Logo
Fiserv

Cyber Threat Detection Engineer

Fiserv, Berkeley Heights, New Jersey, us, 07922

Save Job

Calling all innovators - find your future at Fiserv.

We're Fiserv, a global leader in Fintech and payments, and we move money and information in a way that moves the world. We connect financial institutions, corporations, merchants and consumers to one another millions of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app, or withdraw money from the bank, we're involved. If you want to make an impact on a global scale, come make a difference at Fiserv.

Job Title

Cyber Threat Detection Engineer

What does a successful Threat Detection Engineer do at Fiserv?

You will work towards ensuring our Cybersecurity Incident Response team can quickly respond to alerts associated with credible threats to the Fiserv environment by writing correlated detection rules for complex cybersecurity use cases and have a strong understanding in adversarial techniques, incorporation of intelligence data, and expert dashboard and report creation using Business Intelligence (custom or commercial) tools and Agile methodologies. You will be reporting to the Vice President Threat Detection and Response in this position.

What you will do:

Research and develop adversarial techniques to develop behavioral detections with high fidelity and assist in testing developed detection content

Manage and maintain the entire lifecycle of SIEM management (data selection, ingest, parsing, detection development) and SOAR (alert configuration/management, playbook/runbook development, automation) management

Create standard metrics across different cybersecurity teams, as well as intelligence and operational dashboards using data science and BI tools

Manage workflows using Agile methodology to properly scope and track progress on development initiatives

Collaborate with Fiserv Threat Intelligence, Threat Hunters, Incident Responders, and Red Team members to evaluate and close gaps in detection coverage

Stay current with threat intelligence, vulnerabilities, attacks, and countermeasures, dedicating time to threat research and enhancing our defensive posture

What you will need to have:

6+ years of Information Technology experience

2 years of SIEM/SOAR, and cybersecurity operations and development experience with core cybersecurity technologies (EDR/AV, IDS/NDR, UEBA, DLP, WAF, Proxy) and cloud technologies (AWS, Azure, GCP)

2+ years development experience for detection development using standard SIEM syntax (Splunk, SIGMA/YARA-L, ELK, SQL), MITRE ATT&CK framework, development coverage, and coverage metrics

1+ years scripting/development experience with Python, SQL, PowerShell, bash, Ruby, GO, Ruby, R, Rust, or similar tools

1+ year experience in areas of malware analysis/reversing, forensics, Incident Response, or Cyber Intelligence

1+ years' experience in the creation and management of metrics and analytics using APIs, SQL, and Business Intelligence tools

1+ years' experience in Agile methodologies and development tools like Azure DevOps, Jira, or Asana

Bachelor's degree in data science, Computer Science, Engineering, Mathematics or an equivalent combination of education, work, and/or military experience

What would be great to have:

Certifications in Cloud technologies like AWS, Azure or GCP

Other Industry certifications such as SANS GCIH, GSOC, GSOM, GCIA, GPEN, GMON, GCDA, GFACT

Previous Fiserv experience in a similar role

#LI-RM1

Salary Range

$128,000.00 - $216,000.00

These pay ranges apply to employees in New Jersey, New York and California. Pay ranges for employees in other states may differ.

It is unlawful to discriminate against a prospective employee due to the individual's status as a veteran.

For incentive eligible associates, the successful candidate is eligible for an annual incentive opportunity which may be delivered as a mix of cash bonus and equity awards in the Company's sole discretion.

Thank you for considering employment with Fiserv. Please:

Apply using your legal name

Complete the step-by-step profile and attach your resume (either is acceptable, both are preferable).

Our commitment to Equal Opportunity:

Fiserv is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, gender, gender identity, sexual orientation, age, disability, protected veteran status, or any other category protected by law.

If you have a disability and require a reasonable accommodation in completing a job application or otherwise participating in the overall hiring process, please contact AskHR.US@fiserv.com . Please note our AskHR representatives do not have visibility to your application status. Current associates who require a workplace accommodation should refer to Fiserv's Disability Accommodation Policy for additional information.

Note to agencies:

Fiserv does not accept resume submissions from agencies outside of existing agreements. Please do not send resumes to Fiserv associates. Fiserv is not responsible for any fees associated with unsolicited resume submissions.

Warning about fake job posts:

Please be aware of fraudulent job postings that are not affiliated with Fiserv. Fraudulent job postings may be used by cyber criminals to target your personally identifiable information and/or to steal money or financial information. Any communications from a Fiserv representative will come from a legitimate Fiserv email address.