Detection & Mitigation Engineer

Cloudflare Cloudflare · Enterprise · Mexico City, Mexico · Security

Cloudflare is seeking a Security Detections Engineer to identify, track, and defeat sophisticated threats and abuse across their platform. This role involves examining and mitigating threats in real-time, leveraging emerging technologies to build detections that protect millions of people from various forms of attacks and abuse. The engineer will analyze attacker TTPs, work with data analysis platforms, and collaborate with team members to develop new ways to present and interact with insights, ultimately stopping adversaries.

What you'd actually do

  1. identify, track, and defeat sophisticated threats and abuse across our platform
  2. examine and mitigate threats in real-time
  3. build detections that protect millions of people from various forms of attacks and abuse
  4. identify Tactics, Techniques, and Procedures (TTPs) of ongoing and ever-evolving cyber attacks to protect our global customer base
  5. develop new and innovative ways to present and interact with our unique insights

Skills

Required

  • Data analysis
  • Metadata analysis
  • Network Traffic analysis
  • comprehensive data analysis platform and rule configuration
  • SQL and devising SQL queries
  • Python or other scripting experience
  • synthesize technical information and document it in a non-technical manner
  • communicating actionable threat intelligence to both technical and executive-level stakeholders

Nice to have

  • Working knowledge of a specific platform or product's authentication protocols
  • Experience analyzing, tracking and defending against various types of cyber attacks
  • Strong understanding of the cyber threat landscape, with expertise in advanced persistent threat (APT) groups
  • Working knowledge of OSI Layers
  • Working knowledge of TCP/UDP/ICMP, DNS, HTTP/HTTPS, SMTP/SMTPS, SSH/SFTP/SCP, FTP
  • Familiarity with regular expressions
  • Vibe coding experience for building tools and applications
  • Experience with detection development using YARA, Snort, Surricata, or an equivalent language
  • BS in Computer Science, Information Technology, Information Security, Computer Security or Information Systems

What the JD emphasized

  • AI-native curiosity to create a solution using the latest tools
  • leveraging AI to ship faster today to make it better tomorrow