Zscaler Logo

Zscaler

Senior Detection Engineer

Posted 11 Days Ago
Be an Early Applicant
Remote or Hybrid
Hiring Remotely in USA
Senior level
Remote or Hybrid
Hiring Remotely in USA
Senior level
The Senior Detection Engineer will analyze EDR telemetry, create and tune detection rules, automate workflows, and mentor peers to enhance threat detection and response.
The summary above was generated by AI

About Zscaler

Zscaler accelerates digital transformation so our customers can be more agile, efficient, resilient, and secure. Our cloud native Zero Trust Exchange platform protects thousands of customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location.

Here, impact in your role matters more than title and trust is built on results. We believe in transparency and value constructive, honest debate—we’re focused on getting to the best ideas, faster. We build high-performing teams that can make an impact quickly and with high quality. To do this, we are building a culture of execution centered on customer obsession, collaboration, ownership and accountability. 

We value high-impact, high-accountability with a sense of urgency where you’re enabled to do your best work and embrace your potential. If you’re driven by purpose, thrive on solving complex challenges and want to make a positive difference on a global scale, we invite you to bring your talents to Zscaler and help shape the future of cybersecurity.

The Red Canary Detection Engineering  team at Zscaler continues to push the boundaries of threat detection and response with a unique combination of operations, threat research, and engineering in tight integration with the development team that designs our analysis platform and the Red Canary Threat Detection Engine. The security landscape is always shifting and introducing new adversaries and our team operates 24/7 to track down threats in endpoint data and deliver fast and practical detections to our customers.

Role

We are looking for an experienced Senior Detection Engineer to join our Detection Engineering team. This is a remote role, reporting to the Manager, Detection Engineering. You will utilize our detection platform to analyze EDR telemetry, alerts, and log sources across several detection domains including Endpoint, Identity, SIEM, and Cloud. By researching coverage opportunities, creating and tuning detectors, and leading projects to improve the Detection Engineering workflow through orchestration and automation, you will ensure our customers receive high-fidelity threat analysis and concisely written communication regarding emerging threats.

What you’ll do (Role Expectations)

  • Analyze EDR telemetry, alerts, and log sources across several detection domains including Endpoint, Identity, SIEM, and Cloud/SaaS

  • Publish threats for customers using concisely written communication to effectively convey key indicators and remediation context

  • Research coverage opportunities to create new detectors and tune existing ones to ensure high-fidelity detection

  • Improve the Detection Engineering workflow through orchestration and automation to manage high volumes of telemetry

  • Provide mentorship to peers and lead projects that improve the quality of life for both the customer and the CIRT

Who You Are (Success Profile)

  • You thrive in ambiguity. You're comfortable building the path as you walk it. You thrive in a dynamic environment, seeing ambiguity not as a hindrance, but as the raw material to build something meaningful.

  • You act like an owner. Your passion for the mission fuels your bias for action. You operate with integrity because you genuinely care about the outcome. True ownership involves leveraging dynamic range: the ability to navigate seamlessly between high-level strategy and hands-on execution.

  • You are a problem-solver. You love running towards the challenges because you are laser-focused on finding the solution, knowing that solving the hard problems delivers the biggest impact.

  • You are a high-trust collaborator. You are ambitious for the team, not just yourself. You embrace our challenge culture by giving and receiving ongoing feedback—knowing that candor delivered with clarity and respect is the truest form of teamwork and the fastest way to earn trust.

  • You are a learner. You have a true growth mindset and are obsessed with your own development, actively seeking feedback to become a better partner and a stronger teammate. You love what you do and you do it with purpose.

What We’re Looking for (Minimum Qualifications)

  • Strong experience in Endpoint (MDR) and one or more functional areas including Cloud/SaaS, Identity, Email, or SIEM

  • Proven experience with automation and orchestration to effectively handle an extreme volume of telemetry and logs

  • Expertise using query languages and understanding syntax across EDR or other security platforms such as SQL or Lucene

  • Experience creating and tuning detectors or rules using tools such as YARA, SIGMA, Snort, Splunk, or Elastic

  • Ability to work the required shift from Wednesday to Saturday, 5pm MST – 3am MST

What Will Make You Stand Out (Preferred Qualifications)

  • Active involvement in the Infosec community through writing blogs, participating in webinars, or presenting at conferences

  • Experience using version control software such as GitHub or CircleCI for the deployment of detectors and rules

  • Previous professional experience in a Red Team or offensive security capacity

 

#LI-Remote 

#LI-DB1

Zscaler’s salary ranges are benchmarked and are determined by role and level. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations and could be higher or lower based on a multitude of factors, including job-related skills, experience, and relevant education or training.

The base salary range listed for this full-time position excludes commission/ bonus/ equity (if applicable) + benefits.

Base Pay Range
$119,000$127,000 USD

At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure.

Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including:

  • Various health plans
  • Time off plans for vacation and sick time
  • Parental leave options
  • Retirement options
  • Education reimbursement
  • In-office perks, and more!

Learn more about Zscaler’s Future of Work strategy, hybrid working model, and benefits here.

By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines.

Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws. See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegal link.

Pay Transparency

Zscaler complies with all applicable federal, state, and local pay transparency rules.

Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.

Top Skills

CircleCI
Cloud/Saas
Edr
Elastic
Git
Identity
K
Lucene
SIEM
Sigma
Snort
Splunk
SQL
Yara

Zscaler Burnaby, British Columbia, CAN Office

4789 Kingsway Suite 400,, Burnaby, BC , Canada, V5H 0A3

Similar Jobs at Zscaler

9 Days Ago
Remote or Hybrid
USA
Senior level
Senior level
Cloud • Information Technology • Security • Software • Cybersecurity
The Senior Detection Engineer will analyze telemetry, publish threats, create and tune detectors, improve workflows, and provide mentorship.
Top Skills: CircleCIEdrElasticGitKLuceneSigmaSnortSplunkSQLYara
12 Hours Ago
Remote or Hybrid
San Jose, CA, USA
Senior level
Senior level
Cloud • Information Technology • Security • Software • Cybersecurity
The Senior Product Manager will drive product initiatives focusing on visibility, device discovery, and micro-segmentation, collaborating with teams to meet strategic objectives.
Top Skills: Cloud SecurityIotMicro-SegmentationOt
Yesterday
Remote or Hybrid
McLean, VA, USA
Senior level
Senior level
Cloud • Information Technology • Security • Software • Cybersecurity
The Staff Software Engineer will design and develop back-end applications in Java and AWS, collaborate with teams, and maintain security compliance.
Top Skills: AWSCi/CdDockerDynamoDBEksJavaKafkaKubernetesLambdaNode.jsPythonRdsS3SpringSpring BootSqs

What you need to know about the Vancouver Tech Scene

Raincouver, Vancity, The Big Smoke — Vancouver is known by many names, and in recent years, it has gained a reputation as a growing hub for both tech and sustainability. Renowned for its natural beauty, the city has become a magnet for professionals eager to create environmental solutions, and with an emphasis on clean technology, renewable energy and environmental innovation, it's attracted companies across various industries, all working toward a shared goal: advancing clean technology.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account