EDR Detection Engineer

1 week ago


Bengaluru, Karnataka, India Trellix Full time

EDR Detection Engineer

Job Summary:

We are looking for a skilled EDR (Endpoint Detection and Response) Detection Engineer to focus on our preparation for the 2024 MITRE ATT&CK Enterprise evaluation. Your primary responsibility will be to evaluate and improve our EDR product's detection capabilities in preparation for the evaluation. You will leverage your experience in previous MITRE ATT&CK evaluations to identify detection coverage gaps and develop strategies to address these gaps effectively.

Key Responsibilities:

  • Conduct in-depth analysis of our EDR product's capabilities in the context of the 2024 Enterprise evaluation, focusing on its effectiveness against identified attack patterns
  • Conduct in-depth analysis of the malware families and techniques available through the website and other OSINT channels as they relate to the scope of the 2024 evaluation
  • Distill insights from this analysis into actionable detection coverage recommendations for our EDR solution and when applicable, our EPP solution
  • Build and maintain a repository of prioritized techniques and the procedures that an adversary may use to perform those techniques
  • Utilize insights from previous evaluations to optimize our detection strategies and enhance detection capabilities
  • Efficiently emulate attack techniques based on these analyses to test the robustness of our EDR product and measure existing detection coverage
  • Where gaps exist that require product improvements, partner with engineering and security researchers to design and propose technical solutions to enhance detection capabilities and close coverage gaps
  • Author and refine EDR detection signatures, ensuring they address the techniques and anticipated procedures

Qualifications:

  • Bachelor's degree in Computer Science, Cybersecurity, or a related field.
  • Minimum of 5 years of experience building detection for EDR technologies
  • Experience participating in Enterprise evaluations
  • Strong understanding of cybersecurity threats, attack techniques
  • Excellent analytical and problem-solving skills.
  • Ability to communicate complex technical information clearly and concisely to diverse audiences.
  • Proficiency in cybersecurity tools and technologies related to EDR.
  • Preferred Qualifications:
  • Experience in programming or scripting languages (Python, PowerShell, etc.).
  • Experience performing detection engineering across multiple operating systems, including Windows, Linux, and macOS.
  • Experience building detection across non-endpoint vectors such as network and email


  • Bengaluru, Karnataka, India Trellix Full time

    EDR Detection EngineerJob Summary:We are looking for a skilled EDR (Endpoint Detection and Response) Detection Engineer to focus on our preparation for the 2024 MITRE ATT&CK Enterprise evaluation.Your primary responsibility will be to evaluate and improve our EDR product's detection capabilities in preparation for the evaluation.You will leverage your...


  • Bengaluru, Karnataka, India Trellix Full time

    Sr Solutions EngineerEDR Detection EngineerSolutions EngineerCustomer Success Manager - Poland (German Speaking)Industrial Security Specialist (CSSO/FSO)Sr. Product Certification Program ManagerAccountantSoftware Development Engineer in TestSoftware EngineerSoftware EngineerCustomer Success ManagerEnterprise Solutions EngineerCustomer Success...


  • Bengaluru, Karnataka, India Trellix Full time

    Sr Solutions EngineerEDR Detection EngineerSolutions EngineerCustomer Success Manager - Poland (German Speaking)Industrial Security Specialist (CSSO/FSO)Sr. Product Certification Program ManagerAccountantSoftware Development Engineer in TestSoftware EngineerSoftware EngineerCustomer Success ManagerEnterprise Solutions EngineerCustomer Success...


  • Bengaluru, Karnataka, India Securseed Full time

    Company Overview: Securseed InfoSec is a leading cybersecurity firm dedicated to providing cutting-edge solutions to protect our clients' digital assets and sensitive information. We specialize in comprehensive vulnerability assessments, penetration testing, and security consulting services that empower organizations to fortify their defenses against...


  • Bengaluru, Karnataka, India Securseed Full time

    Company Overview:Securseed InfoSec is a leading cybersecurity firm dedicated to providing cutting-edge solutions to protect our clients' digital assets and sensitive information. We specialize in comprehensive vulnerability assessments, penetration testing, and security consulting services that empower organizations to fortify their defenses against evolving...


  • Bengaluru, Karnataka, India World Wide Technology Full time

    L2 onsite experts with a minimum of 5 years' experience to manage Crowdstrike EDR, Forcepoint DLP, and Arcon PAM during business hours. Each expert must be skilled in at least 2 out of the 3 platforms and certified by the respective OEMs. The vendor must ensure continuous certification updates at their expense. Replacement resources are needed for planned...


  • Bengaluru, Karnataka, India Maersk Full time

    Detection Automation engineer Job Purpose/summary A Detection and Automation engineer is responsible for identifying potential security threats and automating the processes that detect and respond to these threats. Their role typically involves a combination of monitoring, analysis, and the implementation of automated systems to enhance the efficiency and...


  • Bengaluru, Karnataka, India Swiss Re Full time

    About the role: • Be someone who believes in continuous innovation, is curious and relentless in finding a better way every day • Develop and maintain a deep understanding of the latest threat landscape, tactics, techniques, and procedures (TTPs) used by attackers• Develop and maintain expertise in threat detection tools and technologies, including...


  • Bengaluru, Karnataka, India Maersk Full time

    Detection Automation engineerJob Purpose/summaryA Detection and Automation engineer is responsible for identifying potential security threats and automating the processes that detect and respond to these threats. Their role typically involves a combination of monitoring, analysis, and the implementation of automated systems to enhance the efficiency and...

  • Tanium EDR

    1 week ago


    Bengaluru, Karnataka, India Capgemini Full time

    Job DescriptionSupports Endpoint Detection and Response (EDR) applications from an operational capacity and ensures cyber security service availability for all endpoint (i.e. servers, desktops and laptops).Monitor EDR & AV logsMonitor dashboard for compliance, threats and troubleshootCheck if any incidents are missed by L1 and follow up for the causeBasic...

  • Tanium EDR

    1 week ago


    Bengaluru, Karnataka, India Capgemini Full time

    Job DescriptionSupports Endpoint Detection and Response (EDR) applications from an operational capacity and ensures cyber security service availability for all endpoint (i.e. servers, desktops and laptops).Monitor EDR & AV logs Monitor dashboard for compliance, threats and troubleshootCheck if any incidents are missed by L1 and follow up for the causeBasic...

  • Threat Detection

    1 week ago


    Bengaluru, Karnataka, India StoneX Full time

    OverviewConnecting clients to markets – and talent to opportunityWith 4,300 employees and over 400,000 retail and institutional clients from more than 80 offices spread across five continents, we're a Fortune-100, Nasdaq-listed provider, connecting clients to the global markets – focusing on innovation, human connection, and providing world-class...

  • Detection Engineer

    1 week ago


    Bengaluru, Karnataka, India Granicus Full time

    The Company Serving the People Who Serve the People Granicus is driven by the excitement of building, implementing, and maintaining technology that is transforming the Govtech industry by bringing governments and their constituents together. We are on a mission to support our customers by meeting the needs of their communities and implementing our technology...


  • Bengaluru, Karnataka, India SentinelOne Full time

    About Us: SentinelOne is defining the future of cybersecurity through our XDR platform that automatically prevents, detects, and responds to threats in real-time. Singularity XDR ingests data and leverages our patented AI models to deliver autonomous protection. With SentinelOne, organizations gain full transparency into everything happening across the...


  • Bengaluru, Karnataka, India Granicus Full time

    The Company Serving the People Who Serve the People Granicus is driven by the excitement of building, implementing, and maintaining technology that is transforming the Govtech industry by bringing governments and their constituents together. We are on a mission to support our customers by meeting the needs of their communities and implementing our technology...


  • Bengaluru, Karnataka, India Granicus Full time

    The Company Serving the People Who Serve the People Granicus is driven by the excitement of building, implementing, and maintaining technology that is transforming the Govtech industry by bringing governments and their constituents together. We are on a mission to support our customers by meeting the needs of their communities and implementing our technology...


  • Bengaluru, Karnataka, India Granicus Full time

    The Company Serving the People Who Serve the People Granicus is driven by the excitement of building, implementing, and maintaining technology that is transforming the Govtech industry by bringing governments and their constituents together. We are on a mission to support our customers by meeting the needs of their communities and implementing our technology...


  • Bengaluru, Karnataka, India Granicus Full time

    The Company Serving the People Who Serve the People Granicus is driven by the excitement of building, implementing, and maintaining technology that is transforming the Govtech industry by bringing governments and their constituents together. We are on a mission to support our customers by meeting the needs of their communities and implementing our technology...


  • Bengaluru, Karnataka, India Smiths Detection Full time

    About Us Smiths Detection , part of Smiths Group , is a global leader in threat detection and screening technologies for aviation, ports & borders, defense, and urban security. Our expertise is spread across 5 R&D centers, 21 Global Offices and 7 Manufacturing Sites with 3000 Brilliant minds globally contributing for over 40 years at the frontline which...


  • Bengaluru, Karnataka, India Smiths Detection Full time

    About UsSmiths Detection, part ofSmiths Group, is a global leader in threat detection and screening technologies for aviation, ports & borders, defense, and urban security. Our expertise is spread across 5 R&D centers, 21 Global Offices and 7 Manufacturing Sites with 3000 Brilliant minds globally contributing for over 40 years at the frontline which enables...