform based on stakeholder requests, threat intelligence, threat hunting, or purple exercisesCollaborate with CIRC and threat management to understand requirementsImplement content in EDR, NDR, and SOARStay updated with latest threats and TTPs to integrate into detectionsContribute to SOPs and provide content for reports, configuration guides, and training materialsWork with CIRC, Threat management,
and engineering to improve detectionsAnalyze CIRC alert statistics to reduce false positives and focus engineering effortsProvide design support to improve detection and response capabilitiesProvide backup support to the CIRC teamMature CIRC playbooks, workflow automation, and use casesBuild detection logic using security logs for high-fidelity detectionsAct as SME for security logs from Linux, macOS, Windows, EDR, NDR, and cloud Requisitos principales2 years+ experience in threat detection or threat huntingStrong analytical skills and cross-functional knowledgeStrong interpersonal, verbal and written communication skillsStrong knowledge of databases and data warehouse technologiesStrong scripting experience in Python or PowerShellExperience building detection logic from security logs with high fidelityStrong project/program management experienceExperience with one or more cloud providers (AWS or Azure)Familiar with log outputs from network/host devices (HIDS/NIDS, etc.)Proficiency with XML, HTML, Regular Expressions, JSON, REST, SQLExperience with SIEM and SOARCreative thinker with problem-solving approachAbility to communicate security concepts to varied audiencesHigh integrity and ability to work independentlyStrong communication skillsCollaborative mindsetCreative thinkerPythonSQLSOAR
📌 Detection Engineer - ADP - Automatic Data Processing (Barcelona)
🏢 Jobrapido
📍 Barcelona