Threat Detection Engineer - Remote - SC Clearance - Contract
As a key member of the SOC Content Team, you will be responsible for developing, deploying, and fine-tuning threat detection content, as well as delivering proactive threat hunting activities. This role involves close collaboration with client Lead Analysts, threat intelligence teams, and wider SOC functions to ensure detection strategies are aligned with each client's threat landscape and security objectives. You'll enjoy a mix of hands-on technical work, teamwork, and knowledge sharing, with a strong focus on continuous learning and process improvement.
Key Responsibilities
Threat Detection & Use Case Development
* Design and build detection logic aligned to real-world threat scenarios, using frameworks such as MITRE ATT&CK.
* Manage detection content throughout its full life cycle - development, testing, deployment, and tuning.
* Partner with client Lead Analysts to ensure content remains effective and relevant across multiple environments.
Proactive Threat Hunting
1. Conduct hypothesis-driven threat hunts using client telemetry, threat intelligence, and anomalies.
2. Identify suspicious or malicious activity that may bypass existing detection controls.
3. Document and present findings clearly for both internal teams and clients.
<...