11 days ago

Senior Detection Engineer

Zscaler

Hybrid
Full Time
$130,000
Hybrid

Job Overview

Job TitleSenior Detection Engineer
Job TypeFull Time
CategoryCommerce
Experience5 Years
DegreeMaster
Offered Salary$130,000
LocationHybrid

Who's the hiring manager?

Sign up to PitchMeAI to discover the hiring manager's details for this job. We will also write them an intro email for you.

Uncover Hiring Manager

Job Description

About Zscaler

Zscaler is a pioneer and global leader in zero trust security. The world’s largest businesses, critical infrastructure organizations, and government agencies rely on Zscaler to secure users, branches, applications, data & devices, and to accelerate digital transformation initiatives. Distributed across more than 160 data centers globally, the Zscaler Zero Trust Exchange platform combined with advanced AI combats billions of cyber threats and policy violations every day and unlocks productivity gains for modern enterprises by reducing costs and complexity.

Here, impact in your role matters more than title and trust is built on results. We believe in transparency and value constructive, honest debate—we’re focused on getting to the best ideas, faster. We build high-performing teams that can make an impact quickly and with high quality. To do this, we are building a culture of execution centered on customer obsession, collaboration, ownership and accountability.

We champion an “AI Forward, People First” philosophy to help us accelerate and innovate, empowering our people to embrace their potential. If you’re driven by purpose, thrive on solving complex challenges and want to make a positive difference on a global scale, we invite you to bring your talents to Zscaler to help shape the future of cybersecurity.

The Red Canary Detection Engineering team at Zscaler continues to push the boundaries of threat detection and response with a unique combination of operations, threat research, and engineering in tight integration with the development team that designs our analysis platform and the Red Canary Threat Detection Engine. The security landscape is always shifting and introducing new adversaries and our team operates 24/7 to track down threats in endpoint data and deliver fast and practical detections to our customers.

Role

We are looking for an experienced Senior Detection Engineer to join our Detection Engineering team. This is a remote role, reporting to the Manager, Detection Engineering. You will utilize our detection platform to analyze EDR telemetry, alerts, and log sources across several detection domains including Endpoint, Identity, SIEM, and Cloud. By researching coverage opportunities, creating and tuning detectors, and leading projects to improve the Detection Engineering workflow through orchestration and automation, you will ensure our customers receive high-fidelity threat analysis and concisely written communication regarding emerging threats.

What You’ll Do (Role Expectations)

  • Analyze EDR telemetry, alerts, and log sources across several detection domains including Endpoint, Identity, SIEM, and Cloud/SaaS
  • Publish threats for customers using concisely written communication to effectively convey key indicators and remediation context
  • Research coverage opportunities to create new detectors and tune existing ones to ensure high-fidelity detection
  • Improve the Detection Engineering workflow through orchestration and automation to manage high volumes of telemetry
  • Provide mentorship to peers and lead projects that improve the quality of life for both the customer and the CIRT

Who You Are (Success Profile)

  • You thrive in ambiguity. You're comfortable building the path as you walk it. You thrive in a dynamic environment, seeing ambiguity not as a hindrance, but as the raw material to build something meaningful.
  • You act like an owner. Your passion for the mission fuels your bias for action. You operate with integrity because you genuinely care about the outcome. True ownership involves leveraging dynamic range: the ability to navigate seamlessly between high-level strategy and hands-on execution.
  • You are a problem-solver. You love running towards the challenges because you are laser-focused on finding the solution, knowing that solving the hard problems delivers the biggest impact.
  • You are a high-trust collaborator. You are ambitious for the team, not just yourself. You embrace our challenge culture by giving and receiving ongoing feedback—knowing that candor delivered with clarity and respect is the truest form of teamwork and the fastest way to earn trust.
  • You are a learner. You have a true growth mindset and are obsessed with your own development, actively seeking feedback to become a better partner and a stronger teammate. You love what you do and you do it with purpose.

What We’re Looking For (Minimum Qualifications)

  • Strong experience in Endpoint (MDR) and one or more functional areas including Cloud/SaaS, Identity, Email, or SIEM
  • Proven experience with automation and orchestration to effectively handle an extreme volume of telemetry and logs
  • Expertise using query languages and understanding syntax across EDR or other security platforms such as SQL or Lucene
  • Experience creating and tuning detectors or rules using tools such as YARA, SIGMA, Snort, Splunk, or Elastic
  • Ability to work the required shift from Wednesday to Saturday, 5pm MST – 3am MST

What Will Make You Stand Out (Preferred Qualifications)

  • Active involvement in the Infosec community through writing blogs, participating in webinars, or presenting at conferences
  • Experience using version control software such as GitHub or CircleCI for the deployment of detectors and rules
  • Previous professional experience in a Red Team or offensive security capacity

Benefits

Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including: various health plans, time off plans for vacation and sick time, parental leave options, retirement options, education reimbursement, in-office perks, and more!

Key skills/competency

  • Detection Engineering
  • Endpoint Detection and Response (EDR)
  • Threat Research & Analysis
  • Security Information and Event Management (SIEM)
  • Cloud Security
  • Identity Security
  • Automation & Orchestration
  • Query Languages (SQL, Lucene)
  • YARA, SIGMA, Snort
  • Version Control (GitHub)

Tags:

Senior Detection Engineer
Threat analysis
Endpoint security
Cloud security
SIEM
Automation
Orchestration
Detector tuning
Security research
Incident response
EDR
SQL
Lucene
YARA
SIGMA
Snort
Splunk
Elastic
GitHub
Zero Trust

Share Job:

How to Get Hired at Zscaler

  • Research Zscaler's culture: Study their mission, values, recent news, and employee testimonials on LinkedIn and Glassdoor.
  • Tailor your resume: Customize your experience to highlight detection engineering, EDR, SIEM, and automation skills relevant to Zscaler.
  • Showcase technical expertise: Prepare to discuss your experience with query languages (SQL, Lucene), detector rules (YARA, SIGMA), and version control (GitHub).
  • Prepare for behavioral questions: Demonstrate problem-solving, ownership, collaboration, and a growth mindset, aligning with Zscaler's success profile.
  • Engage with the Infosec community: Highlight any blogs, webinars, or conference presentations to show active involvement and passion.

Frequently Asked Questions

Find answers to common questions about this job opportunity

Explore similar opportunities that match your background