





Medium—strong employer brand and metro location but specialized security role reduces applicant density.
High—requires specialized security tooling, threat hunting, SIEM, and incident response experience not easily transferable.
High—role demands specific security tooling, detection engineering, SOAR, and incident response expertise.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Own design, build, and improvement of SIEM platform including log onboarding, normalization, and data pipeline quality.
Develop, maintain, and improve detection content using Detection as Code, mapped to MITRE ATT&CK framework.
Build and automate SOAR workflows, explore AI/ML enhancements, and support threat intelligence integration, threat hunting, and incident response.
Experience Required: Significant hands-on experience in security engineering, DevSecOps, or equivalent role securing cloud-native environments.
Technical skills in SIEM platforms (e.g., Splunk, Microsoft Sentinel), detection development, threat hunting, SOAR automation, and scripting (Python, Go, Bash).
Knowledge of security frameworks (NIST CSF, MITRE ATT&CK) and compliance standards such as SOC 2 or ISO 27001.
Work Experience Required: Not explicitly mentioned in the JD.
Experienced in operating at the intersection of engineering and security operations with focus on scalable, automated security solutions.
Strong practitioner of detection engineering, threat hunting, and incident response in complex, modern application environments.
Aptitude for integrating emerging AI/ML tools responsibly into security operations and improving operational efficiency.