XSIAM Detection Engineer

Posted 13 Hours Ago
Easy Apply
Be an Early Applicant
Hiring Remotely in USA
Remote
95K-118K Annually
Junior
Cloud • Security • Software • Cybersecurity
Red Canary empowers security professionals to transform their organization’s information security.
The Role
The XSIAM Detection Engineer will manage and configure a SIEM system, automate alarm responses, and develop advanced detection capabilities using XSIAM technology. The role requires investigating and triaging security events, scripting for automation, and enhancing detection rules to improve threat responses for customers.
Summary Generated by Built In

Who We Are

Red Canary was founded to create a world where every organization can make its greatest impact without fear of cyber threats. We’re a cyber security company who protects, supports and empowers organizations to make better security decisions so they can focus on their mission without fear of cyber threats.


The combination of our market-defining technology and expertise prevents breaches every day and sets a new standard for partnership in the industry. We’re united in our commitment to customers and grounded in our values, which earned us a place on the Forbes Best Start-up Employers 2022 list. If our mission resonates with you, let’s talk.


What We Believe In

- Do what’s right for the customer

- Be kind and authentic

- Deliver great quality

- Be relentless


Challenges You Will Solve

The security landscape is always shifting and introducing new adversaries. The Red Canary XSIAM Detection Engineering & Response team operates 24/7 to track down threats in source signal data and deliver fast and actionable detections to our customers.


The XSIAM Detection Engineer will configure a Security Information and Event Management (SIEM) system for our customers. Using SIEM technology, you will investigate and triage alarms related to relevant security data/threats/events. In addition, you will write scripts to automate solutions for alarms and threats from enterprise systems. XSIAM Detection Engineers will write and tune advanced detectors and correlation rules to identify threats in customers’ environments. 


This is not a role where you are encouraged to passively accept the current state. At Red Canary, you are empowered to actively identify and research opportunities to automate threat detection and response activities.

What You'll Do

  • Use Palo Alto’s XSIAM platform, source signal data, and external resources to uncover threats and tell the story of what occurred in a customer environment.
  • Build new detection capabilities into the XSIAM platform based on your research of new attack techniques.
  • Leverage previous security operations experience to enhance the XSIAM Detection Engineering & Response teams knowledge-base and expertise.
  • Initiate and undertake tasks of writing XQL logic in the XSIAM platform to improve operational workflows.
  • Create and tune customer facing playbooks for SOAR functionality.

What You'll Bring

  • Core requirements every candidate must possess:
  • 1+ years experience working hands-on in Information Security SIEM administration, parser development, cybersecurity content development, creating queries, alerting, and log analysis (or similar analysis role).
  • 1+ years experience in scripting/process automation. 
  • 1+ years experience operating and supporting a large enterprise environment.
  • Experience with security configuration of operating systems, network devices, etc. 
  • Demonstrated experience with at least one programming/scripting language.
  • Demonstrated experience in understanding networking technologies and protocols.
  • Demonstrated systems administration experience with Windows and Linux/UNIX-based operating systems.
  • Participated in an on-call schedule responsible for responding to high-priority issues.
  • Must have a passion for technology and stay current with emerging security trends.
  • Excellent verbal & written communication and presentation skills. 

Bonus Points

  • Experience with Palo Alto XSIAM (or next-gen SIEM).
  • Experience with EDR technologies.
  • Familiarity with standard logs from different systems: Windows/Linux/Cloud, etc. 
  • Advanced scripting – Python, Go, Javascript.

Targeted base salary range: $95,400 - $118,000. This role is eligible for participation in the company's bonus program. This role is also eligible for a grant of stock options, subject to the approval of the company's board of directors.


**this position will be supporting a 5am to 3pm MT shift, Sunday through Wednesday.


Benefit Highlights:

- 100% Paid Premiums:  Red Canary offers a 100% paid plan option for medical, dental and vision for you and your dependents. No waiting period.

- Health & Wellness - Access to mental health services, Employee Assistance Program and additional programs to incentivize healthy habits.

- Fertility Benefits: All new hires are eligible for benefits as of their first day.

- Flexible Time Off: Take the time you need to recharge including vacation, sick, bereavement, jury duty, and holidays. 

- Paid Parental Leave- Full base pay to bond/care for your new child.

- Pre-Tax Plans - Red Canary offers a variety of plans to fit you and your dependent specific needs including FSA, HRA and HSA, with employer funding to offset out of pocket health care expenses. 

- Flexible Work Environment- With 60% remote workforce, Canaries can work virtually from almost anywhere in the US.


The application deadline is January 10th, 2025.


Why Red Canary?

Red Canary is where people embody our mission to improve security outcomes for all. People work hard to maintain a culture that encourages authenticity in order to do your best work. Our people are driven and committed to finding the best security outcomes, delivering real and actionable answers, and being transparent along the way. 


At Red Canary, we offer a very rich benefits program to our full-time team members so they can focus on their families and improving our customers’ security. For a full list of benefits, please review our Benefits Summary:

https://resource.redcanary.com/rs/003-YRU-314/images/RedCanary_2025BenefitsSummary.pdf?version=0


Individuals seeking employment at Red Canary are considered without regard to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, gender identity, or sexual orientation.

Top Skills

Go
JavaScript
Python

What the Team is Saying

Kenzi
Susannah
Josh
Dave
Diane
Joe
Brianne
Robbie
The Company
HQ: Denver, CO
420 Employees
Remote Workplace
Year Founded: 2014

What We Do

Red Canary is the leading security ally enabling every organization to make its greatest impact without fear of cyber-attack. The company provides outcome-focused solutions for security operations teams, who rely on Red Canary to analyze and respond to endpoint telemetry, manage alerts across the network, and provide cloud environment runtime threat detection. With Red Canary, security teams can make a measurable improvement to security operations within minutes.

Why Work With Us

Red Canary is relentless in our mission to improve information security—not just for our customers, but for the entire community. And it all starts with our people.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

Red Canary Offices

Remote Workspace

Employees work remotely.

Typical time on-site: None
HQDenver, CO
Our state-of-the-art HQ is located in the brand new McGregor Square centered in Denver's historic LoDo. From inception we have been hybrid workforce.

Similar Jobs

Red Canary Logo Red Canary

Senior Manager, Detection Engineering

Cloud • Security • Software • Cybersecurity
Easy Apply
Remote
USA
420 Employees
135K-158K Annually

Red Canary Logo Red Canary

Senior Sales Engineer - North Central

Cloud • Security • Software • Cybersecurity
Easy Apply
Remote
Chicago, IL, USA
420 Employees
127K-208K Annually

Red Canary Logo Red Canary

Senior Detection Engineer (1st shift)

Cloud • Security • Software • Cybersecurity
Easy Apply
Remote
USA
420 Employees
115K-135K Annually

Red Canary Logo Red Canary

Senior Detection Engineer (2nd shift)

Cloud • Security • Software • Cybersecurity
Easy Apply
Remote
USA
420 Employees
115K-127K Annually

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account