Description
Vectra is hiring an experienced Threat Detection Engineer for its Attack Signal Production Group. The role focuses on researching, developing, testing, and maintaining cloud and identity threat detections across AWS, Azure, GCP, and Microsoft Entra ID, while also contributing to network-based detection. The engineer will investigate attacker behaviors using authentication, audit, CloudTrail, application, flow-log, PCAP, and other security telemetry; use Python, SQL, Pandas, notebooks, and cloud analytics platforms; collaborate with data scientists and security researchers; and improve production-quality detection coverage, accuracy, scalability, and maintainability. Six or more years of cybersecurity experience is required, with preferred experience in adversary simulation, network analysis, and relevant security certifications.
