Advertisement

Staff Detection Engineer

| Remote
Sorry, this job was removed at 6:41 p.m. (CST) on Monday, July 20, 2020
Find out who’s hiring remotely
See all Remote jobs
Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

Description

ServiceNow is changing the way people work. With a service-orientation toward the activities, tasks and processes that make up day-to-day work life, we help the modern enterprise operate faster and be more scalable than ever before.

 

ServiceNow is looking to expand its Telemetry capabilities with an additional Detection Engineer. As a member of the Telemetry Engineering team you will drive security alerting into production for Security Operations. The primary role of the content engineer is to have total oversight of all things telemetry. This ownership includes creation of new alerts/dashboards, troubleshooting complex alert query fixes, managing development workflow, tracking change control, and adherence to regulatory obligations. This role will special will specialize in user behavior analytics (UBA) with a direction to build anomaly detection and complex threat modeling. 

 

Duties and Responsibilities:

  • Configure UBA anomaly and threat modeling detections.
  • Assist with the entire Telemetry creation and change management from beginning to end.
  • Collaborate with fellow cyber threat intelligence analysts and threat hunters teammates on new use cases.
  • Troubleshoot advanced query logic and work with various teams to derive the best solution.
  • Create initial alert queries and validate output with stakeholders.
  • Implement changes to existing alert queries for performance improvements, threshold adjustments or exclusion filters.
  • Triage and prioritize telemetry requests based off risk, impact and complexity.
  • Deploy telemetry changes into production using a formalized process, to include ServiceNow Security Operations module integration for security incident creation.
  • Provide telemetry item’s purpose to the documentation support analyst.
  • Maintain telemetry inventory for regulatory and compliance audits.
  • Coordinate with incident response team with telemetry needs for security investigations.
  • Create meaningful dashboards for detection patterns or behavior monitoring. This will sometimes require statistical analysis or advanced visualizations.
  • Track progress and escalate problem areas when needed.

 

In order to be successful in this role, we need someone who has:

  • 3-5 years’ experience in information security. Preferably in the domains of Security Operations or Security Engineering.
  • 2 years minimum of using Splunk Search Processing Language (SPL). 
  • Experience writing UBA detection rule writing.
  • Prior experience with SIEM technology and log aggregation applications.
  • Project management skills in order to track multiple updates with an organized method.
  • Ability to understand various log types from a variety of sources such as network devices, operating systems and application specific logs.
  • Proficient regex pattern matching skills.
  • Knowledge of MITRE ATT&CK Matrix is a bonus.
  • Familiar with effective visualizations and dashboarding fundamentals.
  • Concise verbal and written communication skills.
  • Experience with the ServiceNow platform is a bonus.
  • Experience with the Securonix is a bonus.

 

Candidates must be able to meet all federal government security screening requirements as indicated: Federal security screening requirements call for applicant to verify U.S. Citizenship. Additional customer screening requirements may include additional items such as, but not limited to: specialized agency background checks (either national or local) and fingerprinting, as well as the ability to obtain a government personnel security clearance.

We provide competitive compensation, generous benefits and a professional atmosphere. This is a very collaborative and inclusive work environment where individuals strong on aptitude and attitude will have an opportunity to grow their professional careers through working with some of the most advanced technology and talented developers in the business.

 

 

 

ServiceNow is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, age, disability, gender identity, or veteran status. If you are an individual with a disability and require a reasonable accommodation to complete any part of the application process, or are limited in the ability or unable to access or use this online application process and need an alternative method for applying, you may contact us at (408) 501-8550, or [email protected] for assistance.

Read Full Job Description
Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.

Technology we use

  • Engineering
    • JavaLanguages
    • JavascriptLanguages
    • ReactLibraries
    • Node.jsFrameworks
    • MariaDBDatabases
    • MongoDBDatabases
    • MySQLDatabases
    • PostgreSQLDatabases

Location

176 N Racine Ave, Chicago, IL 60607

An Insider's view of ServiceNow

What’s the vibe like in the office?

The culture at this company is to take people's uniqueness, their superpowers — who they are at their core — and figure out how to raise them up for their benefit and the company's benefit.

Christine

Vice President of AMS Solution Consulting

What does your typical day look like?

If I could clarify one thing about being an engineer, we're a lot more collaborative than people think. Engineers can be seen as always sitting by themselves in front of a computer in a dark room and code just streaming down it. However, we work closely with project managers and designers to create the best product for customers.

Viviana

Senior Machine Learning Engineer

How does the company support your career growth?

My experience with Launchpad was humbling and eye-opening. I connected with many other early career individuals and discussed imposter syndrome. Being able to voice that and not feel alone in that feeling, I was like, "Wow. I don't have to know everything." There's still room for me to grow, and there's grace there.

Alexander

Diversity and Inclusion Analyst

How do your team's ideas influence the company's direction?

In this expanding hybrid world, people conduct millions of transactions on a regular basis, creating more data and processes to manage. So, continuing to offer new solutions, while scaling to the expectations of the modern world, is a challenge we are excited to take on. We are driving new levels of productivity, automation, and innovation.

Pat

Chief Technology Officer

What does career growth look like on your team?

Since joining ServiceNow, I've built out my leadership team, and 60% are women. My goal for my team is to create opportunities and a platform to showcase the incredible impact that they're having on the business, whether that's having them lead a critical initiative with cross-functional visibility or present during a C-suite meeting.

Vanessa

President, ServiceNow.org

What are ServiceNow Perks + Benefits

ServiceNow Benefits Overview

We make work better for people—including our own. From work environments that help us do our best work, to benefits and a culture that encourage employees to stay healthy, happy, engaged, and growing, we keep our people at the center of everything we do.

Culture
Volunteer in local community
Open door policy
Open office floor plan
Flexible work schedule
Remote work program
Diversity
Documented equal pay policy
Dedicated diversity and inclusion staff
Mandated unconscious bias training
Diversity manifesto
Mean gender pay gap below 10%
Diversity employee resource groups
Hiring practices that promote diversity
Health Insurance & Wellness Benefits
Flexible Spending Account (FSA)
Disability insurance
Dental insurance
Vision insurance
Health insurance
Life insurance
Wellness programs
Financial & Retirement
401(K)
401(K) matching
Company equity
Employee stock purchase plan
Performance bonus
Charitable contribution matching
Child Care & Parental Leave Benefits
Childcare benefits
Generous parental leave
Family medical leave
Adoption Assistance
Vacation & Time Off Benefits
Unlimited vacation policy
Generous PTO
Paid volunteer time
Paid holidays
Paid sick days
Office Perks
Commuter benefits
Company-sponsored outings
Free snacks and drinks
Company-sponsored happy hours
Onsite office parking
Onsite gym
Professional Development Benefits
Tuition reimbursement
Lunch and learns
Promote from within
Mentorship program
Online course subscriptions available

More Jobs at ServiceNow

Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.
Learn more about ServiceNowFind similar jobs like this