Skip to main content Skip to Footer

Cyber Defense Detection Engineer

LOCATIONS:

Accenture is a global collective of innovators whose aim is to improve the way the world works and lives. Empowered with innovative tools, continuous learning and a global community of diverse talent, we drive success in new business architecture that disrupts conventional practices Accenture Security helps organizations prepare, protect, detect, respond to, and recover, at all points of the security lifecycle. We hire the very best security talent and arm them with the coolest tools and latest tech so they can help our clients build resilience as we create integrated, customized turnkey solutions. We blend risk strategy, digital identity, cyber defense, application security and managed service solutions to rethink the entire security lifecycle.

About Accenture Cyber Threat Intelligence (ACTI)

ACTI is a global team that spans 13 countries and 4 continents and speaks more than 30 languages. We are passionate about delivering intelligence analysis, and providing industry-leading analytic insights, cyber context, and critical services our clients need to achieve their business-line and strategic-growth initiatives. We know success is only possible by developing and supporting our most-critical resources: our talented analysts, developers, and supporting team members. We value creativity and entrepreneurship in our team; where possible, we back staff initiatives with opportunities and investments. We enjoy the hunt. We strive to automate and innovate while working with powerful resources and differentiated data. Above all else, we value an egoless approach to guiding our clients as they navigate their businesses through all aspects of the cyber domain.

Cyber Defense within Accenture Security provides several high-risk, high-impact services for our clients. As such, the teams within Cyber Defense have unique and challenging infrastructure and security requirements. Some of the infrastructure currently managed within Cyber Defense includes command-and-control infrastructure for advanced red teaming, cloud infrastructure to support incident response investigations, and custom environments dedicated to developing malware and reverse-engineering software. Additionally, the workstations and laptops of Cyber Defense personnel have unique security requirements and challenges. This person will report to the Global CDI Detection Lead, and will be responsible for the deployment, operation and security monitoring capabilities across Cyber Defense.

Some of the responsibilities of this role include:

  • Configure SIEM (Splunk), EDR, Insider Threat, IAM and NGFW (Palo Alto) security controls.
  • Monitoring the infrastructure for suspicious or anomalous behavior and for exercising cross-functional incident response plans in the event of an incident.
  • Ensuring adherence to “best practice” security standards for the management and security of Cyber Defense CNO, CND and research infrastructure.
  • Develop custom SPLUNK correlation and heuristic content to identify Cyber Defense specific anomalies and security issues.
  • Conduct periodic scans and testing of Cyber Defense infrastructure to ensure compliance with security standards.
  • Directly support administrative, automation, and engineering efforts across the global CDI AOR.


Basic Qualifications:

  • Minimum of 4 years information security experience, with a recent (2-4 years) focus in threat hunting, SIEM content development, security monitoring and incident response.
  • Minimum of 2 years of experience in Threat hunting & IR experience in Windows and/or Linux environments:
  • Minimum of 2 years of experience inThreat hunting & IR experience in cloud and hybrid environments:
  • Minimum of 2 years of experience in Amazon AWS, Google Compute, and/or Microsoft Azure experience:
  • Minimum of 2 years of experience in SIEM (SPLUNK Cloud) and log management configuration and analysis.
  • Minimum of 2 years of experience with incident response fundamentals and capabilities
  • Minimum of 2 years of experience in Threat and Vulnerability Management

Preferred Qualifications

  • Familiarity with Cyber Intelligence, Threat Operations, Penetration Testing, Red Teaming, Incident Response and Threat Hunting methodologies.
  • Security certifications: CISSP, CISM, GSEC, CCNA, etc.
  • Job Qualifications

Job Qualifications

  • Configure SIEM (Splunk), EDR, Insider Threat, IAM and NGFW (Palo Alto) security controls.
  • Monitoring the infrastructure for suspicious or anomalous behavior and for exercising cross-functional incident response plans in the event of an incident.
  • Ensuring adherence to “best practice” security standards for the management and security of Cyber Defense CNO, CND and research infrastructure.
  • Develop custom SPLUNK correlation and heuristic content to identify Cyber Defense specific anomalies and security issues.
  • Conduct periodic scans and testing of Cyber Defense infrastructure to ensure compliance with security standards.
  • Directly support administrative, automation, and engineering efforts across the global CDI AOR.

Applicants for employment in the US must have work authorization that does not now or in the future require sponsorship of a visa for employment authorization in the United States and with Accenture. Equal Employment Opportunity Statement Accenture is an Equal Opportunity Employer. We believe that no one should be discriminated against because of their differences, such as age, disability, ethnicity, gender, gender identity and expression, religion or sexual orientation. Our rich diversity makes us more innovative, more competitive and more creative, which helps us better serve our clients and our communities. All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law. Accenture is committed to providing veteran employment opportunities to our service men and women. For details, view a copy of the Accenture Equal Opportunity and Affirmative Action Policy Statement Requesting An Accommodation Accenture is committed to providing equal employment opportunities for persons with disabilities or religious observances, including reasonable accommodation when needed. If you are hired by Accenture and require accommodation to perform the essential functions of your role, you will be asked to participate in our reasonable accommodation process. Accommodations made to facilitate the recruiting process are not a guarantee of future or continued accommodations once hired. If you would like to be considered for employment opportunities with Accenture and have accommodation needs for a disability or religious observance, please call us toll free at 1 (877) 889-9009, send us an email or speak with your recruiter. Other Employment Statements Candidates who are currently employed by a client of Accenture or an affiliated Accenture business may not be eligible for consideration. Job candidates will not be obligated to disclose sealed or expunged records of conviction or arrest as part of the hiring process. The Company will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. Additionally, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the Company's legal duty to furnish information



What We Believe


We have an unwavering commitment to diversity with the aim that every one of our people has a full sense of belonging within our organization. As a business imperative, every person at Accenture has the responsibility to create and sustain an inclusive environment.


Inclusion and diversity are fundamental to our culture and core values. Our rich diversity makes us more innovative and more creative, which helps us better serve our clients and our communities. Read more here


Equal Employment Opportunity Statement


Accenture is an Equal Opportunity Employer. We believe that no one should be discriminated against because of their differences, such as age, disability, ethnicity, gender, gender identity and expression, religion or sexual orientation.


All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law.


Accenture is committed to providing veteran employment opportunities to our service men and women.


For details, view a copy of the Accenture Equal Opportunity and Affirmative Action Policy Statement.


Requesting An Accommodation


Accenture is committed to providing equal employment opportunities for persons with disabilities or religious observances, including reasonable accommodation when needed. If you are hired by Accenture and require accommodation to perform the essential functions of your role, you will be asked to participate in our reasonable accommodation process. Accommodations made to facilitate the recruiting process are not a guarantee of future or continued accommodations once hired.


If you would like to be considered for employment opportunities with Accenture and have accommodation needs for a disability or religious observance, please call us toll free at 1 (877) 889-9009, send us an email or speak with your recruiter.


Other Employment Statements


Applicants for employment in the US must have work authorization that does not now or in the future require sponsorship of a visa for employment authorization in the United States.


Candidates who are currently employed by a client of Accenture or an affiliated Accenture business may not be eligible for consideration.


Job candidates will not be obligated to disclose sealed or expunged records of conviction or arrest as part of the hiring process.


The Company will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. Additionally, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the Company's legal duty to furnish information.

Apply now

Join our Talent Community

See the latest jobs, news and events by joining our talent community:

Job Locations

{{alert.msg}}

Comments

Atlanta