Information Security Engineer

Palantir Palantir · Enterprise · Washington, DC · Information Security

Information Security Engineer responsible for the security of Palantir’s people and infrastructure, focusing on 24/7 prevention, detection, and investigation of security events and active attacks. The role involves building and owning infrastructure and automation for threat detection and eradication, developing novel defensive techniques, and investigating complex threats.

What you'd actually do

  1. Build, run, and own infrastructure and automation to detect, contain, and eradicate security threats.
  2. Develop alerting and detection strategies to identify malicious or anomalous behavior.
  3. Develop new and novel defensive techniques to identify or counteract changes in adversary techniques and tactics.
  4. Dissect network, host, memory, and other artifacts originating from multiple operating systems and applications.
  5. Investigate enterprise-wide operations to uncover sophisticated and undetected threats.

Skills

Required

  • Python (preferred), PowerShell, or similar
  • Extensive security experience (3+ years) in at least one major platform (e.g. AWS, Azure, Windows, OS X, Linux, etc.)
  • Active TS/SCI security clearance or eligibility to obtain a security clearance

Nice to have

  • Broad exposure to multiple security subject areas, including a strong background in forensics or threat intelligence.
  • Deep exposure in Incident Response or Detection Engineering.
  • Desire to further the information security community through substantive contributions (e.g. conference talks, blog posts, public tool development, etc.).
  • Strong working knowledge of TCP/IP networking and common protocols.

What the JD emphasized

  • Extensive security experience (3+ years)
  • Active TS/SCI security clearance or eligibility to obtain a security clearance