Назад
Company hidden
4 дня назад

Senior Cyber Use Case Developer (Cybersecurity)

62 200 - 93 300
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Ireland
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Cyber Use Case Developer (Cybersecurity): Designing, testing, and continuously improving advanced security monitoring use cases across SIEM, EDR, XDR, cloud, identity, network, endpoint, and application telemetry with an accent on threat-informed detection engineering and enterprise coverage. Focus on translating adversary behaviours into high-fidelity detection logic, reducing false positives, measuring detection performance, and strengthening monitoring through purple-team and attack-simulation exercises.

Location: Waterford, Ireland

Salary: €62,200–€93,300 per year, plus eligibility for a discretionary annual incentive award.

Company

hirify.global provides financial security and health-related services to individuals, families, and communities.

What you will do

  • Lead the design, development, testing, tuning, and lifecycle management of detection use cases across SIEM, EDR, XDR, cloud, identity, network, endpoint, and application telemetry.
  • Translate threat intelligence, adversary behaviours, incident learnings, and business risks into scalable detection logic aligned with MITRE ATT&CK and other security frameworks.
  • Assess telemetry coverage, data quality, parsing, normalization, and logging gaps, partnering with engineering teams to improve detection readiness.
  • Drive alert-quality improvements through enrichment, suppression logic, threshold refinement, and structured false-positive reduction.
  • Support purple-team, attack-simulation, breach-and-attack-emulation, tabletop, and control-validation exercises.
  • Measure detection performance and mentor team members through peer reviews, technical training, documentation, and continuous improvement.

Requirements

  • At least 5 years of experience in security operations, detection engineering, threat hunting, incident response, cyber threat intelligence, security engineering, or a related cybersecurity function.
  • Degree or equivalent practical experience in cybersecurity, information technology, computer science, information systems, engineering, or a related field.
  • Hands-on enterprise experience with SIEM content engineering, alert tuning, detection use case development, and lifecycle management.
  • Advanced experience with SIEM, EDR, XDR, cloud security, identity, network, endpoint, and application telemetry.
  • Proficiency with detection and query languages such as SPL, KQL, SQL, Sigma, YARA, Python, PowerShell, or regular expressions.
  • Strong knowledge of attacker behaviours, malware techniques, identity-based attacks, MITRE ATT&CK, NIST, CIS Controls, and threat-informed defence.

Nice to have

  • Certifications such as CompTIA CySA+, GIAC certifications, CISSP, Microsoft Security, Splunk, cloud security certifications, or MITRE ATT&CK Defender.

Culture & Benefits

  • Work with colleagues and leaders who support professional growth, knowledge sharing, and continuous improvement.
  • Base salary is accompanied by eligibility for a discretionary annual incentive award based on individual and business performance.
  • Commitment to pay transparency and equitable compensation.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →