The Role
As an Insider Threat Detection Engineer, you are responsible for protecting Palantir's people, data, and most sensitive assets across the globe. Your technical expertise is matched by your integrity and genuine passion for security. You work well on a team, are highly motivated, and thrive on solving problems and taking on new challenges.
Responsibilities
- Engineer and automate end-to-end detection and investigation workflows, continuously improving Detection and Response infrastructure.
- Develop alerting and detection strategies to identify malicious or anomalous behavior, including new and novel defensive techniques that adapt to evolving adversary tactics and tradecraft.
- Dissect network, host, memory, and other artifacts originating from multiple operating systems and applications.
- Investigate security events and active attacks across the enterprise, uncovering sophisticated threats and identifying patterns of behavior that indicate insider risk.
- Influence and inform security controls designed to safeguard Palantir's most critical assets.
- Partner closely with other members of the Information Security team to lead changes in the company's network defense posture.
Qualifications
- Broad exposure to multiple security subject areas, including a strong background in forensics or threat intelligence.
- Deep exposure in Incident Response or Detection Engineering.
- Desire to further the information security community through substantive contributions (e.g., conference talks, blog posts, public tool development).
- Comfort in operating autonomously and engaging across business levels to advise on security outcomes.
- Extensive security experience (3+ years) in at least one major platform (e.g., AWS, Azure, Windows, OS X, Linux).
- Proficiency in Python (preferred), PowerShell, or similar.
- Familiarity with endpoint telemetry and log sources from at least one major operating system.
- Experience with common SIEM/SOAR platforms and proficiency writing queries against security event data.
- Active TS/SCI security clearance or eligibility to obtain a security clearance.
Salary
The estimated salary range for this position is $145,000 - $200,000/year. Total compensation may also include Restricted Stock units, sign‑on bonus, and other potential future incentives. This estimate excludes the value of any potential sign‑on bonus, benefits offered, and the potential future value of any long‑term incentives.
Benefits
- Employees (and their eligible dependents) can enroll in medical, dental, and vision insurance as well as voluntary life insurance.
- Employees are automatically covered by Palantir’s basic life, AD&D and disability insurance.
- Commuter benefits.
- Relocation assistance.
- Take what you need paid time off, not accrual based.
- 2 weeks paid time off built into the end of each year (subject to team and business needs).
- 10 paid holidays throughout the calendar year.
- Supportive leave of absence program including time off for military service and medical events.
- Paid leave for new parents and subsidized backup care for all parents.
- Fertility and family building benefits including but not limited to adoption, surrogacy, and preservation.
- Stipend to help with expenses that come with a new child.
- Employees can enroll in Palantir’s 401k plan.
Equal Opportunity Employer
Palantir is an Equal Opportunity Employer for all, including but not limited to Veterans and those with disabilities. Palantir is committed to making the application and hiring process accessible to everyone and will provide a reasonable accommodation for those living with a disability.
#J-18808-Ljbffr