Quick Overview
Job Description
Please find a brief overview of the role below.
Title: Senior Threat Detection & Response Engineer
Location: The Woodlands, TX, New Orleans, LA, Little Rock, AR or Jackson, MS (3 days a week)
Job Summary
We are seeking a Senior Threat Detection & Response Engineer with strong hands-on experience in CrowdStrike, threat hunting, threat modeling, and security automation. The ideal candidate will be responsible for proactively identifying threats, developing detection and response capabilities, and automating repetitive security operations. The candidate must have experience using AI, scripting, SOAR, or other automation tools to improve threat hunting, monitoring, and incident response processes.
Key Responsibilities
- Perform proactive threat hunting across endpoints, networks, cloud environments, and security telemetry to identify advanced threats and suspicious activity.
- Develop and maintain threat detection, monitoring, and response capabilities using CrowdStrike Falcon.
- Conduct threat modeling to identify attack paths, vulnerabilities, potential threats, and security gaps.
- Develop and tune detection rules, queries, indicators, and hunting techniques based on emerging threats and adversary behavior.
- Build and maintain automation workflows for threat hunting, threat monitoring, alert enrichment, investigation, and incident response.
- Use AI/ML tools, Python, PowerShell, APIs, SOAR platforms, or other automation technologies to improve security operations and reduce manual effort.
- Integrate CrowdStrike and other security tools through APIs and automation frameworks.
- Analyze security events, endpoint telemetry, and threat intelligence to investigate suspicious activities and potential compromises.
- Collaborate with SOC, Incident Response, Threat Intelligence, and Cybersecurity Engineering teams to improve detection and response capabilities.
- Document threat hunting methodologies, automation workflows, detection logic, and operational procedures.
Required Skills
- Strong hands-on experience with CrowdStrike Falcon, including endpoint detection, investigation, threat detection, and response capabilities.
- Practical experience performing threat hunting using endpoint, network, cloud, and security telemetry.
- Experience with threat modeling and understanding of common attack techniques and adversary behaviors.
- Hands-on experience developing automation for threat hunting, threat monitoring, or threat response.
- Must have automation experience using AI tools, Python, PowerShell, APIs, SOAR platforms, or other scripting/automation technologies.
- Understanding of MITRE ATT&CK, IOC/IOA analysis, detection engineering, and incident response.
- Experience developing and tuning security detections and investigating advanced threats.
- Strong scripting and API integration skills with the ability to automate repetitive security tasks.
- Ability to analyze large volumes of security telemetry and translate findings into actionable detections and response workflows.
- Strong troubleshooting, analytical, documentation, and communication skills.
Similar jobs
- WR
Pool Operator
Westgate Resorts
Kissimmee, FL🇺🇸$17/hrOn-site7 weeks agoEngineering - WR
Engineering Tech I
Westgate Resorts
Kissimmee, FL🇺🇸$17/hrOn-site7 weeks agoEngineering - WR
Engineering Tech I
Westgate Resorts
Orlando, FL🇺🇸$17/hrOn-site7 weeks agoEngineering - WR
Certified Pool Operator (CPO)
Westgate Resorts
Myrtle Beach, SC🇺🇸$20/hrOn-site2 months agoHVACEngineering - WR
Engineering Tech I
Westgate Resorts
Myrtle Beach, SC🇺🇸$18/hrOn-site2 months agoEngineering - WR
Engineering Tech II
Westgate Resorts
Myrtle Beach, SC🇺🇸$20/hrOn-site2 months agoHVACEngineering