Location- Austin TX or 100% remote
At Sumo Logic, we are building a data platform designed to power the analytics and investigations that are common in the Security Operation Centers of large enterprises. It is designed to accept hundreds of billions of events from security-relevant data sources (detection products, network sensors, log shippers, inventory systems) per day. It is cloud-native, with no plan to support an on-premise deployment. It is multi-tenant and is designed to simultaneously process events from thousands of our customers. And, it is security-focused — it is designed to perform the kinds of stateful analyses that security analysts demand.
-
Responsibilities:
- Research and develop threat detection rules for emerging threats
- Collaborate with both internal and customer-facing teams to improve existing threat detection rules
- Develop data parsers and normalization structures for a broad variety of technologies
- Align developed content to establish cybersecurity frameworks
- Drive changes to the product that improve threat detection capabilities
- Develop and improve internal testing frameworks to improve detection efficacy
Requirements:- 3+ years in a Threat Detection, Security Analyst, Security Engineer, or similar role
- Degree in cyber security or related field, or equivalent work experience
- Demonstrated experience in developing threat detection capabilities (rules, dashboards, etc.)
- Experience working with SIEM technologies
- Strong ability in machine log analysis
Nice to Haves:- Relevant industry certifications
- Experience working at a security product company
- Public contributions to the industry (blog posts, GitHub repos, etc.)
- Experience in cybersecurity consulting
Other Details:
- Competitive compensation ( Base + Bonus +Stock)
- Unlimited PTO
- MacBook Pro
- 100% remote or in office- your choice
- Employee stock purchase plan- ESPP
- Medical, Dental, Vision
- Paid Parental leave