WatchGuard Technologies→
Security Engineer at WatchGuard Technologies in Seattle, WA
Entry LevelHybridFull-timeSeattle, WA$90k–$105k/yr
Skills
stellar cyber xdrkibanasqlautomated investigation enginejupyter notebooksdata analysis
Job Description
Summary: WatchGuard Technologies is focused on enhancing security operations through innovative technology. As a Security Engineer on the DSSE team, you will help shape and evolve detection and response capabilities, working with Stellar Cyber XDR to improve alert quality and automate investigations.
Responsibilities:
- Complete onboarding and gain familiarity with how we use Stellar
- Shadow SOC analysts to understand current workflows and pain points
- Begin contributing to small improvements in queries, dashboards, or documentation
- Own key components of Stellar: queries, automations, dashboards, and documentation
- Handle SOC escalations, including tuning alert templates and making exclusions
- Use tools like Kibana and SQL to investigate logs and detections
- Collaborate with the team to identify and scope new detection opportunities
- Help in the development of new detection sets
- Help bridge the gap between SOC runbooks and our Automated Investigation Engine (AIE)
- Contribute to detection and data documentation
- Optionally, write Jupyter notebook modules to support automated analysis
Required Qualifications:
- Hands-on experience working with Stellar Cyber XDR
- Understanding of how to navigate Stellar Cyber XDR's queries, dashboards, and automations
- Experience working with data
- Ability to write code
- Experience building tools that improve security operations
- Comfortable navigating ambiguity
- Passionate about learning new things in the cybersecurity and AI domains
- Ability to make a real impact on threat detection and response
- Ability to own and enhance the use of Stellar Cyber XDR
- Experience collaborating with SOC teams
- Ability to improve alert quality
- Experience automating investigations
- Ability to uncover new detection opportunities
- Experience using tools like Kibana and SQL to investigate logs and detections
- Ability to contribute to detection and data documentation
Preferred Qualifications:
- Experience writing Jupyter notebook modules to support automated analysis
Required Skills: Stellar Cyber XDR
Important Skills: Kibana, SQL, Automated Investigation Engine
Nice-to-Have Skills: Jupyter notebooks, Data analysis
Benefits: Telecommuting within commuting distance of the Seattle office is permitted., Comprehensive benefits plan including medical, dental, vision, disability, and life insurance, Healthcare FSA, FSA with employer contribution, 10 paid holidays, 10 days of paid annual leave, 9 days of paid sick time, Paid parental leave, 401(k) with employer match, Education assistance program, Dependent Care FSA match, Adoption assistance, Fertility care support, Backup care for family and pets, A growing network of employee resource groups, Employee referral program, Employee Assistance Program
Benefits
Telecommuting within commuting distance of the Seattle office is permitted.
Comprehensive benefits plan including medical, dental, vision, disability, and life insurance
Healthcare FSA
FSA with employer contribution
10 paid holidays
10 days of paid annual leave
9 days of paid sick time
Paid parental leave
401(k) with employer match
Education assistance program
Dependent Care FSA match
Adoption assistance
Fertility care support
Backup care for family and pets
A growing network of employee resource groups
Employee referral program
Employee Assistance Program