Detection Engineer
US-MI-Pontiac
United Wholesale Mortgage
Req #: 13996
Type: Regular Full-Time
Overview: Why UWM? Join UWM, where we prioritize innovation and excellence in cybersecurity. As a Senior Detection Engineer, you will play a critical role in enhancing our organization's threat detection capabilities while contributing to a collaborative and proactive team environment. If you are passionate about cybersecurity, eager to make a difference, and ready to lead and mentor a team, we invite you to apply and be part of our mission to deliver secure and reliable solutions for our clients. Responsibilities: Key Responsibilities: * Detection Rule Development and Refinement: Lead the creation, testing, and optimization of detection rules, signatures, and use cases for security information and event management (SIEM) systems and other security technologies to enhance threat detection accuracy. * Email Gateway Management: Oversee and improve the configuration and management of email security gateways to protect against phishing attacks, spam, and other email-based threats. Implement and monitor policies to strengthen email security and reduce risks. * Threat Analysis: Conduct deep analysis of security events and incidents to identify patterns, trends, and anomalies indicating potential security threats. Share insights with the broader team to enhance overall threat detection capabilities. * Mentorship and Team Leadership: Provide guidance and mentorship to junior detection engineers, fostering a collaborative and growth-oriented team environment. Act as a subject matter expert and resource for team members. * Continuous Improvement: Drive continuous improvement initiatives for detection strategies, processes, and technologies. Identify opportunities for enhancing the detection platform and implement best practices to optimize performance. * Collaboration: Partner closely with the incident response, security operations, and IT teams to integrate advanced detection capabilities into broader security practices and incident response processes. * Threat Intelligence Utilization: Leverage threat intelligence feeds and sources to enhance detection capabilities, ensuring alignment with emerging threats and attack techniques. * Performance Monitoring: Monitor and evaluate detection performance metrics, assess the effectiveness of detection strategies, and recommend improvements as necessary. * Documentation: Maintain comprehensive documentation of detection rules, processes, and methodologies to support transparency and knowledge sharing within the team. * Continuous Learning: Stay current with the latest security trends, technologies, and best practices in detection engineering. Actively apply this knowledge to improve detection strategies and mentor team members. Qualifications: Must Have Qualifications: * Bachelor's degree in Cybersecurity, Information Security, Computer Science, or a related field; relevant certifications (e.g., GCTI, CEH, CISSP) are a plus. * Extensive experience in detection engineering, threat detection, or a related cybersecurity role, with a strong understanding of SIEM technologies and detection methodologies. * Proven experience in developing detection rules and responding to security incidents. * Strong analytical and problem-solving skills, with a proactive and self-starter mindset. * Excellent communication and interpersonal skills, with the ability to mentor and lead a team effectively. * Demonstrated ability to work effectively in a fast-paced environment and manage multiple priorities. * Commitment to continuous improvement and staying current with the latest security trends and best practices.