Match Score
Against your primary resumeLogin to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Protocol Intelligence
Data-driven signals on your job's competitivenessGlobal brand plus metro location and mid-level generalist security skills increase competition.
Security detection skills are transferable across industries but require domain-specific tooling and threat knowledge.
Requires specific SIEM/EDR, scripting, detection-as-code and CI/CD skills, increasing shortlisting strictness.
Job Description
Structured overview of role & requirementsAbout This Role
Design, develop, test, and maintain detection rules and logic across SIEM, EDR, NDR, and cloud-native platforms to improve threat detection accuracy and coverage.
Automate detection rule deployment, QA, RCA processes and maintain a continuous security improvement backlog aligned with SOC transformation goals.
Collaborate with SOC, Incident Response, Threat Hunting, and Threat Intelligence teams to operationalize detection improvements and validate detection logic through purple team exercises.
Minimum Requirements
Strong technical expertise in SIEM, SOAR, EDR, and cloud security platforms.
Proficiency in scripting and automation such as Python and PowerShell, with familiarity in detection-as-code and CI/CD pipelines.
Understanding of MITRE ATT&CK framework and threat-informed defense methodologies.
Work Experience Required: Not explicitly mentioned in the JD.
Ideal Candidate Profile
Experienced in automation-first security detection engineering within an enterprise SOC or related environment, focused on scalability and resilience.
Capable of driving continuous security improvement by analyzing detection metrics and aligning detection priorities with business risk and SOC transformation roadmap.
Effective collaborator with cross-functional security teams and skilled at integrating emerging TTPs into detection logic for operational threat defense.
