Назад
2 дня назад

Lead Detection Engineer (AI)

Формат работы
onsite
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
Israel
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Lead Detection Engineer (Cybersecurity): Establishing the detection engineering strategy, standards, and automation for a full-stack AI cloud platform with an accent on Detection-as-Code pipelines and high-fidelity behavioral detections. Focus on building scalable detection architectures, reducing false positives, and translating threat intelligence into evasion-resistant detections.

Location: Must be based in Israel (Tel Aviv)

Company

Nebius is building a full-stack AI cloud platform that supports developers and enterprises from data and model training through to production deployment.

What you will do

  • Set the technical direction for detection engineering, including standards, tooling, and coverage strategy.
  • Implement a Detection-as-Code pipeline incorporating version control, CI/CD, and peer review practices.
  • Design and build high-fidelity behavioral detections across SIEM and EDR platforms.
  • Research emerging attacker techniques to translate threat intelligence into scalable, evasion-resistant detections.
  • Collaborate with SOC analysts to optimize the feedback loop between detections and real investigations.
  • Define and track detection engineering metrics to communicate coverage posture to security leadership.

Requirements

  • Minimum 3 years of experience in detection engineering, security operations, or hybrid offensive/defensive roles.
  • Demonstrated experience leading detection engineering work as a senior technical contributor.
  • Strong understanding of attacker tradecraft and adversary behavior.
  • Hands-on experience with enterprise SIEM and EDR platforms (e.g., Splunk, Microsoft Sentinel, CrowdStrike).
  • Proficiency in query development using SPL, KQL, Sigma, or similar languages.
  • Applicants must be authorized to work in Israel.

Nice to have

  • Offensive security background or relevant certifications.
  • Experience with threat hunting and detection validation frameworks.
  • Experience designing SOAR playbooks and automated response workflows.
  • Cloud security depth across Azure, AWS, or GCP.
  • Experience building AI-assisted detection, investigation, or triage workflows.

Culture & Benefits

  • Competitive compensation and international environment.
  • Career growth, learning opportunities, and a collaborative culture.
  • High degree of ownership and flexibility.
  • Opportunity to work on impactful projects shaping the future of AI.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →