Sr Detection Automation Engineer
NORTHWESTERN MUTUAL LIFE INSURANCE - Milwaukee, WI
Apply NowJob Description
JOB REQUIREMENTS: What's the role? Are you passionate aboutcybersecurity and eager to lead a team in protecting an organizationfrom cyber threats? We are looking for a Senior Detection & AutomationEngineer to join our Enterprise Cybersecurity team. In this role, Youwill take charge of developing and maintaining security automationplaybooks and ensuring our detection systems are top-notch, managingsecurity tools and infrastructure, designing efficient automationprocesses, and leading blue team exercises. Primary Duties &Responsibilities Leadership: The Senior Detection & Automation Engineeris a leader within the Enterprise Cybersecurity with the expectation toguide and mentor more junior members. This includes overseeing the workperformed by junior engineers, mentoring their technical educationalactivities, freely sharing knowledge, and testing techniques. SecurityDetection Engineering: Prioritizes and builds detection rules for theSIEM platform to identify malicious activities based on knowledge of theinner workings of cyber-attacks. Develops, maintains, and ensures theproper documentation of detection logic, rules, and alerts. Enhances andimproves data quality from external sources in the SIEM by understandingthe current best state of detection engineering and integrationpractices. Blue Team: Accountable for assisting in the design andimplementation of blue team exercises including independently leadingcomponents of the exercise. Security Research: Accountable for regularlymonitoring the security community for, and researching, the latestassessment and exploit methodologies. This work is concluded by sharingthe information back to the team in the form of newly written toolsand/or attack techniques via informal internal training sessions.Reporting: Accountable for preparing and delivering the highest qualitysecurity information that comprehensively and clearly explains risk,demonstrates findings, and offers tactical and strategic recommendationsto both technical and non-technical internal clients. Communication:Effective and professional communication of a variety of topics,including technical and non-technical information, to a wide variety ofinternal and external customers including leadership from across theorganization. Ad Hoc Incidents: Accountable for working with thesecurity operations center, incident responders, and technologyinfrastructure, and development teams as necessary. Metrics: Accountablefor working with select team members to track, monitor, and reporttesting results in a meaningful way so that risk-based security metricsare delivered to the enterprise. Training: Attend training to staycurrent with technology and security trends. Incorporates learnings fromtraining to improve organizational technology and processes. Performother duties as assigned. Qualifications Educational Background:... Forfull info follow application link. EEO/AA Employer/Vets/Disability APPLICATION INSTRUCTIONS: Apply Online:ipc.us/t/F73B41571C5142F2 Qualified females, minorities, and specialdisabled veterans and other veterans are encouraged to apply.
Created: 2026-01-12