Threat Detection Engineer // REMOTE Job at Amtex Systems Inc, New York, NY

a0o2ajFpVGNyOTB0QTByK0E5WGRGTzB6RlE9PQ==
  • Amtex Systems Inc
  • New York, NY

Job Description

Job Title: Threat Detection Engineer
Location: Remote
Employment Type: Contractor

Job Summary:
The ideal candidate will be responsible for designing, implementing, and maintaining advanced threat detection use cases within a hybrid SIEM environment. This role requires a deep understanding of security information and event management (SIEM), threat hunting, and incident analysis to protect our organization from emerging cyber threats.



Key Responsibilities:
Develop, optimize, and manage SIEM dashboards, searches, and alerts to identify potential security threats in real-time.
Create and refine custom SIEM use cases, correlation rules, and detection logic to enhance threat visibility across systems and networks.
Perform threat hunting and analyze log data to proactively identify anomalies and gaps in current use case library.
Collaborate with incident response teams to investigate and mitigate security incidents, providing detailed forensic analysis when required.
Maintain and tune SIEM deployments, ensuring data integrity, performance, and scalability.
Integrate SIEM with other security tools and data sources to improve detection accuracy and coverage.
Stay current on evolving cyber threats, attack techniques, and industry best practices to continuously improve detection strategies.
Document processes, detection methodologies, and incident findings for knowledge sharing and compliance purposes.


Qualifications:
7+ years of experience in cybersecurity, with at least 4 years focused on SIEM use case development.
Highly proficient in Splunk Enterprise Security (ES), including SPL (Search Processing Language), dashboard creation, and alert configuration.
Strong understanding of network protocols, system logs, and security event analysis.
Experience with threat intelligence integration and applying MITRE ATT&CK framework to detection efforts.
Familiarity with scripting languages (e.g., Bash, Python, PowerShell) for automation and data analysis is a plus.
Familiarity with offensive security tactics & techniques such as red teaming and advanced penetration testing is a plus.
Relevant certifications such as Splunk Certified Power User, Splunk Certified Admin, or cybersecurity certifications such as OSCP, GPEN, GCIH, GCFE are highly preferred.
Excellent problem-solving skills and the ability to work under pressure in a fast-paced environment.



Preferred Skills:
Knowledge of additional SIEM platforms or security tools (e.g., Elastic, QRadar, CrowdStrike).
Ability to mentor team members and contribute to a collaborative security culture.

Job Tags

For contractors, Remote job,

Similar Jobs

Carter's/OshKosh

Sales Associate - 24H150 Job at Carter's/OshKosh

 ...operated stores in the United States, Canada, and Mexico and online at ** **and The Company's Child of Mine brand is available at Walmart, its Just One You brand is available at Target, and its Simple Joys brand is available on Amazon. The Company also owns Skip Hop, a... 

Robert Half

Medical Administrative Assistant Job at Robert Half

 ...- Handle cash transactions and pre-screen patients. - Collaborate with providers for accurate scheduling and billing. - Maintain medical records and ensure HIPAA compliance. - Manage multiple tasks while ensuring a positive patient experience. - Stock and maintain office... 

GD Mission Systems

Sr Advanced Nuclear Weapons Safety Engineering Specialist Job at GD Mission Systems

 ...Responsibilities for this Position Sr Advanced Nuclear Weapons Safety Engineering Specialist ID: 2025-66225 USA-MA-Pittsfield Required Clearance: Top Secret Posted Date: 4/30/2025 Category: Engineering-Systems Employment Type: Full Time Hiring... 

Streamwood Behavioral Healthcare System

PARAPROFESSIONAL Job at Streamwood Behavioral Healthcare System

 ...Responsibilities Paraprofessional Full-Time POSITION SUMMARY : Under the direction of the Principal, the Para Professional Aide provides students with educational and behavioral programs that will enable them to reach their fullest educational potential... 

Acadian Ambulance Service

Advanced EMT Job at Acadian Ambulance Service

 ...SUMMARY: Provide appropriate, efficient and timely pre-hospital advanced and basic life support care and transportation of the sick and...  ...) X Work near moving mechanical parts X Work in high, precarious places...