Cyber Security Detection Engineer
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Cyber Security Detection Engineer (Cybersecurity): Designing and tuning high-fidelity security detections and building automation for a global entertainment platform with an accent on SIEM, EDR, and XDR integration. Focus on operationalizing threat intelligence, developing automated incident response playbooks, and providing surge support for SOC investigations.
Location: Must be based in Australia
Company
is a global leader in live entertainment, powering 40,000 shows and selling 500 million tickets annually.
What you will do
- Design, implement, and tune high-fidelity detections across SIEM and XDR platforms.
- Develop automated incident response playbooks and integrate AI to improve response efficiency.
- Evaluate monitoring coverage and engineer new security controls to close identified gaps.
- Collaborate with cyber threat intelligence analysts to translate intelligence into actionable detection logic.
- Provide overflow support for alert triage, investigation, and escalation in a follow-the-sun model.
- Participate in adversary simulation exercises, threat hunts, and vulnerability reviews.
Requirements
- Must be based in Australia
- 5+ years of experience across SOC, detection engineering, incident response, or CTI.
- 3+ years of hands-on experience designing custom detections and security automation.
- Proficiency in at least one query language such as KQL, Splunk SPL, or SQL.
- Working knowledge of threat actor tactics and CTI operationalization.
- Familiarity with cloud and identity platforms like Entra ID, Okta, Azure, AWS, or GCP.
Culture & Benefits
- Flexible approach to when and where you work to support work-life balance.
- Access to concerts, events, and other entertainment perks.
- Opportunities for professional development and career advancement.
- Comprehensive benefits including wellness programs and mental health support.
- Diverse and inclusive workplace culture.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →