5 дней назад
Detection Engineering Lead (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Detection Engineering Lead (Cybersecurity) (Cloud and SaaS Security): Establishing and leading detection engineering in Taiwan while developing production security detections for identity threats, malicious activity, risky behavior, and emerging attack patterns with an accent on threat modeling, behavioral detection, telemetry design, and scalable production pipelines. Focus on measuring detection precision and recall, reducing false positives and negatives, mapping coverage to attack frameworks, and mentoring a Taiwan-based team within a global detection program.
Location: Taipei, Taiwan
Company
Security provides a SaaS security platform that helps enterprises reduce risk, detect and respond to threats, and prevent breaches across Microsoft 365, Salesforce, and other SaaS applications.
What you will do
- Establish and lead the detection engineering function in Taiwan, defining its technical direction, operating model, quality standards, and hiring plan.
- Research cloud, identity, and SaaS threats; develop threat models; and translate attacker behavior into actionable detection opportunities.
- Design, author, test, maintain, and tune detection rules and behavioral detection models.
- Partner with platform and data engineering teams to build telemetry, enrichment, correlation, historical context, and scalable production processing pipelines.
- Build detection testing, simulation, coverage measurement, versioning, release management, and lifecycle frameworks.
- Measure detection quality, investigate false positives and false negatives, document detection behavior, and mentor detection engineers and security researchers.
Requirements
- Significant experience in detection engineering, threat research, security analytics, incident response, threat hunting, or a closely related security discipline.
- Experience leading security research or detection initiatives and mentoring practitioners.
- Strong knowledge of attacker behavior, identity threats, cloud security, and enterprise SaaS environments.
- Experience developing production detections using rules, queries, correlations, statistical methods, or behavioral models, and working with large security datasets.
- Strong data analysis skills, with proficiency in relevant query, scripting, or programming languages.
- Strong written and verbal communication skills in English are required. Effective collaboration across regions, time zones, functions, and cultures is also required.
Nice to have
- Experience with identity security, SaaS security, cloud detection and response, SIEM, UEBA, EDR, or XDR products.
- Familiarity with identity-based attacks, MITRE ATT&CK, detection-as-code systems, rule languages, or automated validation frameworks.
- Experience applying machine learning, anomaly detection, or generative AI to security problems.
- Experience investigating real-world intrusions, working with incident response teams, or scaling detection engineering teams.
- Experience working in Taiwan or with globally distributed APAC teams; Mandarin proficiency.
Culture & Benefits
- Collaborate with teams across Taiwan, the US, the UK, and Australia on a unified global detection program.
- Build a culture of scientific rigor, curiosity, and continuous improvement.
- Work directly with Security Research, Product Management, platform engineering, data engineering, and Customer Success.
- Help deliver timely, explainable, and actionable security findings for enterprise customers.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
9 часов назад
SOC Analyst (Cybersecurity)
123 850 - 161 000$
5 дней назад
Staff Security Operations Engineer (Cybersecurity)
128 000 - 200 000$
6 дней назад
Security Engineer (AI)
6 дней назад
Security Engineer, Detection & Response
172 000 - 240 000$
2 дня назад
Security Engineer (Cybersecurity)
6 дней назад
Security Operations Lead (AI)
180 000 - 210 000$