Senior Security Detection Engineer

U.S. Bank
Minneapolis, MN, United States
$166.2K a year
Full-time
We are sorry. The job offer you are looking for is no longer available.

At U.S. Bank, we’re on a journey to do our best. Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we support to grow and succeed.

We believe it takes all of us to bring our shared ambition to life, and each person is unique in their potential. A career with U.

S. Bank gives you a wide, ever-growing range of opportunities to discover what makes you thrive at every stage of your career.

Try new things, learn new skills and discover what you excel at all from Day One.

Job Description

U.S. Bank’s Security Operations team is responsible for providing threat intelligence, event monitoring, incident response, detection engineering and threat hunting for all business areas of U.

S. Bank in a highly collaborative, fast paced environment. As a member of the Threat Detection Team, a candidate can be expected to utilize his / her technical expertise to create detection logic to identify prioritized threats using logs and security telemetry.

The ideal candidate can dissect an adversary TTP and identify the logs and technologies required to identify that behavior in the U.

S. Bank environment. In addition, this candidate will focus on supporting, automating, and enhancing the threat detection engineering lifecycle to advance the in-house detection and response capabilities.

Top 3 Skills / Experience :

  • Red Team / Offensive security
  • Experience in detection logic
  • Experience applying threat intelligence and analysis to detective controls

This role offers a hybrid / flexible schedule, which means there's an in-office expectation of 3 or more days per week and the flexibility to work outside the office location for the other days.

Basic Qualifications

  • Bachelor's degree in Engineering or Science, or equivalent work experience
  • Eight or more years of experience in information security
  • Two or more years of experience in IT infrastructure management, application architecture, risk management, data architecture, middleware technology, and IT operations and project management

Experience Should Include

  • Experience crafting logic that detects anomalies in user, network, host, or cloud activity in a high-fidelity manner.
  • 5+ years working in cyber defense with experience in Incident Response, Incident Handling, Security Operations Center (SOC), threat detection engineering, threat Intelligence, threat hunting, or similar functions
  • 5+ years working in endpoint, identity, & network domains (ie : systems, containers and web application attacks)
  • 2+ years experience in applying detection and response concepts to On-Premise and Cloud environments. (AWS, Azure, GCP)
  • 5+ years experience building scripts, tools, or methodologies that enhance threat detection and incident response capabilities.

ie : PowerShell, Python, KQL, SPLUNK, etc)

  • 5+ years demonstrated ability to identify threats and adversaries by applying logic to logs and security telemetry.
  • 5+ years experience working with security and analysis frameworks (MITRE ATT&CK, Kill Chain, NIST Incident Response, CIS, etc.)
  • Professional communication and documentation skills with experience briefing executives and senior leadership.
  • Thorough understanding of offensive security principles i.e. Threat Informed Defense Methodology aligning to the MITRE ATT&CK framework.
  • Must be self-motivated and able to work both independently and as part of a team.
  • Willingness to provide support during nontraditional working hours AND work to support efforts - on-call / as needed.
  • Experience mentoring colleagues in all aspects of detection engineering
  • Ability to prioritize work based on risks and business needs

Preferred Skills / Experience :

  • Experience with automated solutions (SOAR)
  • UNIX systems experience and a solid foundation on operating system fundamentals
  • Demonstrated experience providing incident response / offensive security / SOC support for Fortune 1000 companies
  • Experience working with SIEM and automation tools.
  • Relevant experience working with network tools and technologies such as firewall (FW), proxies, IPS / IDS devices, full packet capture (FPC), and email platforms
  • Experience with Agile methodologies, separation of duties and change control
  • Relevant certifications (CISSP, CISM, OSCP (Offensive Secty Control Practitioner), GCIA, GCIH, GCFA, GNFA, etc)

LI-REMOTE

If there’s anything we can do to accommodate a disability during any portion of the application or hiring process, please refer to our disability accommodations for applicants.

Benefits :

Our approach to benefits and total rewards considers our team members’ whole selves and what may be needed to thrive in and outside work.

That's why our benefits are designed to help you and your family boost your health, protect your financial security and give you peace of mind.

Our benefits include the following (some may vary based on role, location or hours) :

Healthcare (medical, dental, vision)

Basic term and optional term life insurance

Short-term and long-term disability

Pregnancy disability and parental leave

401(k) and employer-funded retirement plan

Paid vacation (from two to five weeks depending on salary grade and tenure)

Up to 11 paid holiday opportunities

Adoption assistance

Sick and Safe Leave accruals of one hour for every 30 worked, up to 80 hours per calendar year unless otherwise provided by law

EEO is the Law

U.S. Bank is an equal opportunity employer committed to creating a diverse workforce. We consider all qualified applicants without regard to race, religion, color, sex, national origin, age, sexual orientation, gender identity, disability or veteran status, among other factors.

Applicants can learn more about the company’s status as an equal opportunity employer by viewing the federal KNOW YOUR RIGHTS EEO poster.

E-Verify

U.S. Bank participates in the U.S. Department of Homeland Security E-Verify program in all facilities located in the United States and certain U.

S. territories. The E-Verify program is an Internet-based employment eligibility verification system operated by the U.S.

Citizenship and Immigration Services. Learn more about the E-Verify program.

The salary range reflects figures based on the primary location, which is listed first. The actual range for the role may differ based on the location of the role.

In addition to salary, US Bank offers a comprehensive benefits package, including incentive and recognition programs, equity stock purchase 401k contribution and pension (all benefits are subject to eligibility requirements).

Pay Range : $128,435.00 - $151,100.00 - $166,210.00 Job postings typically remain open for approximately 20 days of the posting date listed above, however the job posting may be closed earlier should it be determined the position is no longer required due to business need.

Job postings in areas with a high volume of applicants, such as customer service, contact center, and Financial Crimes investigations, remain open for approximately 5 days of the posting listed date.

1 day ago
Related jobs
Promoted
Buildertrend
Brooklyn Park, Minnesota
Remote

Security Engineer or Cloud Engineer, with a focus on public cloud security and network security required. Work closely with Cloud Engineers and Site Reliability Engineers to implement and manage advanced security technologies and tools on public cloud platforms, such as identity and access managemen...

Promoted
Target
Brooklyn Park, Minnesota

JOIN TARGET CYBERSECURITY AS A SENIOR ENGINEER – ENDPOINT SECURITY. The Endpoint Security team is looking for a motivated Senior Engineer to join us in developing the tools that keep Target’s endpoints secure. As a Senior Engineer on Target’s Endpoint Security team, you will:. Ment...

Promoted
Beacon Hill Staffing Group
Saint Paul, Minnesota
Remote

Senior Network Security Engineer! Remote, long-term contract This Engineer is responsible for implementing network and security best practices with regard to network, infrastructure and application requirements for on premises and cloud deployments. The Security / Engineer will help establish and im...

Promoted
Fairview Health Services
Minneapolis, Minnesota

OverviewM Health Fairview is looking for a knowledgable Senior Cybersecurity Engineer to join the Informatics Technology department! The Senior level Cybersecurity Engineer is involved with crafting, developing, scripting, configuring, testing and maintaining Cybersecurity and Risk management. Colla...

Promoted
U.S. Bank
Hopkins, Minnesota

Preferred Skills/ExperienceTypically a Bachelor's degree, or equivalent work experienceTypically five or more years of relevant experienceAdvanced technical and functional subject matter expert knowledge across security domain areasAdditional Required Skills/Experience8+ years experience in an IT en...

Blackbaud
Remote, Minnesota, US
Remote

You are either a security-minded software engineer who has been building modern services using a microservice architecture in an agile development environment or a development-interested security practitioner who understands security best practices, but wants to get closer to development and enginee...

Data Recognition Corporation
Osseo, Minnesota

The Senior Information Security Engineer will be responsible to design, architect, implement, and maintain the suite of security tooling that allows for detection and analysis of security events. This position also assists with other aspects of the security practice, including application and cloud ...

SmartThings
Minneapolis, Minnesota

Behaviors, Execution and Foundation.Skills Knowledge and Expertise ....

WELLS FARGO BANK
Minneapolis, Minnesota

Leads or assists senior level engineers with analysis to identify security vulnerabilities and conduct security risk assessments to ensure compliance with corporate security policies and adherence to best practices. Wells Fargo is seeking a Senior Information Security Engineer on the Mainframe Secur...

Apex Systems
Minneapolis, Minnesota

Title: Sr Information Security Engineer. Provide security consulting on medium projects for internal clients to ensure conformity with corporate information, security policy, and standards. Design, document, test, maintain, and provide issue resolution recommendations for moderately complex security...