обновлено 12 дней назад
Detection Engineering Specialist
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Detection Engineering Specialist (Cloud/Security Automation): Building scalable detection engineering capabilities through software engineering, automation, cloud-native technologies, and Detection-as-Code practices with an accent on CI/CD, telemetry evaluation, and security integrations. Focus on developing detection rules and reusable tooling, automating validation and deployment, and improving detection coverage across SIEM, EDR, cloud, and containerized environments.
Location: Office-based in Saint-Mandé, France; Bucharest, Romania; or Montreal, Canada
Company
is a global gaming company creating interactive entertainment experiences including Assassin’s Creed, Rainbow Six, and Just Dance.
What you will do
- Evaluate log sources, telemetry feeds, and enrichment data for quality, coverage, structure, and detection value.
- Design, develop, test, document, deploy, and maintain detection rules, frameworks, and supporting technologies.
- Migrate detection content to a Detection-as-Code model using Git-based workflows and modern software engineering practices.
- Build CI/CD pipelines, integrations, and automation across SIEM, EDR, ticketing systems, cloud services, and data repositories.
- Develop reusable tooling, libraries, and frameworks while improving detection coverage, fidelity, and investigative capabilities.
- Collaborate with Security Operations, Incident Response, Platform Engineering, and Development teams.
Requirements
- Experience in software engineering, DevOps, platform engineering, site reliability engineering, or automation-focused roles.
- Strong experience with Git-based development, source control, CI/CD pipelines, API integrations, and software testing practices.
- Proficiency in Python, Go, PowerShell, JavaScript, or a similar programming or scripting language.
- Experience with modern cloud platforms and infrastructure technologies.
- Strong analytical, troubleshooting, problem-solving, communication, and technical documentation skills.
- Ability to translate business requirements into technical specifications and implementation plans.
Nice to have
- Experience in Detection Engineering, Security Operations, Threat Detection, Incident Response, or Security Engineering.
- Familiarity with SIEM, EDR, enterprise logging, Sigma, Sysmon, Falco, and MITRE ATT&CK.
- Experience with Docker, Kubernetes, AWS, Azure, GCP, or multi-cloud environments.
- Experience with AI-powered development workflows, MCP, agentic coding, automated code review, and AI-assisted engineering.
Culture & Benefits
- Inclusive environment focused on collaboration, innovation, and continuous improvement.
- Profit sharing and a yearly company savings plan.
- 25 paid time-off days and 12 additional paid days off.
- Healthcare coverage for employees and families, lunch vouchers, and transportation support.
- 20 weeks of maternity leave and 7 weeks of paternity/co-parental leave.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →