The Detection Engineer is responsible for designing and continuously validating detection capabilities to align with evolving adversary techniques
Job Summary
The Detection Engineer is responsible for designing and continuously validating detection capabilities to align with evolving adversary techniques.
This role requires close collaboration with incident responders and threat hunters to drive continuous improvement and reduce mean time to detect.
Candidates must have strong experience with SIEM platforms, scripting languages, and the ability to integrate threat intelligence into detection workflows.
Matching Summary
The Detection Engineer is responsible for designing and continuously validating detection capabilities to align with evolving adversary techniques.
Skills & Requirements
Must-have
SIEM platform experience (Splunk, Sentinel)
Detection rule development and maintenance
Breach and attack simulation execution
MITRE ATT&CK framework mapping
Python or PowerShell scripting ability
SOAR platform automation development
Nice-to-have
AI and machine learning in cybersecurity
Cloud environment security telemetry
Kubernetes and serverless detection
Purple team exercise participation
Containerized application security knowledge
Key Requirements
Bachelor's degree in Cybersecurity or related field