Talent.com
Senior Staff Engineer - Cybersecurity Operations

Senior Staff Engineer - Cybersecurity Operations

ExelixisAlameda, CA, United States
job_description.job_card.30_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

SUMMARY / JOB PURPOSE :

Join our highly skilled and rapidly growing cybersecurity team as a Senior Staff Engineer. In this role, you will be at the forefront of our cybersecurity operations, focusing on threat detection, incident response, and continuous monitoring to protect our organization's critical assets. This highly skilled individual will also work closely with product owners and business units outside Information Security to ensure that all applications, systems, and processes are secured and hardened.

The Sr. Staff Engineer - Cybersecurity, implements, manages, and improves secure technology solutions for the organization's information systems. The role will develop and implement advanced threat detection and response strategies, conduct proactive threat hunting, and continuously evolve cybersecurity tools to mitigate, prevent, or detect new attacks. Collaborating with cross-functional teams, you'll enhance the organization's cybersecurity posture and ensure compliance with industry standards. Additionally, you'll maintain and improve SOC tools and processes, mentor junior analysts, and prepare detailed incident reports and recommendations for senior management.

ESSENTIAL DUTIES AND RESPONSIBILITIES :

  • Oversee the end-to-end threat management process, from initial detection and analysis to containment, eradication, and recovery. Ensure that all incidents are thoroughly investigated and documented, and that lessons learned are incorporated into future threat management strategies.
  • Lead and coordinate incident response efforts with different groups, ensuring timely and effective resolution of cybersecurity incidents.
  • Develop and maintain incident response plans and playbooks to guide the team during cybersecurity events.
  • Regularly assess the effectiveness of detection mechanisms and make necessary adjustments to improve accuracy and coverage. This includes conducting regular threat hunting exercises to identify gaps and areas for improvement.
  • Create and refine correlation rules within the SIEM to identify complex attack patterns and reduce false positives. This involves analyzing cybersecurity events and developing rules that accurately detect malicious activities.
  • Incorporating threat intelligence feeds into the team's detection capabilities to stay updated on the latest threats and attack techniques. Use this intelligence to enhance detection rules and response strategies.
  • Utilize machine learning and behavioral analytics to identify anomalies and potential threats that traditional signature-based tools might miss. This includes analyzing user behaviors and network traffic to detect suspicious activities.
  • Regularly review and fine-tune the configurations of current cybersecurity tools such as SIEM, EDR, and IDS / IPS to ensure they are effectively detecting and alerting on potential threats.
  • Conduct and analyze phishing simulations to assess and improve the organization's resilience against phishing attacks. Develop training and awareness programs based on the results to educate employees on recognizing and responding to phishing attempts.
  • Work with various log sources and data feeds to enhance the visibility and detection capabilities of the team. This includes integrating logs from network devices, servers, applications, and cloud environments.
  • Responsible for creating and maintaining playbooks to standardize and automate threat response procedures. This includes developing automated workflows to streamline incident response, reduce response times, and improve the overall efficiency and effectiveness of the cybersecurity operations team.
  • Stay current with the latest threat landscape and emerging trends in cybersecurity to proactively identify and mitigate potential cybersecurity risks.
  • Contribute to the overall information cybersecurity strategy.

SUPERVISORY RESPONSIBILITIES :

  • No supervisory responsibility
  • EDUCATION / EXPERIENCE / KNOWLEDGE & SKILLS :

    Education :

  • Bachelor's degree in related discipline and 9+ years of related experience; or
  • Equivalent combination of education and experience
  • CISSP, CISM, CEH, OSCP, GIAC or similar cybersecurity certification required.
  • Experience :

  • Extensive experience in a SOC environment, with a strong background in threat detection, incident response, and threat hunting.
  • Proven experience in implementing and managing a SOAR (Security Orchestration, Automation, and Response) platform.
  • Experience with threat intelligence platforms and integrating threat intelligence feeds to cybersecurity tools to enrich threat detection.
  • Experience in proactive threat hunting to identify and neutralize emerging threats.
  • Experience with conducting and analyzing phishing simulations to enhance organizational cybersecurity awareness and resilience.
  • Demonstrated experience and success in designing and implementing a comprehensive cybersecurity architecture that protects an organization's information assets and enables it to achieve its business objectives.
  • Experience and successfully executing programs that meet the objectives of excellence in a dynamic business environment.
  • Experience in leading, planning, executing, and managing projects.
  • Experience or working knowledge of cloud, network, and application security.
  • Experience in Biotech / Pharma is a plus.
  • Knowledge / Skills / Abilities :

  • Proficiency with SOC tools and technologies such as SIEM (e.g., Splunk, QRadar), EDR (e.g., CrowdStrike, Cortex), and IDS / IPS (e.g., Snort, Suricata).
  • Strong scripting skills (e.g., Python, PowerShell) to automate tasks, enhance detection capabilities, and develop automation through a SOAR platform.
  • Ability to configure and fine-tune cybersecurity tools to maximize their effectiveness by integrating various log sources and data feeds to enhance visibility and detection.
  • Ability to work with various data sources to create high-fidelity alert.
  • Knowledge of machine learning and behavioral analytics to identify anomalies and potential threats.
  • Ability to develop and refine correlation rules within SIEM to detect complex attack patterns, leveraging the MITRE ATT&CK framework.
  • Strong analytical skills to correlate events and make informed decisions based on data.
  • Ability to analyze user behaviors and network traffic to detect suspicious activities.
  • Ability to establish and maintain strong relationships with cybersecurity vendors.
  • Good understanding of cybersecurity frameworks and standards such as, but not limited to, NIST, ISO 27001, and PCI-DSS. Ability to interpret these standards and apply them to an organization's specific cybersecurity needs.
  • Extensive knowledge of DNS, network protocols, firewalls, VPNs, web application firewalls, email security, IPS / IDS, SIEM, DLP, cryptography, application whitelisting, and endpoint protection
  • Excellent communication skills to effectively collaborate with cross-functional teams and present findings to senior management. Skilled in translating data-driven insights into clear narratives of risk and impact.
  • Resourceful and proactive to find innovative solutions to challenges.
  • A mindset focused on continuous learning and improvement.
  • Ability to lead by example and mentor other cybersecurity team members.
  • Ability to foster collaborative working relationships with technology groups and other stakeholders, including vendor relationships.
  • Thorough planning and tracking skills, well-organized, focused on results, capable of managing multiple projects, excellent time management with respect to priorities and self-management.
  • Outstanding judgment and problem-solving skills, including negotiation and conflict resolution.
  • Ability to work in a team environment, create timelines, and continually make necessary adjustments.
  • WORKING CONDITIONS :

  • Environment : primarily working indoors in an office environment
  • #LI-EZ1

    If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us!

    Our compensation reflects the cost of labor across severalU.S. geographic markets, and we pay differently based on those defined markets. The base pay range for this positionis $150,000 - $213,000 annually. The base pay range may take into account the candidate's geographic region, which will adjust the pay depending on the specific work location. The base pay offered will take into account the candidate's geographic region, job-related knowledge, skills, experience and internal equity, among other factors. In addition to the base salary, as part of our Total Rewards program, Exelixis offers comprehensive employee benefits package, including a 401k plan with generous company contributions, group medical, dental and vision coverage, life and disability insurance, and flexible spending accounts. Employees are also eligible for a discretionary annual bonus program, or if field sales staff, a sales-based incentive plan. Exelixis also offers employees the opportunity to purchase company stock, and receive long-term incentives, 15 accrued vacation days in their first year, 17 paid holidays including a company-wide winter shutdown in December, and up to 10 sick days throughout the calendar year.

    DISCLAIMER

    The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to the job.

    We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, national origin, religion, sexual orientation, gender identity, status as a veteran, and basis of disability or any other federal, state or local protected class.

    serp_jobs.job_alerts.create_a_job

    Senior Cybersecurity Engineer • Alameda, CA, United States

    Job_description.internal_linking.related_jobs
    • serp_jobs.job_card.promoted
    Senior Cybersecurity Engineer

    Senior Cybersecurity Engineer

    VirtualVocationsHayward, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Cybersecurity Engineer - Infrastructure Support.Key Responsibilities Design, install, maintain, and support Enterprise IT systems with a focus on security infras...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Cybersecurity Engineer

    Cybersecurity Engineer

    Tari Labs, LLC.Palo Alto, CA, United States
    serp_jobs.job_card.full_time
    Istari is a digital engineering software company enabling our customers to turn the physical world into the digital to accomplish their specific mission or business objectives.Istari was founded wi...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Senior Manager, IT Security, Compliance & Infrastructure

    Senior Manager, IT Security, Compliance & Infrastructure

    Summit Therapeutics Sub, Inc.Menlo Park, CA, US
    serp_jobs.job_card.full_time
    Manager, IT Security, Compliance & Infrastructure.Location : Onsite in Palo Alto, CA or Princeton, NJ.Ivonescimab, known as SMT112, is a novel, potential first-in-class investigational bispecifi...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Staff DevOps Engineer

    Senior Staff DevOps Engineer

    VirtualVocationsSan Francisco, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Staff DevOps Engineer to support the build, deployment, and operations of their software suite. Key Responsibilities Design, implement, and maintain CI / CD pipelin...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Staff Engineer - Cybersecurity Operations

    Senior Staff Engineer - Cybersecurity Operations

    ExelixisAlameda, CA, United States
    serp_jobs.job_card.full_time
    Join our highly skilled and rapidly growing cybersecurity team as a Senior Staff Engineer.In this role, you will be at the forefront of our cybersecurity operations, focusing on threat detection, i...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Cybersecurity Engineer

    Senior Cybersecurity Engineer

    Bio, Inc.Redwood City, CA, United States
    serp_jobs.job_card.full_time
    At Q Bio, we are transforming healthcare by combining AI, Physics, and Biology to automate the physical exam, making preventive, personalized care accessible to all. We are hiring a Senior Cybersecu...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Cybersecurity Engineer

    Cybersecurity Engineer

    VirtualVocationsSan Jose, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Cybersecurity Engineer (Remote) to join their Cybersecurity team.Key Responsibilities Lead the integration of security into the SaaS environment and collaborate with En...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Staff DevOps Engineer

    Staff DevOps Engineer

    OpenGovSan Francisco, CA, United States
    serp_jobs.job_card.full_time
    OpenGov is the leader in AI and ERP solutions for local and state governments in the U.More than 2,000 cities, counties, state agencies, school districts, and special districts rely on the OpenGov ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Cybersecurity Support Engineer

    Cybersecurity Support Engineer

    VirtualVocationsSan Jose, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Cybersecurity Support Engineer III.Key Responsibilities : Lead the design and implementation of secure infrastructure aligned with Zero Trust Architecture principles Co...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    Senior Staff Engineer (Crypto / Web3) - Dragonfly Portfolio

    Senior Staff Engineer (Crypto / Web3) - Dragonfly Portfolio

    P2PSan Francisco, CA, United States
    serp_jobs.job_card.full_time
    Senior Staff Engineer (Crypto / Web3) - Dragonfly Portfolio.Dragonfly is a crypto-native Venture Capital and research firm with $2B+ in assets under management and 160+ portfolio companies.Our Talent...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior DevOps Engineer

    Senior DevOps Engineer

    VirtualVocationsHayward, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior DevOps Engineer to manage and enhance the release processes for custom applications.Key Responsibilities Define and own the release process for custom applicatio...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Staff Network Operations Engineer

    Staff Network Operations Engineer

    Epoch BiodesignSan Francisco, CA, United States
    serp_jobs.job_card.full_time
    Sunnyvale, CA - US, San Francisco, CA - US.Crusoe's mission is to accelerate the abundance of energy and intelligence.We’re crafting the engine that powers a world where people can create ambitious...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Staff / Principal DevOps Engineer (FortiAppSec)

    Staff / Principal DevOps Engineer (FortiAppSec)

    FortinetSunnyvale, CA, United States
    serp_jobs.job_card.full_time
    We are seeking a highly skilled DevOps Engineer to join our team.In this role, you will design, implement, and maintain scalable, resilient, and secure infrastructure. You will work closely with Dev...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Senior Cyber Security Engineer

    Senior Cyber Security Engineer

    Cloud Software Group, Inc.San Ramon, CA, United States
    serp_jobs.job_card.full_time
    Analyze and investigate activity on company devices and infrastructure (Public Cloud & on-premise) that could represent a security threat. Work cross-functionally with the Security teams to develop ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Senior Cybersecurity Specialist

    Senior Cybersecurity Specialist

    VirtualVocationsSanta Clara, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Cybersecurity Specialist - Red Team - Pentester.Key Responsibilities Maintain secure configurations and operations of IT assets Lead cybersecurity projects and ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Manager, Cybersecurity & Operations

    Manager, Cybersecurity & Operations

    OpenGovSan Francisco, CA, United States
    serp_jobs.job_card.full_time
    OpenGov is the leader in AI and ERP solutions for local and state governments in the U.More than 2,000 cities, counties, state agencies, school districts, and special districts rely on the OpenGov ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Senior DevOps Engineer

    Senior DevOps Engineer

    JobotSan Jose, CA, US
    serp_jobs.job_card.full_time
    REMOTE Senior Site Reliability Engineer / Senior Dev Ops Engineer Needed for Growing Fintech Startup!.This Jobot Job is hosted by : Reed Kellick. Are you a fit? Easy Apply now by clicking the "Apply ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Senior Security Engineer

    Senior Security Engineer

    VirtualVocationsHayward, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Security Infrastructure Support Senior Security Engineer.Key Responsibilities : Design, install, maintain, and support enterprise IT systems across hybrid environments ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Cybersecurity Team Lead

    Cybersecurity Team Lead

    VirtualVocationsSanta Clara, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Cybersecurity Infrastructure Support Team Lead.Key Responsibilities Lead and manage technical teams focused on security infrastructure support in a hybrid environment ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Senior DevOps Engineer

    Senior DevOps Engineer

    FortinetSunnyvale, CA, United States
    serp_jobs.job_card.full_time
    We are looking for a highly skilled and hands-on Senior DevOps Engineer to lead infrastructure automation, system reliability, and deployment processes across on-prem environments and running 24x7 ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours