Threat Detection Engineer 2

Leading cloud security company that stops attacks in real-time using runtime insights and open source Falco.
Security
Mid-Level Software Engineer
Hybrid
2+ years of experience
Cybersecurity · Enterprise SaaS

Description For Threat Detection Engineer 2

Sysdig, a rapidly growing cloud security company, is seeking a Threat Detection Engineer 2 to join their innovative team. The company specializes in stopping attacks in real-time using runtime insights and open source Falco, positioning itself at the forefront of cloud-native security solutions.

The role offers an exciting opportunity to work with cutting-edge security technologies and contribute to protecting cloud-native applications. As a Threat Detection Engineer, you'll be responsible for researching, developing, and maintaining threat detections, working closely with the Threat Research Team to identify and address security threats affecting customers.

The ideal candidate brings 2+ years of hands-on experience in security operations, EDR, or incident response, combined with strong technical skills in Linux, cloud environments, and programming languages like Python or Go. Knowledge of Kubernetes and container technologies is essential for success in this position.

Sysdig offers an attractive work environment with a truly international culture, having employees across 40+ countries. The company has been recognized as a "Best Place to Work" by various organizations and has been listed among Deloitte's 500 fastest-growing organizations for four consecutive years. They offer competitive compensation including equity, flexible work arrangements, and strong support for employee well-being.

The company values diversity and maintains an inclusive environment that welcomes people from all backgrounds. They encourage continuous learning and professional development, making it an ideal place for security professionals looking to grow their careers while making a significant impact in the cloud security space.

Last updated 9 days ago

Responsibilities For Threat Detection Engineer 2

  • Research, develop, and maintain threat detections to identify threats affecting customers
  • Participate in Threat Research Team activities
  • Conduct research on new detection use cases
  • Help automation efforts using scripting languages like Python
  • Develop reports and dashboards to measure detection efforts progress

Requirements For Threat Detection Engineer 2

Python
Go
Linux
Kubernetes
  • 2+ years of experience in security operations, EDR, security engineering, or incident response
  • Hands-on experience in Linux, including expertise with system calls and Linux internals
  • Experience creating threat detections for cloud environments (AWS, Azure, or GCP)
  • Knowledge of Kubernetes, container technologies, and container runtimes
  • Experience with SQL and programming languages (Python or Go)
  • Experience with Git for version control
  • Familiarity with analyzing logs for malicious behaviour
  • Comfortable working directly with customers

Benefits For Threat Detection Engineer 2

Equity
Mental Health Assistance
  • Great compensation package with equity opportunities
  • International culture with employees in more than 40 countries
  • Flexible work arrangement
  • Mental well-being support for employees and family
  • Company-wide wellness days
  • Development opportunities

Interested in this job?

Jobs Related To Sysdig Threat Detection Engineer 2

Technical Support Engineering - Identity and Security

Technical Support Engineer role at Microsoft in Seoul, focusing on identity and security solutions, requiring Korean language skills and offering hybrid work arrangement.

System Software Engineer – Security Tools and Infra

System Software Engineer position at NVIDIA focusing on security tools and infrastructure development for GPU systems, requiring 3+ years of experience in security tooling.

DevSecOps Engineer

DevSecOps Engineer role at Deliveroo focusing on secure application development, security automation, and driving DevSecOps practices across the company.

DevSecOps Engineer

DevSecOps Engineer role at Deliveroo focusing on secure application development, security automation, and driving DevSecOps practices across the company.

SMB Solutions Engineer, Pre-Sales

Remote SMB Solutions Engineer position at Darktrace, focusing on pre-sales technical support and cyber defense expertise.