← Zurück zur Liste
Stelle

Detection & Mitigation Engineer

Backend Developer • Vor Ort • Vollzeit • 📍 Hybrid

Cloudflare's Cloudforce One threat operations team is looking for a Detection & Mitigation Engineer to identify, track, and defeat sophisticated threats and abuse across the platform, building detections that protect customers in real time.

Responsibilities

  • Examine and mitigate threats in real time, leveraging emerging technologies to build detections that protect against various forms of attacks and abuse
  • Identify the Tactics, Techniques, and Procedures (TTPs) of ongoing and evolving cyber attacks to protect Cloudflare's global customer base
  • Work closely with team members to develop new and innovative ways to present and interact with threat insights
  • Track and analyze cyber campaigns using technical Indicators of Compromise (IOCs)

Requirements

  • Experience in data analysis, metadata analysis, or network traffic analysis
  • A passion for analyzing attacker TTPs at varying levels
  • Ability to understand the latest security trends as they relate to platform threats and abuse
  • Experience using a comprehensive data analysis platform and rule configuration
  • Understanding of the cyber threat landscape, cyber intelligence, and working knowledge of threat actors and their techniques
  • Working knowledge of SQL and devising SQL queries
  • Python or other scripting experience
  • Ability to synthesize technical information and document it in a non-technical manner, both graphically and verbally
  • Comfortable communicating actionable threat intelligence to both technical and executive-level stakeholders
  • Great oral and written communication skills
  • Desire to learn and improve, willingness to share knowledge and mentor others

Nice to have

  • Working knowledge of a specific platform or product's authentication protocols and related header/log analysis
  • Experience analyzing, tracking, and defending against various types of cyber attacks, including phishing, malware, and abuse
  • Strong understanding of the cyber threat landscape, with expertise in advanced persistent threat (APT) groups
  • Working knowledge of OSI layers
  • Working knowledge of TCP/UDP/ICMP, DNS, HTTP/HTTPS, SMTP/SMTPS, SSH/SFTP/SCP, FTP
  • Familiarity with regular expressions and their practical application in tracking malicious activity
  • Experience with detection development using YARA, Snort, Suricata, or an equivalent language

Soft skills

Great oral and written communication skillsAbility to synthesize technical information for non-technical audiencesWillingness to learn, share knowledge, and mentor others

What we offer

  • Medical, dental, and vision insurance
  • 401(k) plan with company match
  • Flexible paid time off
  • Fertility & family-forming benefits
  • Eligible to participate in Cloudflare's equity plan

About the company

Cloudflare is on a mission to help build a better Internet, running one of the world's largest networks that powers millions of websites and Internet properties for customers from individual bloggers to Fortune 500 companies. Cloudflare protects and accelerates any Internet application without adding hardware, installing software, or changing code, and was named to Entrepreneur Magazine's Top Company Cultures list and ranked among Fast Company's World's Most Innovative Companies.

Education: Számítástechnika, informatika, információbiztonság, számítógépes biztonság vagy információs rendszerek szakirányú diploma (előny, nem feltétel)

Ähnliche Stellen