Senior Security Detection Engineer
At U.S. Bank, we’re on a journey to do our best. Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we support to grow and succeed.
We believe it takes all of us to bring our shared ambition to life, and each person is unique in their potential. A career with U.
S. Bank gives you a wide, ever-growing range of opportunities to discover what makes you thrive at every stage of your career.
Try new things, learn new skills and discover what you excel at all from Day One.
Job Description
U.S. Bank’s Security Operations team is responsible for providing threat intelligence, event monitoring, incident response, detection engineering and threat hunting for all business areas of U.
S. Bank in a highly collaborative, fast paced environment. As a member of the Threat Detection Team, a candidate can be expected to utilize his / her technical expertise to create detection logic to identify prioritized threats using logs and security telemetry.
The ideal candidate can dissect an adversary TTP and identify the logs and technologies required to identify that behavior in the U.
S. Bank environment. In addition, this candidate will focus on supporting, automating, and enhancing the threat detection engineering lifecycle to advance the in-house detection and response capabilities.
Top 3 Skills / Experience :
- Red Team / Offensive security
- Experience in detection logic
- Experience applying threat intelligence and analysis to detective controls
This role offers a hybrid / flexible schedule, which means there's an in-office expectation of 3 or more days per week and the flexibility to work outside the office location for the other days.
Basic Qualifications
- Bachelor's degree in Engineering or Science, or equivalent work experience
- Eight or more years of experience in information security
- Two or more years of experience in IT infrastructure management, application architecture, risk management, data architecture, middleware technology, and IT operations and project management
Experience Should Include
- Experience crafting logic that detects anomalies in user, network, host, or cloud activity in a high-fidelity manner.
- 5+ years working in cyber defense with experience in Incident Response, Incident Handling, Security Operations Center (SOC), threat detection engineering, threat Intelligence, threat hunting, or similar functions
- 5+ years working in endpoint, identity, & network domains (ie : systems, containers and web application attacks)
- 2+ years experience in applying detection and response concepts to On-Premise and Cloud environments. (AWS, Azure, GCP)
- 5+ years experience building scripts, tools, or methodologies that enhance threat detection and incident response capabilities.
ie : PowerShell, Python, KQL, SPLUNK, etc)
- 5+ years demonstrated ability to identify threats and adversaries by applying logic to logs and security telemetry.
- 5+ years experience working with security and analysis frameworks (MITRE ATT&CK, Kill Chain, NIST Incident Response, CIS, etc.)
- Professional communication and documentation skills with experience briefing executives and senior leadership.
- Thorough understanding of offensive security principles i.e. Threat Informed Defense Methodology aligning to the MITRE ATT&CK framework.
- Must be self-motivated and able to work both independently and as part of a team.
- Willingness to provide support during nontraditional working hours AND work to support efforts - on-call / as needed.
- Experience mentoring colleagues in all aspects of detection engineering
- Ability to prioritize work based on risks and business needs
Preferred Skills / Experience :
- Experience with automated solutions (SOAR)
- UNIX systems experience and a solid foundation on operating system fundamentals
- Demonstrated experience providing incident response / offensive security / SOC support for Fortune 1000 companies
- Experience working with SIEM and automation tools.
- Relevant experience working with network tools and technologies such as firewall (FW), proxies, IPS / IDS devices, full packet capture (FPC), and email platforms
- Experience with Agile methodologies, separation of duties and change control
- Relevant certifications (CISSP, CISM, OSCP (Offensive Secty Control Practitioner), GCIA, GCIH, GCFA, GNFA, etc)
LI-REMOTE
If there’s anything we can do to accommodate a disability during any portion of the application or hiring process, please refer to our disability accommodations for applicants.
Benefits :
Our approach to benefits and total rewards considers our team members’ whole selves and what may be needed to thrive in and outside work.
That's why our benefits are designed to help you and your family boost your health, protect your financial security and give you peace of mind.
Our benefits include the following (some may vary based on role, location or hours) :
Healthcare (medical, dental, vision)
Basic term and optional term life insurance
Short-term and long-term disability
Pregnancy disability and parental leave
401(k) and employer-funded retirement plan
Paid vacation (from two to five weeks depending on salary grade and tenure)
Up to 11 paid holiday opportunities
Adoption assistance
Sick and Safe Leave accruals of one hour for every 30 worked, up to 80 hours per calendar year unless otherwise provided by law
EEO is the Law
U.S. Bank is an equal opportunity employer committed to creating a diverse workforce. We consider all qualified applicants without regard to race, religion, color, sex, national origin, age, sexual orientation, gender identity, disability or veteran status, among other factors.
Applicants can learn more about the company’s status as an equal opportunity employer by viewing the federal KNOW YOUR RIGHTS EEO poster.
E-Verify
U.S. Bank participates in the U.S. Department of Homeland Security E-Verify program in all facilities located in the United States and certain U.
S. territories. The E-Verify program is an Internet-based employment eligibility verification system operated by the U.S.
Citizenship and Immigration Services. Learn more about the E-Verify program.
The salary range reflects figures based on the primary location, which is listed first. The actual range for the role may differ based on the location of the role.
In addition to salary, US Bank offers a comprehensive benefits package, including incentive and recognition programs, equity stock purchase 401k contribution and pension (all benefits are subject to eligibility requirements).
Pay Range : $128,435.00 - $151,100.00 - $166,210.00 Job postings typically remain open for approximately 20 days of the posting date listed above, however the job posting may be closed earlier should it be determined the position is no longer required due to business need.
Job postings in areas with a high volume of applicants, such as customer service, contact center, and Financial Crimes investigations, remain open for approximately 5 days of the posting listed date.