Detection Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Detection Engineer (Cybersecurity): Developing and operationalizing detection logic within real customer environments to identify adversarial behavior with an accent on validation, tuning, and real-world telemetry. Focus on bridging the gap between threat research and operational effectiveness by translating attacker tradecraft into high-confidence detections.
Location: Remote (UK, Estonia, or Türkiye)
Company
is a cybersecurity company providing the AIR platform for digital forensics and incident response.
What you will do
- Build, validate, and sharpen detection logic based on live investigative research and emerging threats.
- Pressure-test detections against real-world telemetry rather than synthetic test data.
- Partner with Product Engineering to integrate high-confidence detections and insights into AIR.
- Translate current attacker behaviors and technical findings into immediate detection capabilities.
- Collaborate with Solutions Consulting and Security Architects on detection-related customer engagements.
Requirements
- Strong background in cybersecurity investigations, detection engineering, threat hunting, or security operations.
- Hands-on experience with YARA, Sigma, SQL, and Python in production environments.
- Deep understanding of attacker techniques, tradecraft, and investigative workflows across endpoint, network, and cloud.
- Ability to translate complex technical findings into actionable feedback for engineering teams.
- Must be based in the UK, Estonia, or Türkiye.
Nice to have
- Background in DFIR, SOC, or threat detection in enterprise environments.
- Experience contributing detections to security platforms or products.
- Familiarity with endpoint, log, or telemetry-based detection systems.
Culture & Benefits
- Fully remote and flexible working with home office setup support.
- 28 days holiday allowance plus wellbeing days and a birthday off.
- Private medical insurance for employees and their families.
- Allowances for entertainment and healthy living.
- Supportive and collaborative team culture with strong growth and development opportunities.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →