This role involves developing and refining security detection, response, and automation workflows to identify and mitigate cyber threats across various data domains, collaborating with teams to improve security operations and incident response processes.
Key Responsibilities
Develop and maintain security detections, rules, alerts, dashboards, and use cases across multiple security platforms.
Correlate signals from diverse data sources to identify attacker behavior, misuse, and security risks.
Partner with various teams to map business processes to security telemetry and use cases.
Support incident response activities including triage, investigation, containment, and post-incident analysis.
Create automation workflows and enrichment processes to improve detection and response efficiency.
Tune and improve detection quality by reducing false positives and increasing true positive rates.
Collaborate on logging strategies, event onboarding, normalization, and platform customization.
Apply threat intelligence and frameworks to develop meaningful detections and operational guidance.
Requirements
Six years of experience in cybersecurity, or a related technical field
Three years of hands-on experience in incident response, detection engineering, security operations, or SIEM engineering
Solid understanding of the incident response lifecycle, including triage, scoping, containment, eradication, recovery, and post-incident learning
Strong hands-on experience with a SIEM platform, with direct experience with Splunk being strongly preferred
Understanding of foundational networking, systems, cloud, and security principles
Ability to write scripts and automate tasks using Python or a similar language
Ability to work with APIs, integrate data sources, and automate enrichment or response actions
Strong analytical thinking and the ability to translate ambiguous threats or operational gaps into concrete detection logic
Excellent written and verbal communication skills, with the ability to collaborate effectively across technical and non-technical teams
Bachelor’s degree in Computer Science, Information Security, Engineering, or a related technical field
Benefits & Perks
Salary range of $120,000 to $180,000 USD annually
Work from the Lehi, UT office in compliance with company policies
Flexible time off
Wellness resources
Company-sponsored team events
Potential eligibility for incentive pay and equity
Support for growth and development
Inclusive and diverse work environment
Ready to Apply?
Join Pure Storage and make an impact in renewable energy