remote
Cyber Defense - Defense Engineering Service Lead - Zoetis
Software Engineer
Lead hands‑on detection engineering and SOC operations, crafting high‑quality detections, automating response playbooks, and hunting threats across enterprise environments using SIEM, EDR, NDR, and MITRE ATT&CK frameworks.
About the role
Key Responsibilities
- Design, develop, and tune detection rules across SIEM, EDR, and NDR platforms to improve signal fidelity and reduce false positives.
- Lead incident response and complex investigations, leveraging MITRE ATT&CK to map adversary tactics and techniques.
- Automate response playbooks and integrate security tooling into a cohesive defense ecosystem.
- Conduct proactive threat hunting and threat intelligence analysis to uncover emerging threats.
- Collaborate with cross‑functional teams to refine detection logic and improve overall security posture.
Requirements
- 5+ years of experience in security operations, detection engineering, or threat hunting.
- Proficiency with SIEM, EDR, and NDR technologies and scripting in Python.
- Deep knowledge of MITRE ATT&CK framework and adversary tradecraft.
- Strong analytical skills and ability to translate threat intelligence into actionable detections.
- Excellent communication and collaboration skills across technical and non‑technical stakeholders.