Logo
Palantir Technologies

Information Security Engineer - CIRT

Palantir Technologies, Washington, District of Columbia, us, 20022


A World-Changing Company

Palantir builds the world’s leading software for data-driven decisions and operations. By bringing the right data to the people who need it, our platforms empower our partners to develop lifesaving drugs, forecast supply chain disruptions, locate missing children, and more.

The Role

As an Information Security Engineer, you are responsible for the security of Palantir’s people and infrastructure around the globe. Your technical expertise is second only to your integrity and real passion for security and technology in general. Our ideal candidate works well on a team, is highly motivated, and enjoys solving problems and taking on new challenges.

In this role you’ll be the first line of defense for protecting Palantir. Your team is responsible for the 24/7 prevention, detection, and investigation of security events and active attacks across our entire infrastructure. Your work will directly impact the success of Palantir's mission as you seek to make life hard for our adversaries and protect our global network.

Core ResponsibilitiesBuild, run, and own infrastructure and automation to detect, contain, and eradicate security threats.Develop alerting and detection strategies to identify malicious or anomalous behavior.Develop new and novel defensive techniques to identify or counteract changes in adversary techniques and tactics.Dissect network, host, memory, and other artifacts originating from multiple operating systems and applications.Perform enterprise-wide operations to uncover sophisticated and undetected threats.Partner closely with other members of the Information Security team to lead changes in the company's network defense posture.What We ValueBroad exposure to multiple security subject areas, including a strong background in forensics or threat intelligence.Deep exposure in Incident Response or Detection Engineering.Desire to further the information security community through substantive contributions (e.g. conference talks, blog posts, public tool development, etc.)Strong working knowledge of TCP/IP networking and common protocols.What We RequireExtensive security experience (3+ years) in at least one major platform (e.g. AWS, Azure, Windows, OS X, Linux, etc.).Proficiency in Python (preferred), PowerShell, or similar.Active TS/SCI security clearance or willingness and eligibility to obtain a security clearance.

#J-18808-Ljbffr