Senior Threat Intelligence

3 months ago


Prague, Czech Republic Rapid7 Full time

About the Team


Rapid7’s Threat Intelligence & Detection Engineering (TIDE) team is built from the ground up to provide our customers with high-fidelity threat detections and alerting that limit threat actor dwell time and impact across our customers' ecosystems. Our TIDE team uses purposeful research, threat intelligence curation, observed malicious behavior, and informed collaboration to ensure that our detections evolve along with the ever-changing threat and technological landscape. 


 

About the Role


As a Senior Detection Operations engineer, you will serve as the primary technical escalation point for the Detection Operations Team.
The Detection Operations team is responsible for the upkeep and evaluation of the detection library for the MDR service. Our team’s mission is to empower excellence in our customer’s security posture by  continuously refining Rapid7’s detection library, enhancing their effectiveness to swiftly identify incidents while reducing analyst strain.
Our vision is to lead with an unparalleled, state-of-the-art, and globally recognized detection library to set new standards in cybersecurity. You will collaborate closely with the SOC and Data Science teams to identify patterns of activity to improve detections, assist with the creation of new data models, and constantly update the collective understanding of threats. 

In addition, you will learn from IR engagements, SOC incidents, and a variety of other sources and apply that knowledge to inform new detections for use across our customer base, while assisting more junior teammates. 

In this role, you will:

  • Utilize Rapid7’s world-class software and threat intelligence to evaluate and improve the current InsightIDR detection library, including coordinating third-party integration projects.

  • Collaborate closely with SOC Analysts, the Data Science team, Incident Response (IR) Consultants, Customer Advisors, and security researchers.

  • Conduct research on attacker behaviors and techniques using information gathered from IR engagements, other incidents and malicious activity discovered through various telemetry sources. 

  • Conduct detection testing in a controlled environment.

  • Collaborate with Rapid7’s Emergent Threat Response (ETR) team to ensure Rapid7 has detection coverage during large scale exploitation of vulnerabilities from recently disclosed zero days or CVEs.

  • Utilize expert level skills in multiple security domains to build rules that detect or prevent evil across network, endpoint and cloud services.

The skills you’ll bring include:

  • 5+ years as a SOC Analyst/Incident Responder/Offensive security practice experience OR 4+ years of cyber threat intelligence/research/detection engineering experience.

  • Experience using industry Threat Intelligence Platforms.

  • Experience writing detections using Yara/Suricata/Sigma or similar.

  • Experience with hands-on analysis of forensic artifacts and/or malware samples

  • Conduct research using various OSINT methods.

  • A solid understanding of how threat actors utilize tactics such as lateral movement, privilege escalation, defense evasion, persistence, command and control, and exfiltration.

  • Effective collaboration between different teams.

  • Innovative problem solving mindset.

  • Strong ability to perform research (search for, organize, and evaluate information).

  • Strong written and verbal skills.

We know that the best ideas and solutions come from multi-dimensional teams. That’s because these teams reflect a variety of backgrounds and professional experiences. If you are excited about this role and feel your experience can make an impact, please don’t be shy - apply today.

About Rapid7


At Rapid7, we are on a mission to create a secure digital world for our customers, our industry, and our communities. We do this by embracing tenacity, passion, and collaboration to challenge what’s possible and drive extraordinary impact.
 

Here, we’re building a dynamic workplace where everyone can have the career experience of a lifetime. We challenge ourselves to grow to our full potential. We learn from our missteps and celebrate our victories. We come to work every day to push boundaries in cybersecurity and keep our 10,000 global customers ahead of whatever’s next.
 

Join us and bring your unique experiences and perspectives to tackle some of the world’s biggest security challenges.


  • Senior DevOps Engineer

    2 months ago


    Prague, Czech Republic Rapid7 Full time

    Job Overview:Rapid7 is looking for a Senior DevOps engineer who will be responsible for creating a market shifting solution to detect, analyze and remediate all kinds of threats and malicious information in the clear, dark & deep web.About the TeamOur team is a group of highly skilled and experienced professionals with diverse backgrounds and expertise in...


  • Prague, Czech Republic Rapid7 Full time

    Senior Backend Engineer - Python Rapid7 is looking for a Senior Backend Developer who will be responsible for creating a market shifting solution to detect, analyze and remediate all kinds of threats and malicious information in the clear, dark & deep web. About the TeamOur team is a group of highly skilled and experienced professionals with diverse...


  • Prague, Czech Republic Rapid7 Full time

    Senior Backend Engineer - PythonRapid7 is looking for a Senior Backend Developer who will be responsible for creating a market shifting solution to detect, analyze and remediate all kinds of threats and malicious information in the clear, dark & deep web.About the TeamOur team is a group of highly skilled and experienced professionals with diverse...


  • Prague, Czech Republic Rapid7 Full time

    Senior Backend Engineer - PythonRapid7 is looking for a Senior Backend Developer who will be responsible for creating a market shifting solution to detect, analyze and remediate all kinds of threats and malicious information in the clear, dark & deep web. About the TeamOur team is a group of highly skilled and experienced professionals with diverse...


  • Prague, Czech Republic Rapid7 Full time

    Job Overview:Rapid7 is looking for a Senior Backend engineer - Python who will be responsible for creating a market shifting solution to detect, analyze and remediate all kinds of threats and malicious information in the clear, dark & deep web.About the TeamOur team is a group of highly skilled and experienced professionals with diverse backgrounds and...


  • Prague, Czech Republic Rapid7 Full time

    As a Software Engineer II, you will take ownership of the development of new features for your team, working with cutting edge technologies and owning this process end to end. You will bring a customer centric approach with a curiosity and passion for continuous learning. You will be provided with coaching and support to help you further develop your skills...

  • Tech Lead

    1 month ago


    Prague, Czech Republic Rapid7 Full time

    Lead Software EngineerRapid7 is looking for a Lead Backend Developer who will be responsible for creating a market shifting solution to detect, analyze and remediate all kinds of threats and malicious information in the clear, dark & deep web. About the TeamOur team is a group of highly skilled and experienced professionals with diverse backgrounds and...


  • Prague, Hlavní město Praha, Czech Republic Rapid7 Full time

    We're in search of a skilled **Senior Site Reliability Engineer (SRE)** who is passionate about distributed systems, cloud computing, and large-scale system architecture. The Senior SRE will guarantee the ultra-high reliability and uptime needed for our InsightIDR services to meet our customers' demands.About the TeamOur InsightIDR product plays a crucial...


  • Prague, Hlavní město Praha, Czech Republic Teradata Full time

    Senior Security Analyst We are seeking a highly skilled Senior Security Analyst to join our Security Operations team. As a key member of our team, you will play a critical role in ensuring the security and integrity of our company's data, infrastructure, and resources. Key Responsibilities: Support the effective and efficient operations of the Security...


  • Prague, Hlavní město Praha, Czech Republic Rapid7 Full time

    Rapid7's vulnerability and exploit research team does industry-leading attack research that prioritizes and uncovers risk for organizations worldwide. We're looking for an experienced vulnerability researcher to contribute to overall research team goals, helping defenders get ahead of the curve on emergent threats and keeping Rapid7 top of mind for industry...


  • Prague, Hlavní město Praha, Czech Republic DHL Information Services Full time

    About the RoleWe are seeking a highly skilled Senior Cyber Security Analyst to join our team at DHL Information Services. As a key member of our Cyber Defense Center 24/7 Monitoring team, you will play a critical role in analyzing events in our SIEM solution and responding to alerts.Key ResponsibilitiesAnalyze security events and incidents in our SIEM...


  • Prague, Czech Republic Teradata Full time

    What You’ll Do What the role is about: We are looking for a senior analyst to join our security operations team. The analyst will support the effective and efficient operations of the Security Operations Center, including next-gen artificial intelligence (AI) and machine learning (ML) cyber security technologies, threat report generation, incident...


  • Prague, Czech Republic Rapid7 Full time

    Rapid7's vulnerability and exploit research team does industry-leading attack research that prioritizes and uncovers risk for organizations worldwide. We’re looking for an experienced vulnerability researcher to contribute to overall research team goals, helping defenders get ahead of the curve on emergent threats and keeping Rapid7 top of mind for...

  • MDRP Analyst

    4 weeks ago


    Prague, Hlavní město Praha, Czech Republic Rapid7 Full time

    About the TeamAs a MDRP Threat Intelligence Analyst at Rapid7, you will be responsible for reviewing alert data to identify threat activity in customer environments. You will be empowered to steer investigations, including everything from evidence acquisition and analysis to figuring out how the intrusion began to identify any malicious or unexpected...


  • Prague, Czech Republic Rapid7 Full time

    We are looking for a talented Senior Site Reliability Engineer (SRE) with a deep interest in distributed systems, cloud computing and the architecture of large-scale systems. The Senior SRE  will ensure our InsightIDR services have the ultra-high reliability and uptime necessary to meet our customers’ needs. About the Team​Our InsightIDR product helps...

  • MDRP Analyst

    4 weeks ago


    Prague, Czech Republic Rapid7 Full time

    About the TeamAs a MDRP Threat Intelligence Analyst at Rapid7, you will be responsible for reviewing alert data to identify threat activity in customer environments. You will be empowered to steer investigations, including everything from evidence acquisition and analysis to figuring out how the intrusion began to identify any malicious or unexpected...


  • Prague, Hlavní město Praha, Czech Republic Rapid7 Full time

    About the TeamRapid7's Threat Intelligence & Detection Engineering (TIDE) team is built from the ground up to provide our customers with high-fidelity threat detections and alerting that limit threat actor dwell time and impact across our customers' ecosystems. Our TIDE team uses purposeful research, threat intelligence curation, observed malicious behavior,...


  • Prague, Czech Republic Rapid7 Full time

    About the TeamRapid7’s Threat Intelligence & Detection Engineering (TIDE) team is built from the ground up to provide our customers with high-fidelity threat detections and alerting that limit threat actor dwell time and impact across our customers' ecosystems. Our TIDE team uses purposeful research, threat intelligence curation, observed malicious...


  • Prague, Hlavní město Praha, Czech Republic IQVIA Full time

    Senior Talent Acquisition Specialist (East Europe)As the Senior Talent Acquisition Specialist , you will play a key role in supporting IQVIA Commercial's hiring goals, managing the recruitment process, and building strong relationships with senior stakeholders and the HR team. You'll also help shape our Employer Branding strategy to position IQVIA as an...


  • Prague, Czech Republic Rapid7 Full time

     Senior Software Engineer - InsightIDRRapid7 are looking for a Senior Software Engineer to join our expanding Detection and Response (D&R) practice in Prague. You will be joining an experienced team of engineers working with our SIEM and XDR solution - InsightIDR.InsightIDR is an AWS cloud-based, microservice-designed architecture built with the mandate to...