Senior Detection Analyst
RemoteCosta Rica
Job Summary
Analyze EDR telemetry, alerts, and log sources across Endpoint, Identity, Network, and Cloud/SaaS domains to publish and review threats for Managed Detection and Response customers. Improve and innovate Detection Operations workflows through orchestration and automation to manage high volumes of telemetry while ensuring concisely written communication regarding emerging threats at scale. This remote role in Costa Rica reports to the Manager, Detection Analyst, within the Detection Operations Team. Candidates must demonstrate strong experience in detection domains, DevOps workflows, and query languages like SQL or Lucene.
Required Qualifications
- Demonstrated curiosity and active exploration of AI tools, with a proven history of integrating new technologies to enhance daily workflows and augment problem-solving
- Strong experience in Endpoint (EDR) and one or more functional areas including Cloud/SaaS, Identity, Email, or Network detection domains
- Experience with DevOps workflows and common scripting languages such as Python, Ruby, and PowerShell
- Expertise using query languages and understanding syntax across EDR or other security platforms such as SQL or Lucene
- Awareness of the current attack landscape (current threats, attack techniques, and vulnerabilities)
- Strong analytical, documentation, and communication skills
- Remote role (in Costa Rica)
Desired Qualifications
- Previous professional experience in a Red Team or offensive security capacity
- Active involvement in the Infosec community through writing blogs, participating in webinars, or presenting at conferences
- Familiarity with MITRE ATT&CK TTPs
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.