Tech Stack
Tag name is followed by "@" symbol and proficiency level value.
About proficiency levels:
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
AI @ 3
Communication @ 6
LLM @ 3
Linux @ 3
Python @ 5
SQL @ 5
Security @ 6
macOS @ 3
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
Details
The Staff Risk and Investigations team within Bloomberg’s Chief Information Security Office is responsible for implementing an Insider Threat program across Bloomberg, including designing and building dynamic models focused on detecting anomalous user behavior and other high-risk events.
The Detection Engineer will enhance the Insider Threat program by working closely with security, development, and investigative teams to solve complex risk and security challenges.
Responsibilities
- Research, develop, document, and tune novel detections that uncover anomalies related to insider risk.
- Leverage technology, custom analytics, and automation to create scalable detection pipelines and support investigative workflows.
- Design and mature detection strategy, including continuously evaluating changes in actors, tactics, techniques, and targets to enhance threat scenarios and use cases.
- Help ensure the team maintains pace with a changing insider threat landscape.
- Develop and maintain strong working relationships and cross-functional collaboration with Information Security, Technology, Physical Security, Incident Management, Legal, HR, and other stakeholders.
Requirements
- 5+ years of experience working in a detection, incident response, or insider-risk role; mid-level and senior candidates are sought.
- Experience with a broad range of security tools and technologies, including endpoint detection and network technologies, as well as SOAR and SIEM platforms.
- Initiative and the ability to thrive in a dynamic, fast-paced, and collaborative environment with minimal supervision.
- Demonstrated success in managing projects and working closely with business stakeholders.
- Experience working with and handling extremely sensitive materials and information.
- Awareness of the latest cybersecurity trends and developments.
- Proficiency in Python and SQL.
- Strong verbal and written communication, presentation, and stakeholder management skills.
Preferred Qualifications
- Exposure to or knowledge of employment and/or privacy laws and regulations.
- Experience with AI and LLM technologies to help enrich and automate security operational processes.
- Computer forensics experience, including analyzing Linux, Windows, and macOS systems.
- Comfort presenting to executive leaders in technology roles and explaining security risks to non-technical audiences.
Benefits
Benefits may include merit increases, incentive compensation for exempt roles, paid holidays, paid time off, medical, dental, vision, short- and long-term disability benefits, 401(k) matching, life insurance, and wellness programs.
More jobs at Bloomberg
Senior Data Management Professional - Data Engineering - Private Funds
Bloomberg · New York City, United States
USD 110,000-190,000 per year
Strategic Operations Manager - Customer Insights & Analytics
Bloomberg · New York City, United States
USD 180,000-250,000 per year
Technical Writer - API Documentation
Bloomberg · New York City, United States
USD 130,000-160,000 per year
Senior Software Engineer - Integration Runtime
Bloomberg · New York City, United States
USD 160,000-240,000 per year
Senior Infrastructure Automation Engineer - Server & Storage
Bloomberg · New York City, United States
USD 130,000-225,000 per year
Similar jobs
Member of Technical Staff (Offensive Security Engineer)
Perplexity AI · Serbia, New York City, United States, United States, San Francisco, United States, London, United Kingdom
USD 220,000-405,000 per year
Technical Cyber Threat Investigator
Anthropic · San Francisco, United States, Washington, United States
USD 230,000-290,000 per year
Technical CBRN-E Threat Investigator
Anthropic · Washington, United States, San Francisco, United States
USD 230,000-290,000 per year
Threat Intelligence Engineer
Anthropic · San Francisco, United States, Washington, United States
USD 320,000-405,000 per year
Senior Threat Intelligence Engineer
GitLab · India, United States, Canada
USD 140,000-200,000 per year
Threat Intel Manager, Model Exploitation & Fraud
Anthropic · San Francisco, United States
USD 375,000-455,000 per year
Senior Manager, Datacenter Software - Firmware Release
Nvidia · Santa Clara, United States
USD 272,000-431,200 per year
Designated Technical Support Engineer
Glean · San Francisco, United States
USD 120,000-190,000 per year