THREAT RESEARCH – AWS & AZURE
WithSecure™ protects businesses all over the world from modern threats. We do this through a Co-security approach born from first-hand knowledge that no one can solve every cyber security problem alone. Every single day, our diverse, growing team fights against online extortion, threats to national infrastructure, the unlawful spread of sensitive information, and everything in-between. The best part about working for WithSecure is our people! We are a community of dedicated and passionate professionals that take workplace happiness seriously. If you’re looking for something that’s more than just a job – we’d love to hear from you.
WithSecure is looking for a public cloud technology SME to serve as a researcher dedicated to our cloud detection
technology. The role involves the journey from drafting abuse primitives and simulations, to evaluating the
telemetry and management plane data, all the way to producing detection logic suitable to reliably and cost-
effectively detect threats relevant to our partners and customers.
Key Responsibilities
- Maintain a documented understanding of our overall detection use cases and threat model
- Contribute intelligence to our proprietary detection engine
- Lead the effort in continuous improvement of our cloud use cases and threat model
- Participate in the company agile operating model in informing scoping and planning for the firm roadmap
What are we looking for?
- Expert in cloud workload protection and identity platforms
- Strong understanding of security monitoring operations and technology (SOC, SIEM, Inference Engines, etc..)
- Ability an inclination to contribute code to our detection stack (Strongly typed multi-purpose languages e.g. Java,
C++) - Strong English written and verbal skills. Inclination to produce quality documentation
- Familiarity with the threat intelligence lifecycle is a plus
WHAT WE CAN OFFER YOU
Reporting directly to the Head of Threat Detection, you will be joining an active team with an expanding remit, so
you will be able to help shape the future direction of the team as well as to grow with it and benefit from the
opportunities that presents. As a team we collaborate with almost every part of the wider WithSecure business, so
there is an opportunity to meet and learn from a wide range of experienced security professionals.
One of the key differentiators at WithSecure for Threat Detection is our focus on machine-assisted detection and
triage. We firmly believe in using the right tool for the job and have a highly multidisciplinary approach. You will
work closely with world-class endpoint security specialists, artificial intelligence experts and engineers to tackle the
specifics of detection scenarios.