Be unstoppable with us!
T-Mobile is synonymous with innovation-and you could be part of the team that
disrupted an entire industry! We reinvented customer service, brought real
5G to the nation, and now we're shaping the future of technology in
wireless and beyond. Our work is as exciting as it is rewarding, so consider
the career opportunity below as your invitation to grow with us, make big
things happen with us, above all, #BEYOU with us. Together, we won't stop!
Job Description
The Detection Engineering Sr. Engineer is responsible for continually
improving T-Mobile's detection capabilities. They will work with all teams
within security operations to ensure that T-Mobile is protecting its customers
and employees. They will work with multiple technologies to build detections
and correlations including SIEM, EDR, and Network Monitoring. The best
candidate for the role should have a strong comprehension of incident
response, work well with other people and have strong verbal and written
communication skills. This position correlates security related data across
the enterprise, performs Security Incident Response Handling & Incident
containment/recovery and also assists application owners to understand and
implement the security aspects of their applications.
Job Responsibilities
Build new detection capabilities based on research of new attack techniques
Maintain, tune, and sunset existing detection capabilities
Work with CSOC, CIRT, CTI, and other teams to improve process flows
Work with system owners, SIEM team, and CSOC to onboard new data sources
Investigate incidents for Cyber Incident Response Team (CIRT)
Develop content to improve detective capabilities in Security Information and
Event Management (SIEM) tool
Analyze disparate data sources for security incidents
Respond to network security incidents promptly to mitigate damage or restore
service
A champion for process, recommending tool, software development, or
infrastructure changes to improve or enhance security
Lead small to medium sized projects as advised
Develop and deliver metrics as requested
Participate in Cyber Incident Response Team (CIRT) rotation that may
involve non-traditional working hours
Education
Bachelor's Degree Computer Science or Information Technology or equivalent
experience
Work Experience
4-7 years Experience in info security technology or related field ()
Experience with incident handling for Security breaches. ()
Expert in security subject areas ()
2-4 years Technical Project Management ()
Experience with high level design architecture, security technologies,
Networking, web services and SOA. Understanding of encryption,
obfuscation, tokenization technologies ()
Desired
1+ years of detection engineering experience
5+ years of cyber security operations experience
SME knowledge of a SIEM (Splunk, Azure Sentinel, QRadar, etc)
In-depth knowledge of security standard processes
Strong analytic and problem-solving skills
Drive to identify known and unknown threats and attacks
Programming languages such as Python
Knowledge, Skills and Abilities:
Medium to advance knowledge of Scripting tools (Python/Perl/Shell/HTML/PHP)
Knowledge of federal & compliance regulations e.g. SOX, PCI & CPNI ()
Familiarity with load balancers (ex - A10, F5), firewalls (ex -
CheckPoint), Venafi, MDM (ex - Mobile Iron), Cloud (ex - AWS,
Azure), Malware Protection (ex -FireEye), Advanced Persistent
Threats (ex - Damballa), Privileged Accounts (ex - CyberArk), SIEM
(ex - ArcSight), Log & Event (ex - Splunk), Intrusion IDS/IPS
(ex - Symantec) , Cloud Platform (ex - PCF, Docker), Scanning
(ex - Qualys), Ap
Strong understanding of T-Mobile's network elements and how they work
together (EIT, Engineering & 3rd Party).
Strong presentation skills to large and small audiences.
In-depth knowledge of security standard processes in large-scale environments
Strong problem solving / fixing kills
Self-motivated and able to work under timelines.
Always act with tact and integrity, and work with a variety of individuals
in a positive and productive manner
Strong verbal and communication skills with diverse multi-functional groups
& the ability to present effectively to small & large groups
Knowledge of information security policies and regulatory controls (per team
function)
Demonstrable knowledge of current technological trends and developments in the
area of info security
Ability... For full info follow application link.
EOE Statement
We Take Equal Opportunity Seriously - By Choice