Detection Health and Performance team helps customers maintain effective detection as attacker behavior evolves, by investigating suspicious traffic and identifying missed attacks, reducing false positives, building and evaluating detection logic and improving customers' detection health during onboarding and throughout customer's life cycle. In this role, you'll combine data analysis, technical troubleshooting, and customer-focused communication to understand technical and detection gaps, and share helpful threat insights and recommendations. As part of the role you will work in collaboration with Technical Account Managers, Solutions Engineers, Operations, Research and Engineering teams, helping to maintaining strong security outcomes while protecting legitimate users.
Who you are:
- You have a Can-do attitude, collaborative and communicative.
- Able to communicate with teams and customers with higher/lower technical skills
- Analytical, curious and strength with critical thinking
- Attention to detail
- Perseverance and patience for complexity
- Proactive and self directed
- Ability to think on your feet and be adaptable to changes
- Fluent English.
- At least 2 years of experience: Technical support analyst / Security operations or Threat Analysis / Fraud and Risk analyst / business or data analyst role
(or) a B.A/B.S in domains related to cybersecurity or analysis.
Experience with the following tools: - SQL (Best: Snowflake), BigQuery, Datadog, Tableau, or similar data and visualization tools.
- Kibana (or similar experience with log analysis tools)
- Test: Write an SQL query based on provided data Jira (or similar experience with another CRM tool)
- Bonus: Python, pandas, notebooks, or Streamlit.
- Experience building dashboards or reusable investigation tools.
- Familiarity with Git, APIs, JSON, and basic scripting.
- Ability to use AI-assisted tools responsibly to accelerate analysis and automation
Knowledge: Web architecture: DNS / CDN / GLB, API. - HTTP protocol, including HTTP structure and headers
- Cookies (where are they stored, how and why are they used)
- Bots and threat landscape - What are bots, why do people or attackers create them, good bots vs bad bots.
- Basic JS understanding and familiarity. No need to code.
- Skills: Analytical mind and statistical analysis of big data through various tools (like Kibana and SQL).