Sr Cybersecurity Engineer

PayPal PayPal · Fintech · Austin, TX +1 · Cybersecurity Threat Analysis

This role focuses on applying cybersecurity best practices to enhance and optimize PayPal's cyber threat management operations. The Sr Cybersecurity Engineer will analyze and respond to security alerts, incidents, and threats, participate in incident response readiness, and collaborate with security and engineering teams to improve security posture. The role also involves supporting and optimizing cybersecurity tools and automation systems, and contributing to the refinement of incident management procedures. Experience with SIEM, EDR, threat intelligence, detection engineering, security automation, cloud security, and compliance frameworks is required.

What you'd actually do

  1. Apply cybersecurity best practices to enhance and optimize PayPal’s cyber threat management operations, ensuring effective protection and operational efficiency.
  2. Analyze and respond to security alerts, incidents, and threats using established processes and advanced tools.
  3. Support management and optimization of cybersecurity tools and automation systems to enhance incident detection and response capabilities.
  4. Contribute to the review and refinement of incident management procedures based on emerging threats and evolving industry trends.
  5. Maintain current knowledge of cybersecurity best practices and participate in continuous improvement efforts across the organization.

Skills

Required

  • SIEM platforms (Splunk, Google SecOps)
  • EDR platforms (Falcon CrowdStrike, Microsoft Defender)
  • Threat Intelligence & Analysis
  • Detection Engineering (Sigma, YARA rules)
  • Security Automation and Scripting (Python, PowerShell, Bash)
  • Cloud Security (CSPM tools like WIZ)
  • Forensic and Malware Analysis
  • Security and compliance frameworks (NIST CSF, NIST 800-53, CIS Controls, CSA CCM, ISO 27001)

Nice to have

  • MITRE ATT&CK
  • Diamond Model
  • NIST CSF
  • NIST 800-53
  • CIS Controls
  • CSA CCM
  • ISO 27001

What the JD emphasized

  • cyber threat management
  • security posture
  • incident response
  • security tools and automation
  • threat intelligence
  • detection engineering
  • security automation
  • cloud security
  • compliance frameworks