Conduct proactive threat hunting using SIEM, EDR, CASB, and network detection tools, such as Darktrace, to identify suspicious activity that may have bypassed traditional controls. * Tune and ...
60 Darktrace Jobs Hiring Near You
Conduct proactive threat hunting using SIEM, EDR, CASB, and network detection tools, such as Darktrace, to identify suspicious activity that may have bypassed traditional controls. * Tune and ...
Technical Success Manager
Los Angeles, CA · On-site
Darktrace is a global leader in AI-driven cybersecurity, helping organizations stay ahead of evolving threats every day. Darktrace was built on a genuinely differentiated idea: that Adaptive AI could ...
Technical Success Manager
Los Angeles, CA · On-site
Darktrace is a global leader in AI-driven cybersecurity, helping organizations stay ahead of evolving threats every day. Darktrace was built on a genuinely differentiated idea: that Adaptive AI could ...
Technical Success Manager
Chicago, IL · On-site
$100K - $115K/yr
Darktrace is a global leader in AI-driven cybersecurity, helping organizations stay ahead of evolving threats every day. Darktrace was built on a genuinely differentiated idea: that Adaptive AI could ...
Technical Success Manager
Chicago, IL · On-site
$100K - $115K/yr
Darktrace is a global leader in AI-driven cybersecurity, helping organizations stay ahead of evolving threats every day. Darktrace was built on a genuinely differentiated idea: that Adaptive AI could ...
Threat Detection & Response Analyst (CrowdStrike, Splunk, Darktrace, CASB - Must) _San Jose, CA (ons
San Jose, CA · On-site
$85/hr
CrowdStrike, Splunk, Darktrace, CASB * Monitor, triage, and investigate security alerts and events across enterprise environments using Splunk SIEM, EDR, network, cloud, and endpoint telemetry.
Threat Detection & Response Analyst (CrowdStrike, Splunk, Darktrace, CASB - Must) _San Jose, CA (ons
San Jose, CA · On-site
$85/hr
CrowdStrike, Splunk, Darktrace, CASB * Monitor, triage, and investigate security alerts and events across enterprise environments using Splunk SIEM, EDR, network, cloud, and endpoint telemetry.
Cybersecurity Internship - Spring 2027
El Segundo, CA · On-site
$33/hr
These tools include Zscaler, CrowdStrike, ThreatLocker, Darktrace, and AlienVault. You will work with your lead to adjust settings, clean up noisy alerts, and make sure each tool is doing its job ...
Cybersecurity Internship - Spring 2027
El Segundo, CA · On-site
$33/hr
These tools include Zscaler, CrowdStrike, ThreatLocker, Darktrace, and AlienVault. You will work with your lead to adjust settings, clean up noisy alerts, and make sure each tool is doing its job ...
Darktrace is a global leader in AI-driven cybersecurity, helping organizations stay ahead of evolving threats every day. Darktrace was built on a genuinely differentiated idea: that Adaptive AI could ...
Darktrace is a global leader in AI-driven cybersecurity, helping organizations stay ahead of evolving threats every day. Darktrace was built on a genuinely differentiated idea: that Adaptive AI could ...
ExtraHop, Stealthwatch, Vectra AI, Darktrace, RSA NetWitness, CoreLight, Netscout nGenius or ISNG, BackTrack, Kali, HPING, ZAP, tcpreplay, CVE, VirusTotal, Wireshark, AlienVault, Cyber Kill Chain ...
Quick apply
ExtraHop, Stealthwatch, Vectra AI, Darktrace, RSA NetWitness, CoreLight, Netscout nGenius or ISNG, BackTrack, Kali, HPING, ZAP, tcpreplay, CVE, VirusTotal, Wireshark, AlienVault, Cyber Kill Chain ...
System Security Administrator
Los Angeles, CA · On-site
$120 - $150/hr
CrowdStrike and Darktrace * Netwrok configuration experience: Fortinet * MDM administration: JAMF * Strong PowerShell and command-line proficiency * Relevant industry certifications or formal ...
System Security Administrator
Los Angeles, CA · On-site
$120 - $150/hr
CrowdStrike and Darktrace * Netwrok configuration experience: Fortinet * MDM administration: JAMF * Strong PowerShell and command-line proficiency * Relevant industry certifications or formal ...
ExtraHop, Stealthwatch, Vectra AI, Darktrace, RSA NetWitness, CoreLight, Netscout nGenius or ISNG, BackTrack, Kali, HPING, ZAP, tcpreplay, CVE, VirusTotal, Wireshark, AlienVault, Cyber Kill Chain ...
ExtraHop, Stealthwatch, Vectra AI, Darktrace, RSA NetWitness, CoreLight, Netscout nGenius or ISNG, BackTrack, Kali, HPING, ZAP, tcpreplay, CVE, VirusTotal, Wireshark, AlienVault, Cyber Kill Chain ...
Sr. Network Engineer
North Charleston, SC · On-site
$82K/yr
DARKTRACE AI appliances; inspects all virtual server hosts; reviews security platforms (ccure9k, ICE, Genetec), monitors Amadeus systems, and reviews VPN and Wi-Fi operability; maintains security for ...
Sr. Network Engineer
North Charleston, SC · On-site
$82K/yr
DARKTRACE AI appliances; inspects all virtual server hosts; reviews security platforms (ccure9k, ICE, Genetec), monitors Amadeus systems, and reviews VPN and Wi-Fi operability; maintains security for ...
Sr. Network Engineer
North Charleston, SC · On-site
$82K/yr
DARKTRACE AI appliances; inspects all virtual server hosts; reviews security platforms (ccure9k, ICE, Genetec), monitors Amadeus systems, and reviews VPN and Wi-Fi operability; maintains security for ...
Quick apply
Sr. Network Engineer
North Charleston, SC · On-site
$82K/yr
DARKTRACE AI appliances; inspects all virtual server hosts; reviews security platforms (ccure9k, ICE, Genetec), monitors Amadeus systems, and reviews VPN and Wi-Fi operability; maintains security for ...
DARKTRACE AI appliances; inspects all virtual server hosts; reviews security platforms (ccure9k, ICE, Genetec), monitors Amadeus systems, and reviews VPN and Wi-Fi operability; maintains security for ...
DARKTRACE AI appliances; inspects all virtual server hosts; reviews security platforms (ccure9k, ICE, Genetec), monitors Amadeus systems, and reviews VPN and Wi-Fi operability; maintains security for ...
Cybersecurity Analyst
Long Beach, CA · On-site
Working Knowledge of Crowdstrike, Darktrace and/or Splunk is a big plus. Education:Employment Type: CONTRACTOR
Cybersecurity Analyst
Long Beach, CA · On-site
Working Knowledge of Crowdstrike, Darktrace and/or Splunk is a big plus. Education:Employment Type: CONTRACTOR
Cybersecurity Analyst
Long Beach, CA · On-site
Working Knowledge of Crowdstrike, Darktrace and/or Splunk is a big plus. Education:Employment Type: CONTRACTOR
Cybersecurity Analyst
Long Beach, CA · On-site
Working Knowledge of Crowdstrike, Darktrace and/or Splunk is a big plus. Education:Employment Type: CONTRACTOR
CSIRT Analyst
Buffalo, NY · On-site
$111K - $125K/yr
EDR (CrowdStrike Falcon, MS Defender for Endpoint, Sentinel One, ...), NDR (Vectra, Darktrace, ...), xDR (CrowdStrike Identity Protection, MS Defender for Office/Clouds Apps/Identity/
Quick apply
CSIRT Analyst
Buffalo, NY · On-site
$111K - $125K/yr
EDR (CrowdStrike Falcon, MS Defender for Endpoint, Sentinel One, ...), NDR (Vectra, Darktrace, ...), xDR (CrowdStrike Identity Protection, MS Defender for Office/Clouds Apps/Identity/
Cybersecurity Analyst
Long Beach, CA · On-site
Working Knowledge of Crowdstrike, Darktrace and/or Splunk is a big plus.
Quick apply
Cybersecurity Analyst
Long Beach, CA · On-site
Working Knowledge of Crowdstrike, Darktrace and/or Splunk is a big plus.
CSIRT Analyst
$111K - $125K/yr
EDR (CrowdStrike Falcon, MS Defender for Endpoint, Sentinel One, ...), NDR (Vectra, Darktrace, ...), xDR (CrowdStrike Identity Protection, MS Defender for Office/Clouds Apps/Identity/
Quick apply
CSIRT Analyst
$111K - $125K/yr
EDR (CrowdStrike Falcon, MS Defender for Endpoint, Sentinel One, ...), NDR (Vectra, Darktrace, ...), xDR (CrowdStrike Identity Protection, MS Defender for Office/Clouds Apps/Identity/
These tools include Zscaler, CrowdStrike, ThreatLocker, Darktrace, and AlienVault. You will work with your lead to adjust settings, clean up noisy alerts, and make sure each tool is doing its job ...
These tools include Zscaler, CrowdStrike, ThreatLocker, Darktrace, and AlienVault. You will work with your lead to adjust settings, clean up noisy alerts, and make sure each tool is doing its job ...
Information Security Engineer - Network
Irvine, CA · On-site
$123K - $165K/yr
Experience in zScaler or Darktrace preferred Pay Range: $123,000.00 - $165,000.00/yr Employment Type: full-time
Information Security Engineer - Network
Irvine, CA · On-site
$123K - $165K/yr
Experience in zScaler or Darktrace preferred Pay Range: $123,000.00 - $165,000.00/yr Employment Type: full-time
... Darktrace, DDOS, cloud security, etc...) * Must have a successful track record of meeting and exceeding assigned quotas * Must have a strong sales hunter mentality * Must be able to travel up to 50 ...
Quick apply
... Darktrace, DDOS, cloud security, etc...) * Must have a successful track record of meeting and exceeding assigned quotas * Must have a strong sales hunter mentality * Must be able to travel up to 50 ...
Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Re-posted 26 days ago
Samsung SDS America rating
7.1
Based on 16 frontline employees who took The Breakroom Quiz
150th of 226 rated it services
Job description
Position Summary:
As Security Engineer, you'll join the Cybersecurity Operations team, where you'll serve as the frontline detective monitoring and correlating real-time threat data from firewalls, cloud assets, EDR, and AI-driven platforms like Darktrace. You'll design, tune, and optimize Splunk Enterprise Security dashboards, detection rules, and correlation searches to cut false positives while delivering rapid, high-fidelity alerts. Leveraging your experience SOC environments, you'll lead deep incident investigations, spearhead proactive threat-hunting missions, and drive remediation priorities based on risk and business impact. Collaboration is key: you'll partner with global engineers, cloud specialists, and incident-response teams to continuously improve our security posture and document best-practice playbooks.
This is a Full Time Onsite position located in San Jose, CA.
Responsibilities:
- Monitor and analyze security event logs from multiple sources, including firewalls, intrusion detection/prevention systems, endpoint protection platforms, servers, cloud environments, and tools like Darktrace, to identify potential threats.
- Monitor, triage, and investigate alerts and logs within the Splunk SIEM and Splunk Enterprise Security (ES) platform.
- Assist in improving SIEM processes, detection coverage, alert fidelity, and operational workflows including creating dashboards
- Support the onboarding and integration of logs from enterprise systems into the Splunk environment.
- Validate log source completeness, data normalization, rule logic, and alert relevance across critical systems and infrastructure
- Perform initial analysis of security events, escalate incidents when appropriate, and assist with root cause identification.
- Conduct in-depth investigations of security incidents and recommend remediation and containment actions.
- Conduct proactive threat hunting using SIEM, EDR, CASB, and network detection tools, such as Darktrace, to identify suspicious activity that may have bypassed traditional controls.
- Tune and optimize correlation searches, detection rules, dashboards, and use cases to improve operational efficiency and reduce false positives.
- Prioritize remediation efforts based on risk, severity, and business impact.
- Participate in incident response activities and support threat hunting initiatives as needed.
- Collaborate with cross-functional teams to respond effectively to cybersecurity incidents and strengthen overall security posture.
- Create and maintain documentation for log flows, detection use cases, triage procedures, playbooks, cybersecurity processes, and operational standards.
Requirements
- Bachelor's degree in Computer Science, Information Security, Information Assurance, or a related field; Master's degree preferred.
- 3+ years of experience in a cybersecurity operations or related security role.
- 2+ years of hands-on experience administering Splunk Enterprise Security (ES).
- Strong hands-on experience with Splunk log ingestion, data normalization, search heads, indexers, SPL query development, and dashboard optimization.
- Knowledge of detection engineering, correlation rule development, and incident response workflows.
- Proven experience in threat analysis & incident response.
- Strong understanding of security log sources, including Windows and Linux servers, firewalls, endpoint tools, cloud infrastructure, and network detection platforms, such as Darktrace.
- Experience triaging and analyzing security alerts in complex, multi-platform enterprise environments.
- Familiarity with cloud platforms such as AWS, Azure, or similar environments.
- Strong analytical, communication, and collaboration skills, with the ability to clearly present findings and recommendations.
- Ability to work effectively across diverse global teams and adapt to evolving business and technical environments.
- Curious, resilient, and data-driven, with a proactive approach to solving security challenges.
Preferred Qualifications:
- Relevant certifications such as Splunk Enterprise Security Certified Admin.
- Experience with supporting tools such as Darktrace, Crowdstrike, or Netskope are highly preferred
- Active knowledge & experience with rule creation & executing correlation searches in Splunk.
Benefits
Samsung SDSA offers a comprehensive suite of programs to support our employees:
- Top-notch medical, dental, vision and prescription coverage
- Wellness program
- Parental leave
- 401K match and savings plan
- Flexible spending accounts
- Life insurance
- Paid Holidays
- Paid Time off
- Additional benefits
Samsung SDS America, Inc. is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, race, color, religion, sex, sexual orientation, gender identity or expression, national origin, disability, status as a protected veteran, marital status, genetic information, medical condition, or any other characteristic protected by law.
We are committed to providing reasonable accommodations to participate in the job application or interview process for candidates with disabilities. Please let your recruiter know if you need an accommodation at any point during the interview process.
The base pay range for this role depends on appropriate skills, experience, and technical level. Career Level 2 base salary is USD $125,000-175,000.
Individual base pay depends on various factors, in addition to primary work location, such as complexity and responsibility of role, job duties/requirements, and relevant experience and skills.
Certain roles are eligible for additional rewards, including annual bonus. U.S.-based employees have access to medical, dental, and vision insurance, a 401(k) plan and company match, short-term and long-term disability coverage, basic life insurance, and wellbeing benefits, among others. U.S.-based employees also receive, per calendar year, up to 10 scheduled paid holidays, and Paid Time Off.
What Samsung SDS America employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About Samsung SDSA
Sourced by ZipRecruiter
Industry
It services
Company size
10,000+ Employees
Headquarters location
Ridgefield Park, NJ, US
Year founded
1985