Jobs and Careers
ZS

Staff Threat Detection Engineer

Zscaler
Remote - USA, United StatesRemotefull_timeVerifiedPosted 28 Feb 2024
💰 $175,000/yr($157,250/yr$175,000/yr)

About the role

About Zscaler

Zscaler (NASDAQ: ZS) accelerates digital transformation so that customers can be more agile, efficient, resilient, and secure. The Zscaler Zero Trust Exchange is the company’s cloud-native platform that protects thousands of customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location. 

With more than 10 years of experience developing, operating, and scaling the cloud, Zscaler serves thousands of enterprise customers around the world, including 450 of the Forbes Global 2000 organizations. In addition to protecting customers from damaging threats, such as ransomware and data exfiltration, it helps them slash costs, reduce complexity, and improve the user experience by eliminating stacks of latency-creating gateway appliances. 

Zscaler was founded in 2007 with a mission to make the cloud a safe place to do business and a more enjoyable experience for enterprise users. Zscaler’s purpose-built security platform puts a company’s defenses and controls where the connections occur—the internet—so that every connection is fast and secure, no matter how or where users connect or where their applications and workloads reside.

Location: Remote in the U.S. or Canada

Zscaler is looking for a highly technical staff security researcher with significant experience in threat detection engineering. This position needs to have a deep understanding of emerging threats, security technologies, a knack for problem-solving, and a creative approach to create innovative threat detection solutions. Analyze zscaler product telemetry and hunt for threats at scale through in-depth log analysis and malware behavior. The results will be used to develop innovative tools to automate further threat hunting, produce technical threat analytics reports, and publish research blogs.

Responsibilities:

  • Collaborate with threat-hunting operations and drive product innovation in threat detection.
  • Drive positive threat hunting service outcomes through cross-functional collaboration with other functional teams, across threat hunting, data engineering etc.
  • Perform threat modeling, design and build effective threat detection rules and models to help shorten the mean time to respond.
  • Responsible for analyzing advanced threats & TTPs and creating effective detections allowing threat hunters to successfully find the needle from the haystack.
  • Responsible for the development and design of signals which can automatically highlight emerging threats.
  • Analyze malware and threat attacks for patterns and develop automated solutions for analysis, classification, and categorization of data for further automation.
  • Create innovative security solutions and strategies to support threat alerting pipeline allowing Threat Hunters to quickly identify and remediate potential security threats.
  • Work with global threat intelligence collectors to identify, contextualize, and instrument current and emerging cyber threats.
  • Actively participate in the cyber security community, establishing relationships and knowledge sharing.
  • Develop security-focused tools and services in support of intelligence, detection, and response.

Required Qualifications:

  • Required 8+ years hands-on threat detection, threat research and threat hunting experience
  • Strong understanding of tools, tactics and procedures (TTPs) of threats actors (eCrime/APT)
  • Experience in incident analysis and response using industry standard frameworks such as MITRE ATT&CK and the cyber kill chain
  • Experienced in security information and event management tools, such as Splunk, Elasticsearch.
  • Experience with malware analysis - dynamic & static
  • Must be able to validate findings, perform root cause analysis, and deliver recommendations for fixes.
  • Strong scripting and automation skills are must (Python preferable)
  • Must have excellent reporting and analytical skills.
  • Strong understanding of web protocols and web application security
  • Experience writing IDS/IPS, YARA signatures

Preferred:

  • TTP based threat hunting
  • In-depth log analysis and malware tracking and monitoring
  • Data mining experience with large security data sets such as IDS, IPS and firewall logs.
  • Strong development background with experience in Python and Familiarity with SQL

Education:

  • Bachelor’s or graduate degree from four-year college or university (preferably in Computer Science, Engineering, or a related discipline), or equivalent security industry work experience.

#LI-remote

#LI-AM12

Zscaler’s salary ranges are benchmarked and are determined by role and level. The range displayed on

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Zscaler

View company profile →