Netflix is a global entertainment company that aims to push the boundaries of storytelling through creativity and technology. The Detection Engineering Team is seeking an experienced detection engineer to enhance their detection frameworks and minimize risks by proactively identifying malicious activities on their platforms.
Responsibilities:
- Analyze high-risk attack paths and create focused detections to reduce risk to the business
- Mature and expand detection frameworks, platforms, and portfolio
- Create and continually improve detections that run on Netflix platforms
- Generate compensating detective controls to shorten the time to discovery
- Identify trends, insights, and relationships between internal and external data to provide risk mitigation recommendations
- Implement, use, and configure common security tools
- Write detections at scale using a detection-as-code approach
- Script and develop automations in a cloud-based environment
- Proactively inform stakeholders and communicate effectively across teams
Requirements:
- You are comfortable working across the information security domain, with familiarity in a combination of endpoint, email, network, identity management, cloud security, vulnerability management, incident response, and/or threat intelligence
- You have hands-on experience analyzing and responding to security events, such as conducting log analysis, developing queries and analytics, troubleshooting security issues, and/or correlating complex data sets
- You can identify trends, insights, and relationships between internal and external data and intelligence sources to provide recommended risk mitigation
- You have experience implementing, using, and configuring some common security tools
- You have experience writing detections at scale using a detection-as-code approach
- You are able to script and develop automations, preferably using Python and SQL, in a cloud-based environment to contribute to our in-house platforms
- You have excellent written and verbal communication skills, proactively inform stakeholders, and can operate with little oversight
- You can effectively operate across teams and disciplines in highly ambiguous and rapidly changing environment
- You work well with others, see the value of a team, and partner effectively with all stakeholders
- You are comfortable working on ambitious projects with a very small, tight-knit team
- Comfortable or experience applying GenAI technologies to automate security operations is a plus