Soc Detection Engineer

ATR (Airbus/Leonardo)

**
4-8 years detection engineering experience
Splunk spl and splunk enterprise security proficiency
Deep knowledge of windows unix linux cloud telemetry
** The job posting is for a Detection Engineer at ATR (Airbus/Leonardo), focusing on developing advanced detection logic to enhance cybersecurity measures within the Airbus ecosystem. The role involves proactive threat research, detection rule engineering, and adversary emulation, requiring a strong background in detection engineering and relevant technical skills. **

Job Summary

  • The primary mission is to research threat actor TTPs and emulate scenarios to convert them into actionable detection rules.
  • You will utilize CI/CD frameworks to deploy, test, and maintain detection logic while ensuring an automation mindset.
  • The role requires partnering with the Detection & Response team to ensure defensive capabilities evolve at the speed of the threat landscape.

Matching Summary

Match Score: 75

** The job posting is for a Detection Engineer at ATR (Airbus/Leonardo), focusing on developing advanced detection logic to enhance cybersecurity measures within the Airbus ecosystem. The role involves proactive threat research, detection rule engineering, and adversary emulation, requiring a strong background in detection engineering and relevant technical skills. **

Skills & Requirements

Must-have

  • 4-8 years Detection Engineering experience
  • Splunk SPL and Splunk Enterprise Security proficiency
  • Deep knowledge of Windows Unix Linux Cloud telemetry
  • Adversary Emulation and Simulation experience
  • MITRE ATT&CK framework mapping expertise

Nice-to-have

  • Purple team mentality for attack defense understanding
  • Git-based CI/CD framework usage
  • Strong research oriented mindset for latest attacks
  • Experience with Sigma YARA Snort STIX TAXII standards

Key Requirements

  • Bachelor's degree in Computer Science or Cybersecurity
  • 4 to 8+ years in Detection Engineering or Threat Hunting
  • Preferred certifications: OSCP, GCIA, GDAT, or Splunk Power User

Work Rights

Not specified

Tailored Resume

Cover Letter