Threat Detection & Response Engineer

Maumee, OH, US, 43537

Dana Incorporated

Dana is a global leader in drivetrain and e-Propulsion systems.

View company page

Dana is a global leader in the supply of highly engineered driveline, sealing, and thermal-management technologies that improve the efficiency and performance of vehicles with both conventional and alternative-energy powertrains. Serving three primary markets – passenger vehicle, commercial truck, and off-highway equipment – Dana provides the world's original-equipment manufacturers and the aftermarket with local product and service support through a network of nearly 100 engineering, manufacturing, and distribution facilities.

Job Purpose

We are currently seeking a seasoned Senior Threat Detection & Response Engineer to join our cybersecurity operations team. This pivotal role offers a unique opportunity for an experienced professional passionate about Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) to lead and shape our detection and response capabilities.

Job Duties and Responsibilities

  • Lead the development and implementation of advanced detection logic, leveraging SIEM and EDR tools, to effectively identify and respond to evolving cyber threats.
  • Stay abreast of the latest security industry trends, emerging threats, and innovative mitigation techniques to continuously enhance our cybersecurity posture.
  • Drive regular threat hunting initiatives and actively participate in purple team exercises to refine and mature our detection capabilities.
  • Collaborate closely with key stakeholders to define, refine, and operationalize use cases within our SOAR platform, ensuring seamless orchestration and automation of security workflows.
  • Forge strategic partnerships with vendors to explore and integrate cutting-edge technologies that align with our cybersecurity objectives and enhance our detection and response capabilities.
  • Assist with the administration and optimization of our SIEM and SOAR systems, ensuring their effectiveness in detecting and responding to security incidents.
  • Participate in the review of threat intelligence reports to assess their relevance to the organization and propose suitable actions.
  • Contribute to the development and maintenance of comprehensive technical documentation and Standard Operating Procedures (SOPs) to ensure consistent and effective response procedures.
  • Mentor and coach junior team members, fostering a culture of knowledge sharing and professional development within the cybersecurity operations team

 

Qualifications:

•    Minimum 7 years experience in Information Security, with a strong focus on threat detection and incident response.
•    Bachelor’s degree in Information Technology, Computer Science, or a related field is preferred, although equivalent work experience and industry certifications will be considered.
•    Extensive experience in creating detection logic, SIEM rules, and custom detections within EDR tools, with proficiency in platforms such as CrowdStrike (EDR) and Elastic (SIEM) highly desirable.
•    Demonstrated expertise in automating security processes using SOAR tools, with hands-on experience in platforms like Cortex XSOAR considered a significant advantage.
•    Proficiency in scripting languages such as PowerShell and Python for integrating and customizing security tools and workflows.
•    Passion for continuous improvement and a collaborative mindset, with a drive to share knowledge and contribute to the growth of the team.
•    Excellent problem-solving skills and the ability to develop creative solutions to complex cybersecurity challenges.
•    Relevant security certifications such as Security+, CISSP, or GIAC certifications are a strong plus, reflecting a commitment to professional development and expertise in the field.
 


We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, national origin, religion, sexual orientation, gender identity, status as a veteran, and basis of disability or any other federal, state or local protected class.


Unsolicited Resumes from Third-Party Recruiters

 Please note that as per Dana policy, we do not accept unsolicited resumes from third-party recruiters unless such recruiters were engaged to provide candidates for a specified opening. Any employment agency, person or entity that submits an unsolicited resume does so with the understanding that Dana will have the right to hire that applicant at its discretion without any fee owed to the submitting employment agency, person or entity.​

Apply now Apply later
  • Share this job via
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Automation CISSP Computer Science CrowdStrike EDR GIAC Incident response PowerShell Python Scripting SIEM SOAR Threat detection Threat intelligence

Region: North America
Country: United States
Job stats:  9  1  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.