.jpg?1700169058)
Senior Detection Analyst
zscaler • Costa Rica - Update Location; Remote - Costa Rica
Posted: August 12, 2026
Job Description
Role
We are looking for a Senior Detection Analyst to join our team. This is a remote role, reporting to the Manager, Detection Analyst in the Detection Operations Team. You will utilize our detection platform to analyze telemetry, alerts, and log sources across several detection domains including Endpoint, Identity, Network, and Cloud to publish threats for our Managed Detection and Response customers. Additionally, by leading projects to improve the Detection Operations workflow through orchestration and automation, you will ensure our customers receive high-fidelity threat analysis and concisely written communication regarding emerging threats at scale.
What You’ll Do (Role Expectations)
- Analyze EDR telemetry, alerts, and log sources across several detection domains including Endpoint, Identity, Network, and Cloud/SaaS
- Publish and review threats for customers using concisely written communication to effectively convey key indicators and remediation context
- Improve and innovate Detection Operations workflows through orchestration and automation to manage high volumes of telemetry
Who You Are (Success Profile)
- You act like an owner with a passion for our mission, operating with integrity and navigating seamlessly between high-level strategy and hands-on execution.
- You are a high-trust collaborator who embraces a challenge culture through clear, respectful feedback to build trust and elevate the team.
- You are customer-obsessed, anchoring decisions in solving real-world problems and championing customer needs from start to finish.
- You are data-driven, using analytics to measure what matters, replace assumptions with evidence, and guide informed decisions.
- You think at scale, connecting daily work to the global mission while building resilient solutions designed to last in a high-growth organization.
What We’re Looking for (Minimum Qualifications)
- Demonstrated curiosity and active exploration of AI tools, with a proven history of integrating new technologies to enhance daily workflows and augment problem-solving
- Strong experience in Endpoint (EDR) and one or more functional areas including Cloud/SaaS, Identity, Email, or Network detection domains
- Experience with DevOps workflows and common scripting languages such as Python, Ruby, and PowerShell
- Expertise using query languages and understanding syntax across EDR or other security platforms such as SQL or Lucene
- Awareness of the current attack landscape (current threats, attack techniques, and vulnerabilities)
- Strong analytical, documentation, and communication skills
What Will Make You Stand Out (Preferred Qualifications)
- Previous professional experience in a Red Team or offensive security capacity
- Active involvement in the Infosec community through writing blogs, participating in webinars, or presenting at conferences
- Familiarity with MITRE ATT&CK TTPs
#LI-KM9 #LI-Remote
Additional Content
Role
We are looking for a Senior Detection Analyst to join our team. This is a remote role, reporting to the Manager, Detection Analyst in the Detection Operations Team. You will utilize our detection platform to analyze telemetry, alerts, and log sources across several detection domains including Endpoint, Identity, Network, and Cloud to publish threats for our Managed Detection and Response customers. Additionally, by leading projects to improve the Detection Operations workflow through orchestration and automation, you will ensure our customers receive high-fidelity threat analysis and concisely written communication regarding emerging threats at scale.
What You’ll Do (Role Expectations)
- Analyze EDR telemetry, alerts, and log sources across several detection domains including Endpoint, Identity, Network, and Cloud/SaaS
- Publish and review threats for customers using concisely written communication to effectively convey key indicators and remediation context
- Improve and innovate Detection Operations workflows through orchestration and automation to manage high volumes of telemetry
Who You Are (Success Profile)
- You act like an owner with a passion for our mission, operating with integrity and navigating seamlessly between high-level strategy and hands-on execution.
- You are a high-trust collaborator who embraces a challenge culture through clear, respectful feedback to build trust and elevate the team.
- You are customer-obsessed, anchoring decisions in solving real-world problems and championing customer needs from start to finish.
- You are data-driven, using analytics to measure what matters, replace assumptions with evidence, and guide informed decisions.
- You think at scale, connecting daily work to the global mission while building resilient solutions designed to last in a high-growth organization.
What We’re Looking for (Minimum Qualifications)
- Demonstrated curiosity and active exploration of AI tools, with a proven history of integrating new technologies to enhance daily workflows and augment problem-solving
- Strong experience in Endpoint (EDR) and one or more functional areas including Cloud/SaaS, Identity, Email, or Network detection domains
- Experience with DevOps workflows and common scripting languages such as Python, Ruby, and PowerShell
- Expertise using query languages and understanding syntax across EDR or other security platforms such as SQL or Lucene
- Awareness of the current attack landscape (current threats, attack techniques, and vulnerabilities)
- Strong analytical, documentation, and communication skills
What Will Make You Stand Out (Preferred Qualifications)
- Previous professional experience in a Red Team or offensive security capacity
- Active involvement in the Infosec community through writing blogs, participating in webinars, or presenting at conferences
- Familiarity with MITRE ATT&CK TTPs
#LI-KM9 #LI-Remote