Defensive Security Analyst
Palantir · Washington, D.C.
Skills in this posting
The posting
A World-Changing Company
Palantir builds the world’s leading software for data-driven decisions and operations. By bringing the right data to the people who need it, our platforms empower our partners to develop lifesaving drugs, forecast supply chain disruptions, locate missing children, and more.
The Role
As a Defensive Security Analyst, you are responsible for the security of Palantir’s people and infrastructure around the globe. Your technical expertise is second only to your integrity and real passion for security and technology in general. Our ideal candidate works well on a team, is highly motivated, and enjoys solving problems and taking on new challenges.
In this role, you'll independently manage SOC systems that are essential to our security posture, ensuring they are properly engineered, maintained, and monitored.
Core Responsibilities
Build, run, and own infrastructure and automation to detect, contain, and eradicate security threats
Develop alerting and detection strategies to identify malicious or anomalous behavior
Develop comprehensive and accurate reports and presentations for both technical and executive audiences
Develop new and novel defensive techniques to identify or counteract changes in adversary techniques and tactics
Dissect network, host, memory, and other artifacts originating from multiple operating systems and applications
Perform enterprise-wide operations to uncover sophisticated and undetected threats
Partner closely with other members of the Information Security team to lead changes in the company's network defense posture
Provide expertise in a supporting capacity for incident response activities and digital forensics state preservation, including the capture and preservation of system logs, volatile memory captures, and hard drive (physical or virtual) image captures
Conduct host forensics, network, forensics, log analysis, and malware triage in support of hunt operations
Interface with client contact(s) and staff in a constructive and professional manner
Utilize common forensic and incident response tools
What We Value
Knowledge of operating and maintaining a SIEM
Knowledge of cloud architectures, particularly AWS
Experience in penetration testing
Ability to quickly learn new technologies and have an ongoing desire to stay current with the latest technologies
Ability to train others on the use of forensic and incident response techniques and tools
What We Require
TS/SCI Clearance
Established experience in operating in SOC environment, either through relevant experience or qualifications
Experience with programming or scripting languages such as PowerShell, Python, and Bash
Willingness and ability to commute to our Georgetown office within one hour when on-call
The PivotHop read
- What a security engineer actually earnsmedian, seniority, by country
- Careers a security engineer can move intoevery measured route out
- Penetration Tester → Security Engineer46% readiness
- All open security engineer rolesthe full board
Where these skills also reach
- 31 open penetration tester roles69% readiness from security engineer
- 111 open network engineer roles69% readiness from security engineer
- 534 open systems administrator roles48% readiness from security engineer
- 600 open it support specialist roles40% readiness from security engineer
More security engineer roles
Information Security Engineer at Keyfactor, Inc.USA · RemoteTodayApply
Senior Security Engineer at KarbonUSA · RemoteTodayApply
Senior Vulnerability & Container Security Engineer (m/w/d) at virtual7 GmbHHomeoffice · RemoteTodayApply- Security Engineer (SOC) (m/w/d) at APT-ONE GmbHBerlin · RemoteTodayApply
Staff Corporate Security Engineer at EntrataLehi, Utah$170k–$278kTodayApply
Backfilled listing, refreshed with the nightly scrape; the employer has not claimed it yet. Are you the employer? Claim this listing and it can be featured to the candidates whose skills already reach it, first month free.