Source Job

Costa Rica

  • Analyze EDR telemetry, alerts, and log sources across Endpoint, Identity, Network, and Cloud/SaaS domains.
  • Publish and review threats for customers using concisely written communication to convey key indicators and remediation context.
  • Improve and innovate Detection Operations workflows through orchestration and automation to manage high volumes of telemetry.

EDR Cloud Security Python SQL

16 jobs similar to Senior Detection Analyst

Jobs ranked by similarity.

$122,500–$175,000/yr
USA

  • Perform investigations into detected threats and leverage security products to analyze, contain, and remediate threats in customer environments.
  • Provide customers with thorough reports of actions taken to ensure clarity on environment cleanup and protection strategies.
  • Collaborate with Detection Engineering, Threat Hunting, Intel, and Product teams to develop innovative methods for timely threat remediation.

Zscaler accelerates digital transformation by providing cloud-based security solutions using its Zero Trust Exchange platform. The company fosters a culture of execution, collaboration, and ownership, with a focus on high-impact work.

Global

  • Monitor, triage, and investigate security incidents across Kraken's infrastructure and client instances.
  • Develop and automate detection capabilities and incident response processes.
  • Collaborate with engineering and product teams to improve security posture and respond to incidents.

We power some of the most innovative global developments in energy by creating technology that redefines utilities. We are a growing global team committed to improving the lives of one billion humans within the decade.

$160,000–$220,000/yr
US

  • Synthesize data from a wide range of internal and external sources to develop a comprehensive picture of threats affecting cloud, AI, and developers.
  • Analyze and track state-backed and financially motivated attackers targeting cloud ecosystems.
  • Communicate novel findings and in-depth analyses of cyber threat activity to multiple audiences and in multiple formats.

Wiz enables teams to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. It is one of the fastest-growing startups, trusted by over 65% of the Fortune 100, with a culture that values world-class talent.

US Australia

  • Analyze and respond to advanced threats ranging from commodity phishing to zero-day exploits.
  • Monitor and triage alerts from network security monitoring, EDR platforms, and other log sources.
  • Create detailed incident reports and collaborate with threat intelligence and incident response teams.

Volexity is a cybersecurity company specializing in threat intelligence and incident response. They have a growing, industry-leading security operations team and value diversity and equal opportunity.

$172,279–$249,640/yr
US Canada

  • Build and maintain SIEM for log collection and detection rules across corporate and production environments.
  • Design and deploy canary tokens and early warning mechanisms to detect threats before they reach critical assets.
  • Investigate security incidents end-to-end, including malware analysis, exfiltration assessment, and timeline reconstruction.

Quora operates two platforms: a global knowledge sharing platform with over 300M monthly unique visitors, and Poe, a platform for chatting and building with AI language models. The company is privately held, remote-first, and fosters a culture of transparency, collaboration, and experimentation.

$187,937–$208,819/yr
US

  • Develop core product features in ETL (Extract, Transform, Load) and GraphQL to support data processing and retrieval.
  • Design and implement backend APIs in GraphQL to facilitate data interactions between different components of the product.
  • Build and maintain ETL pipelines for efficient data processing and analytics.

Horizon3 is a fast-growing, remote cybersecurity company dedicated to the mission of enabling organizations to proactively find, fix and verify exploitable attack vectors before criminals exploit them. We are a team of learn it alls, committed to a culture of respect, collaboration, ownership, and results.

Portugal 4w PTO

  • Lead and mentor the Detection Engineering & Automation team, driving delivery and professional growth.
  • Own the full detection lifecycle, from use-case design to implementation, optimization, and retirement.
  • Develop SIEM/EDR rules, detection-as-code pipelines, and SOAR automation playbooks to reduce alert fatigue.

This role is listed on behalf of a partner company, which manages all applications and next steps. The company is a remote-first organization focused on building advanced cyber defense capabilities, with a collaborative culture and a proactive security program.

$75,600–$97,200/yr
Ireland

  • Triage, investigate, and respond to alerts from the Huntress platform daily.
  • Perform tactical review of EDR telemetry, log sources, and forensic artifacts to determine root causes and provide remediations.
  • Contribute to detection engineering and collaborate with a passionate team dedicated to protecting companies from cyber-attacks.

Huntress is a cybersecurity company founded in 2015 by former NSA cyber operators, providing enterprise-grade cybersecurity to businesses of all sizes. They secure over 5M endpoints and 14M identities worldwide with a 24/7 human-led SOC and a remote-first culture.

$200,000–$250,000/yr
US Unlimited PTO

  • Lead detection engineering innovation by reimagining how unlimited AI capacity transforms SOC workflows.
  • Partner with engineering teams to encode expert detection knowledge into product, designing scoring rubrics for AI-generated content.
  • Stay current on emerging threats and conduct original research to develop novel AI-assisted detection approaches.

Dropzone's mission is to scale cybersecurity beyond human limits by augmenting security engineers with AI specialists. We are an award-winning, venture-backed company disrupting the $200B+ cybersecurity market with a team experienced in cybersecurity, AI/ML, and SaaS.

US

  • Own deployment, configuration, and tuning of EDR platforms like CrowdStrike across endpoints and servers.
  • Manage SIEM platforms such as Splunk, developing detection rules and investigating alerts.
  • Lead SOC 2 Type II compliance operations, including maintaining control evidence and coordinating with auditors.

Volexity is a cybersecurity firm specializing in incident response and threat intelligence. The company values diversity and offers a collaborative culture with a focus on professional development.

Argentina

  • Own end-to-end security incident response, from triage to recovery, and drive post-incident learnings.
  • Build and improve detection coverage across cloud, endpoint, identity, and SaaS systems.
  • Develop security automation and workflows to reduce manual toil and improve response speed.

Front is the customer operations platform for B2B complexity, keeping teams, tools, and conversations in sync. Over 9,000 companies rely on Front, and it's backed by Sequoia Capital and Salesforce Ventures, with a highly recognized workplace culture.

US Unlimited PTO

  • Lead investigation and response for security incidents, suspicious activity, and emerging threats.
  • Design, implement, and improve security monitoring, detection, and response capabilities across AWS.
  • Develop detection rules, conduct post-incident reviews, and partner with teams to strengthen security controls.

CoLab is an AI platform that helps mechanical engineering teams bring life-changing products to market faster by driving stronger engineering decisions. Founded in 2019 and based in St. John's, Newfoundland, CoLab has grown rapidly, earning recognition on Deloitte's Fast 50 and Fast 500 lists.

$96,798–$125,268/yr
Canada

  • Monitor security events and provide technical analysis on alerts
  • Lead information security incidents as Incident Commander, developing response strategies and coordinating across teams
  • Champion Samsara's cultural principles while delivering security guidance for incident response and insider threat initiatives

Samsara (NYSE: IOT) is the pioneer of the Connected Operations™ Cloud, a platform that enables organizations to harness IoT data for actionable insights and improved operations. They are a recently public company with a culture that encourages rapid career development and a focus on digitizing large sectors of the global economy.

Colombia

  • Safeguard customer digital assets by leveraging expertise in vulnerability identification, security implementation, and incident response.
  • Collaborate with cross-functional teams to assess risks, formulate security strategies, and ensure compliance with industry standards.
  • Stay at the forefront of emerging cyber threats and trends to proactively detect and mitigate security breaches.

Check Point is a world-leading cybersecurity vendor that provides cutting-edge technologies and services to protect against sophisticated threats. The company has a global team of innovative employees and has been recognized by Time Magazine and Forbes as one of the best companies to work for.

Bulgaria

  • Monitor and investigate security alerts across cloud, identity, endpoint, and network environments.
  • Write scripts to automate repetitive security tasks and support incident response.
  • Work with internal teams to identify risks and support remediation, compliance, and audit activities.

Cision is a global leader in PR, marketing and social media management technology and intelligence, helping brands connect with customers and stakeholders. They have offices in 24 countries and a network of over 1.1 billion influencers, committed to diversity and inclusion with a "Top Diversity Employer" designation.

US

  • Deploy and support Scout products in real customer environments, building and improving deployment automations.
  • Prototype integrations with customer systems and turn repeatable issues into actionable product requirements.
  • Communicate clearly with technical and non-technical customers while researching cybersecurity trends.

Volexity is a cybersecurity company that builds products used in real-world security environments, including incident response and threat intelligence. The company values diversity and is an equal opportunity employer, hiring based on qualifications and merit.