hero

Discover the best
jobs in tech

From design and development to sales,
people, and management, get <matched>
with the best opportunities.
92
companies
8,109
Jobs

Sr. Detection Engineer, Information Security

Tesla

Tesla

IT
Austin, TX, USA
Posted on Oct 5, 2024
What to Expect
Tesla operates huge, vertically integrated factories across three continents and a global Supercharger network; the Security Operations & Response Team is responsible for 24/7 monitoring, incident response, threat detection and mitigation across this global enterprise. This group operates around the clock, utilizing advanced security & intelligence systems to promptly identify/respond to incidents, conduct thorough investigations, and mitigate potential risks or damages. The group also provides leadership in coordinating with regional teams to maintain a cohesive security posture worldwide. Their work scales across Tesla's world-class supercomputing, AI/ML, manufacturing 5G/OT, Solar OT, and enterprise IT environments.

We are looking for a highly motivated senior engineer — specializing in security detection & incident response — to continually improve program effectiveness & efficiency. Through tuning, development & automation, you will build and enhance identification, analysis, alerting & response systems to counter threats at scale; your work will remain at the forefront of developing groundbreaking solutions, pushing boundaries, and driving real-world impact.

What You’ll Do
  • Define, implement, and tune detection capabilities to detect & remediate malicious activity
  • Continually improve & create detection tools, craft high-fidelity signaling, remove noise, and reduce manual investigative efforts
  • Collaborate with business teams to identify, craft and implement custom workflow detection strategies
  • Analyze adversarial techniques and develop detection approaches across our diverse environments
  • Engage with Engineering teams to implement sensors, and tools to improve response capabilities
  • Collaborate with Incident Response and Security Operations during investigations and incidents
  • Develop custom tooling to improve and accelerate analysis during investigations
  • Analyze and interpret complex log data to identify relevant information
What You’ll Bring
  • Proficiency in one or more of the following areas: Detection Engineering, Incident Response, Security Operations, DFIR, Security DevOps, SecOps, Security Product Development
  • Experience with detection & response technologies (SIEM, EDR, CNAPP, NDR, NDIS/NIPS, SIGMA, YARA), security automation SOAR tools, IT automation, and/or custom automation methods
  • Experience working with/in Linux containers & orchestration systems (Kubernetes) and cloud environments (AWS)
  • Familiarity with security event correlation, data visualization, graphing, timelines, trending, behavioral analytics and/or anomaly detection is a plus
  • Experience utilizing machine learning models to detect anomalies and predict potential issues is a plus
  • Critical thinking, problem-solving & investigative mindset; ability to operate at scale and adapt to change in complex and diverse environments