InfoSec - Senior Manager, Threat Detection ID-3679

Elastic, the Search AI Company, enables everyone to find the answers they need in real time, using all their data, at scale — unleashing the potential of businesses and people. The Elastic Search AI Platform, used by more than 50% of the Fortune 500, brings together the precision of search and the intelligence of AI to enable everyone to accelerate the results that matter. By taking advantage of all structured and unstructured data — securing and protecting private information more effectively — Elastic’s complete, cloud-based solutions for search, security, and observability help organizations deliver on the promise of AI.

Elastic, the Search AI Company, enables everyone to find the answers they need in real time, using all their data, at scale — unleashing the potential of businesses and people. The Elastic Search AI Platform, used by more than 50% of the Fortune 500, brings together the precision of search and the intelligence of AI to enable everyone to accelerate the results that matter. By taking advantage of all structured and unstructured data — securing and protecting private information more effectively — Elastic’s complete, cloud-based solutions for search, security, and observability help organizations deliver on the promise of AI.

What is The Role:

As the Sr. Manager, Threat Detection at Elastic you are helping Elastic deliver safe and secure products and services to our customers, users, and fellow Elasticians. You’ll partner with teams company-wide to learn about Elastic’s threat landscape and adapt our monitoring as a result. You will be responsible for assessing and improving Elastic's threat defense coverage and processes for the entire organization, developing and tuning detections across a wide variety of sources that include multiple cloud providers, CI/CD environments, SaaS services, user workstations, and more. You’ll also help support incident response activities by providing expertise in log analysis during security events. You’ll have access to all the tools in the Elastic Stack and to the folks who build the Elastic Stack to provide feedback and suggestions to make the Elastic Stack better for everyone. If doing all of this with the Elastic Stack excites you, then we’d love to meet you!

What You Will Be Doing:

Other Jobs You May Be Interested In

Remote Data Entry, No Experience, $40/hr, Part-Time
Virtual Assistant, $45/hr, Remote, No Experience, Night Job
Entry-Level Remote Data Entry, $50/hr, Evening Job
Customer Support, No Degree, $40/hr, Remote, Weekend Job
Remote Phone Job, $42/hr, Part-Time, College Student Friendly
Virtual Assistant, $40/hr, Remote, No Degree, Night Job
Part-Time Data Entry, $45/hr, Remote, College Student Friendly
Remote Moderator, No Degree, $50/hr, Evening, Weekend Job
Remote Customer Support, $42/hr, Night Job, No Experience
Live Chat Support, $40/hr, Remote, Entry Level, Part-Time
Virtual Assistant, Remote, $42/hr, Weekend, No Experience
Remote Data Entry, $45/hr, No Degree, Night Shift
Part-Time Customer Support, $40/hr, Remote, College Student
Remote Live Chat, $50/hr, Part-Time, Evening/Night Job
Entry Level Phone Job, $42/hr, Remote, No Degree Required
Weekend Data Entry, $45/hr, Remote, No Experience
Remote Virtual Assistant, $40/hr, Evening, Part-Time Job
Remote Moderator, $42/hr, Part-Time, Weekend, No Degree
Data Entry, $45/hr, Remote, Night Shift, College Student Job
Phone Support, Remote, $50/hr, No Experience, Part-Time
Virtual Assistant, No Experience, $42/hr, Remote, Weekend
Remote Customer Support, $45/hr, Part-Time, College Student
Data Entry, Remote, $40/hr, Night Shift, No Degree
Evening Virtual Assistant, Remote, $45/hr, No Experience
Weekend Customer Support, $42/hr, Remote, College Student
Remote Data Entry, $50/hr, No Experience, Evening/Night Job
Remote Live Chat, $40/hr, Part-Time, No Degree Required
Virtual Assistant, $42/hr, Remote, Weekend, Entry Level
Remote Phone Support, $45/hr, Evening, No Experience Required
Data Entry, No Experience, $50/hr, Remote, College Student
Remote Moderator, $40/hr, Weekend, No Degree, Part-Time
Live Chat Support, Remote, $42/hr, Night Shift, College Student
Phone Job, $50/hr, Remote, No Degree, Part-Time, Weekend
Data Entry, $45/hr, Remote, Evening, No Experience Required
Virtual Assistant, No Experience, $42/hr, Remote, Part-Time
Remote Customer Support, $50/hr, Night Shift, No Degree
Remote Data Entry, $40/hr, College Student Friendly, Part-Time
Live Chat Support, $42/hr, Weekend, Remote, No Degree
Virtual Assistant, Remote, $45/hr, Evening, No Experience
Remote Phone Job, $50/hr, College Student, Night Shift
Remote Moderator, $42/hr, Weekend, No Experience Required
Data Entry, No Degree, $45/hr, Part-Time, Remote Job
Customer Support, $50/hr, Remote, Evening/Night Job, No Degree
Virtual Assistant, $42/hr, Remote, Weekend, No Degree
Remote Live Chat, $45/hr, College Student, No Experience
Remote Data Entry, $40/hr, Part-Time, No Degree Required
Phone Support, $50/hr, Weekend, Remote, No Experience
Virtual Assistant, $42/hr, Evening, Remote, No Degree
Remote Customer Support, $45/hr, No Experience, Part-Time
Data Entry, $50/hr, Night Job, No Degree, Remote
Remote Moderator, $40/hr, College Student Friendly, Part-Time
Virtual Assistant, Remote, $42/hr, Weekend, No Experience
Remote Phone Job, $45/hr, Part-Time, No Degree Required
Customer Support, $50/hr, Night Job, Remote, No Experience
Data Entry, Remote, $42/hr, Evening Job, No Degree
Live Chat Support, $45/hr, Weekend, Remote, College Student
Virtual Assistant, Remote, $50/hr, Part-Time, Night Shift
Data Entry, $40/hr, No Experience, Remote, Weekend Job
Remote Phone Job, $45/hr, No Degree, College Student Friendly
Customer Support, $42/hr, Remote, Evening, No Experience
Virtual Assistant, $50/hr, Weekend, No Degree, Remote
Remote Data Entry, $40/hr, Part-Time, College Student Job
Phone Support, Remote, $42/hr, Evening/Night Shift
Virtual Assistant, No Degree, $45/hr, Remote, Part-Time
Live Chat Support, $50/hr, Remote, No Experience Required
Remote Moderator, $42/hr, College Student, Weekend Job
Data Entry, $45/hr, Remote, Night Job, No Degree
Virtual Assistant, $50/hr, Remote, Part-Time, Evening Job
Remote Customer Support, $42/hr, Weekend, No Experience
Phone Job, $45/hr, Remote, Night Shift, No Degree
Remote Live Chat, $50/hr, College Student, No Experience
Data Entry, $40/hr, Part-Time, Remote, Weekend Job
Virtual Assistant, $42/hr, Remote, No Experience, Evening
Remote Phone Support, $45/hr, Night Job, College Student
Remote Moderator, $50/hr, No Degree, Weekend, Part-Time
Virtual Assistant, $40/hr, Remote, Night Shift, No Experience
Customer Support, $42/hr, Remote, Part-Time, No Degree
Remote Data Entry, $45/hr, Weekend Job, College Student
Phone Support, Remote, $50/hr, No Experience, Night Shift
Virtual Assistant, $42/hr, Evening, Remote, College Student
Live Chat Support, $45/hr, Part-Time, Remote, No Degree
Data Entry, $50/hr, Remote, Evening Job, College Student
Virtual Assistant, $40/hr, Weekend, Remote, No Experience
Remote Phone Job, $42/hr, Night Shift, College Student Friendly
Remote Customer Support, $45/hr, No Degree, Evening Job
Virtual Assistant, $50/hr, Part-Time, Remote, Weekend Job
Data Entry, $40/hr, Evening Job, No Experience, Remote
Remote Live Chat, $42/hr, Weekend, No Degree, Part-Time
Virtual Assistant, $45/hr, No Experience, Remote, Night Job
Phone Job, $50/hr, Remote, Part-Time, College Student

  • Review existing detection lifecycle and develop plans for continuous improvement
  • Partner with the Distributed Security Response Team (DSRT) to review and enhance alerting and alert strategy on a regular basis
  • Enhance dynamic / risk-based detection strategy, identifying opportunities for and creating UEBA and machine learning based detections
  • Identify areas for workflow automation, context enrichment, and other enhancements to the alerting workflow leveraging our SOAR platform or Elastic Stack native capabilities
  • Partner with the product team on new features, bug fixes, and detection ideas to transfer ideas into features
  • Evolve and grow our existing threat detection practice by working with our threat detection engineering team and our partners developing threat detection resources for our customers and community
  • Share with our community how we leverage the Elastic Stack to keep Elastic safe through blog posts, webinars, meetups, and other opportunities
  • Mentor and coach team members to help them unlock the best version of themselves

What You Bring:

  • At least 8 years of experience designing, implementing, and performing monitoring and detection in a complex, global environment
  • Demonstrated ability to think innovatively about solving critical security problems
  • Curiosity for research and uncovering the unknown about cyber behavior
  • Experience leading a team of detection engineers or related professionals
  • Experience with machine learning is a plus

Additional Information - We Take Care of Our People:

As a distributed company, diversity drives our identity. Whether you’re looking to launch a new career or grow an existing one, Elastic is the type of company where you can balance great work with great life. Your age is only a number. It doesn’t matter if you’re just out of college or your children are; we need you for what you can do.

We strive to have parity of benefits across regions, and while regulations differ from place to place, we believe taking care of our people is the right thing to do.

  • Competitive pay based on the work you do here and not your previous salary
  • Health coverage for you and your family in many locations
  • Ability to craft your calendar with flexible locations and schedules for many roles
  • Generous number of vacation days each year
  • Increase your impact - We match up to $2000 (or local currency equivalent) for financial donations and service
  • Up to 40 hours each year to use toward volunteer projects you love
  • Embracing parenthood with a minimum of 16 weeks of parental leave

InfoSec - Senior Manager, Threat Detection ID-3679

What is The Role:

As the Sr. Manager, Threat Detection at Elastic you are helping Elastic deliver safe and secure products and services to our customers, users, and fellow Elasticians. You’ll partner with teams company-wide to learn about Elastic’s threat landscape and adapt our monitoring as a result. You will be responsible for assessing and improving Elastic's threat defense coverage and processes for the entire organization, developing and tuning detections across a wide variety of sources that include multiple cloud providers, CI/CD environments, SaaS services, user workstations, and more. You’ll also help support incident response activities by providing expertise in log analysis during security events. You’ll have access to all the tools in the Elastic Stack and to the folks who build the Elastic Stack to provide feedback and suggestions to make the Elastic Stack better for everyone. If doing all of this with the Elastic Stack excites you, then we’d love to meet you!

What You Will Be Doing:

  • Review existing detection lifecycle and develop plans for continuous improvement
  • Partner with the Distributed Security Response Team (DSRT) to review and enhance alerting and alert strategy on a regular basis
  • Enhance dynamic / risk-based detection strategy, identifying opportunities for and creating UEBA and machine learning based detections
  • Identify areas for workflow automation, context enrichment, and other enhancements to the alerting workflow leveraging our SOAR platform or Elastic Stack native capabilities
  • Partner with the product team on new features, bug fixes, and detection ideas to transfer ideas into features
  • Evolve and grow our existing threat detection practice by working with our threat detection engineering team and our partners developing threat detection resources for our customers and community
  • Share with our community how we leverage the Elastic Stack to keep Elastic safe through blog posts, webinars, meetups, and other opportunities
  • Mentor and coach team members to help them unlock the best version of themselves

What You Bring:

  • At least 8 years of experience designing, implementing, and performing monitoring and detection in a complex, global environment
  • Demonstrated ability to think innovatively about solving critical security problems
  • Curiosity for research and uncovering the unknown about cyber behavior
  • Experience leading a team of detection engineers or related professionals
  • Experience with machine learning is a plus

Additional Information - We Take Care of Our People:

As a distributed company, diversity drives our identity. Whether you’re looking to launch a new career or grow an existing one, Elastic is the type of company where you can balance great work with great life. Your age is only a number. It doesn’t matter if you’re just out of college or your children are; we need you for what you can do.

We strive to have parity of benefits across regions, and while regulations differ from place to place, we believe taking care of our people is the right thing to do.

  • Competitive pay based on the work you do here and not your previous salary
  • Health coverage for you and your family in many locations
  • Ability to craft your calendar with flexible locations and schedules for many roles
  • Generous number of vacation days each year
  • Increase your impact - We match up to $2000 (or local currency equivalent) for financial donations and service
  • Up to 40 hours each year to use toward volunteer projects you love
  • Embracing parenthood with a minimum of 16 weeks of parental leave

InfoSec - Senior Manager, Threat Detection ID-3679

Back to blog

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...