Detection and SOAR Engineer, Mandiant Consulting, Google Cloud at Google | ACT, AU | Rezi

Detection and SOAR Engineer, Mandiant Consulting, Google Cloud at Google

Detection and SOAR Engineer, Mandiant Consulting, Google Cloud

Google · ACT, AU

2 weeks ago

Detection and SOAR Engineer, Mandiant Consulting, Google Cloud

Google · ACT, AU

14 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now
Resume preview

Tailor your resume to this Detection and SOAR Engineer, Mandiant Consulting, Google Cloud role.

Rezi rewrites your resume against Google's job description. Free.

Resume score gauge reading 58 out of 100

Don't guess if your resume is good enough.

See how it scores against the Detection and SOAR Engineer, Mandiant Consulting, Google Cloud posting at Google — free, in seconds.

About the Role

Collaborate with cross-functional teams to enable technology and tools for a Cyber Defense Center (CDC). Maintain operational readiness of SIEM and SOAR platforms, create detection content and automations, and set configurations for effective incident detection and response.

Responsibilities

  • Identify challenges in customer Cyber Defense Centers (CDC) and formulate strategies for improvement, plan implementation of improvements, and execute/oversee plans to completion.
  • Advise on technologies relied upon by the client CDC, Computer Security Incident Response Team (CSIRT), and SOC.
  • Create and modify SIEM use cases written in both technology specific query language and Sigma open signature format.
  • Create and modify SOAR playbooks written in Python.
  • Engage and collaborate with client stakeholders and other groups within customer environment to drive resolution for security issues.
  • Provide expertise for SIEM, SOAR and other SOC technologies that assist in incident response.

Requirements

  • 3 years of experience in detection engineering, SOAR automation, or a related role.
  • 3 years of experience working with SOC/CSIRT or other incident response related teams.
  • Experience with detection tuning and creation leveraging various security tools (e.g., SIEM, EDR, or NDR tools).
  • Experience with scripting Security Information and Event Management (SIEM) solutions (e.g., writing queries, searches, alerts, dashboards) in Python or Powershell.

Skills

  • Detection engineering
  • SOAR automation
  • SIEM
  • EDR
  • NDR tools
  • Python
  • Powershell
  • Sigma open signature format
  • SOAR playbooks

Experience Level

  • 3 years

Education Level

  • Bachelor's degree in Computer Science, Information Systems, Cybersecurity, a related technical field, or equivalent practical experience.

About the Company

  • Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services.
  • Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world.
  • Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone.