Security Engineer - Cloud Threat Detection
val's services · Charlotte, NC · 5 days ago
Full-time
About the role
We are seeking a Senior Security Engineer specializing in Cloud Threat Detection to design and deploy detection content for AWS and GCP threats, integrate cloud telemetry into SIEM platforms, and enhance our security operations.
Responsibilities
- Design and deploy detection content for AWS and GCP threats
- Integrate cloud telemetry into SIEM platforms
- Develop and tune detections, mapping techniques to MITRE ATT&CK
- Participate in adversary simulations
- Create SOPs and investigation guides
- Train SOC analysts and provide escalation support
Requirements
- 5+ years in cybersecurity with hands-on experience in security operations, incident response, and threat detection in AWS and GCP environments
- Proficiency with cloud-native security tools and SIEM integration
- Experience investigating cloud telemetry
- Strong communication skills and ability to develop operational documentation
- Must be authorized to work in the US without sponsorship
Preferred Skills & Certifications
- Experience with Splunk, threat hunting, and SOAR platforms
- Scripting skills (Python, PowerShell)
- Knowledge of adversary behaviors
- Certifications such as AWS Security Specialty, GCP Security Engineer, or Splunk Certified Architect
Additional Details
- Collaboration with cloud and security teams
- On-call support rotations
- Hybrid work arrangement with in-office presence three days a week