Назад
3 часа Π½Π°Π·Π°Π΄

Principal Detection Engineer (Cybersecurity)

Π€ΠΎΡ€ΠΌΠ°Ρ‚ Ρ€Π°Π±ΠΎΡ‚Ρ‹
remote (Ρ‚ΠΎΠ»ΡŒΠΊΠΎ United_kingdom)
Π’ΠΈΠΏ Ρ€Π°Π±ΠΎΡ‚Ρ‹
fulltime
Π“Ρ€Π΅ΠΉΠ΄
senior
Английский
b2
Π‘Ρ‚Ρ€Π°Π½Π°
UK
Вакансия ΠΈΠ· списка Hirify.GlobalВакансия ΠΈΠ· Hirify RU Global, списка ΠΊΠΎΠΌΠΏΠ°Π½ΠΈΠΉ с восточно-СвропСйскими корнями
Для мэтча ΠΈ ΠΎΡ‚ΠΊΠ»ΠΈΠΊΠ° Π½ΡƒΠΆΠ΅Π½ Plus

ΠœΡΡ‚Ρ‡ & Π‘ΠΎΠΏΡ€ΠΎΠ²ΠΎΠ΄

Для мэтча с этой вакансиСй Π½ΡƒΠΆΠ΅Π½ Plus

ОписаниС вакансии

ВСкст:
/
TL;DR
Principal Detection Engineer (Cybersecurity): Building cross-domain threat detection coverage across endpoint, cloud, NG-SIEM, identity, SaaS security, and FEM with an accent on high-fidelity correlation logic, threat-informed prioritization, and AI-assisted workflows. Focus on correlating telemetry across security surfaces, closing detection gaps, guiding detection engineers, and improving platform capabilities against rapidly evolving adversary campaigns.

Location: United Kingdom - Remote

Company

Cybersecurity company providing an AI-native platform for detecting and preventing breaches across large-scale distributed systems.

What you will do

  • Own the cross-domain detection strategy across endpoint, cloud, NG-SIEM, identity, SaaS security, and FEM.
  • Design high-fidelity correlation detections using entity resolution, temporal reasoning, behavioral layering, and Platform IOAs.
  • Translate internal and external threat intelligence into detection priorities and multi-domain coverage.
  • Coordinate detection development across teams so cross-domain scenarios receive consistent coverage.
  • Apply AI and large language models to gap analysis, threat-intelligence triage, and correlation-logic prototyping.
  • Coach detection engineers, set technical standards, and influence telemetry and platform direction.

Requirements

  • Extensive experience writing production detection content across multiple platforms or data domains.
  • Experience designing or contributing to detections that correlate signals across endpoint, cloud, identity, SaaS, network, or runtime environments.
  • Strong knowledge of threat actors, campaigns, TTPs, detection content lifecycles, telemetry limitations, false-positive drift, and detection performance.
  • Strong communication, cross-team influence, technical leadership, and experience mentoring or reviewing detection engineers.
  • Proven experience using AI technologies to improve decision-making, workflows, efficiency, and business outcomes.

Nice to have

  • Experience applying AI or LLMs to detection or security operations workflows.
  • EDR or SIEM vendor-side product experience and MITRE ATT&CK fluency.
  • Published security research, malware analysis, or reverse engineering experience.
  • Experience quantifying detection efficacy, including precision, recall, and bypass resistance.

Culture & Benefits

  • Full-time employment with compensation and equity awards.
  • Physical and mental wellness programs.
  • Competitive vacation, holidays, and paid parental and adoption leave.
  • Professional development opportunities for all employees.
  • Employee networks, geographic neighborhood groups, and volunteer opportunities.
  • Equal employment opportunity and support for veterans and individuals with disabilities.

Π‘ΡƒΠ΄ΡŒΡ‚Π΅ остороТны: Ссли Ρ€Π°Π±ΠΎΡ‚ΠΎΠ΄Π°Ρ‚Π΅Π»ΡŒ просит Π²ΠΎΠΉΡ‚ΠΈ Π² ΠΈΡ… систСму, ΠΈΡΠΏΠΎΠ»ΡŒΠ·ΡƒΡ iCloud/Google, ΠΏΡ€ΠΈΡΠ»Π°Ρ‚ΡŒ ΠΊΠΎΠ΄/ΠΏΠ°Ρ€ΠΎΠ»ΡŒ, Π·Π°ΠΏΡƒΡΡ‚ΠΈΡ‚ΡŒ ΠΊΠΎΠ΄/ПО, Π½Π΅ Π΄Π΅Π»Π°ΠΉΡ‚Π΅ этого - это мошСнники. ΠžΠ±ΡΠ·Π°Ρ‚Π΅Π»ΡŒΠ½ΠΎ ΠΆΠΌΠΈΡ‚Π΅ "ΠŸΠΎΠΆΠ°Π»ΠΎΠ²Π°Ρ‚ΡŒΡΡ" ΠΈΠ»ΠΈ ΠΏΠΈΡˆΠΈΡ‚Π΅ Π² ΠΏΠΎΠ΄Π΄Π΅Ρ€ΠΆΠΊΡƒ. ΠŸΠΎΠ΄Ρ€ΠΎΠ±Π½Π΅Π΅ Π² Π³Π°ΠΉΠ΄Π΅ β†’