onsite
Lead Cybersecurity Defense Engineer - Burlington Stores
Security Engineer
Senior technical leader driving enterprise‑wide defensive security, designing detection engineering, threat modeling, incident response and automation solutions using Python, SIEM platforms and cloud services.
About the role
Key Responsibilities
- Define and execute the technical roadmap for defensive security, ensuring scalable detection, response, and automation capabilities across the enterprise.
- Architect, develop, and maintain advanced detection rules and analytics in SIEM platforms such as Splunk, integrating threat intelligence and machine‑learning models.
- Lead incident response efforts, conduct root‑cause analysis, and create playbooks that reduce mean time to detect and respond.
- Design and implement security automation workflows using Python, APIs, and cloud services (e.g., AWS) to streamline repetitive tasks and improve operational efficiency.
- Collaborate with cross‑functional teams to perform threat modeling, risk assessments, and security architecture reviews.
- Mentor and guide a team of security engineers, fostering a culture of continuous improvement and knowledge sharing.
Requirements
- 7+ years of hands‑on experience in defensive security, including detection engineering, incident response, and security automation.
- Deep expertise with SIEM technologies (Splunk, QRadar, or similar) and scripting in Python.
- Proven experience designing threat models and implementing security controls in cloud environments, preferably AWS.
- Strong understanding of network protocols, operating systems, and common attack vectors.
- Excellent communication and leadership skills, with a track record of mentoring technical teams.
Skills
pythonsiemsplunkaws