Detection Engineer

Philips UK

Onsite
Siem platform experience (splunk, sentinel)
Detection rule development and maintenance
Breach and attack simulation execution
The Detection Engineer is responsible for designing and continuously validating detection capabilities to align with evolving adversary techniques

Job Summary

  • The Detection Engineer is responsible for designing and continuously validating detection capabilities to align with evolving adversary techniques.
  • This role requires close collaboration with incident responders and threat hunters to drive continuous improvement and reduce mean time to detect.
  • Candidates must have strong experience with SIEM platforms, scripting languages, and the ability to integrate threat intelligence into detection workflows.

Matching Summary

The Detection Engineer is responsible for designing and continuously validating detection capabilities to align with evolving adversary techniques.

Skills & Requirements

Must-have

  • SIEM platform experience (Splunk, Sentinel)
  • Detection rule development and maintenance
  • Breach and attack simulation execution
  • MITRE ATT&CK framework mapping
  • Python or PowerShell scripting ability
  • SOAR platform automation development

Nice-to-have

  • AI and machine learning in cybersecurity
  • Cloud environment security telemetry
  • Kubernetes and serverless detection
  • Purple team exercise participation
  • Containerized application security knowledge

Key Requirements

  • Bachelor's degree in Cybersecurity or related field
  • Minimum 2 years of cybersecurity experience
  • Proficiency in log parsing and data normalization

Work Rights

Not specified

Tailored Resume

Cover Letter