8 ΡΠ°ΡΠΎΠ² Π½Π°Π·Π°Π΄
Senior Detection Engineer (Cybersecurity)
ΠΡΡΡ & Π‘ΠΎΠΏΡΠΎΠ²ΠΎΠ΄
ΠΠ»Ρ ΠΌΡΡΡΠ° Ρ ΡΡΠΎΠΉ Π²Π°ΠΊΠ°Π½ΡΠΈΠ΅ΠΉ Π½ΡΠΆΠ΅Π½ Plus
ΠΠΏΠΈΡΠ°Π½ΠΈΠ΅ Π²Π°ΠΊΠ°Π½ΡΠΈΠΈ
Π’Π΅ΠΊΡΡ:
TL;DR
Senior Detection Engineer (Cybersecurity): Building and maintaining high-quality detection content for endpoint, cloud/SaaS, identity, email, or SIEM environments with an accent on ATT&CK coverage, detection fidelity, and threat analysis. Focus on owning a detection domain, solving complex detector design challenges, reducing false positives and missed threats, and improving workflows through AI-driven automation and CI/CD.
Location: Hybrid role in Pune, India
Company
develops a cloud-native Zero Trust Exchange platform that uses security data and AI to protect customers from cyberattacks and data loss.
What you will do
- Own the health, backlog prioritization, technical direction, and overall efficacy of a detection coverage area.
- Design and implement complex detectors while establishing design patterns, coding standards, and implementation blueprints.
- Define criteria for validated, tuned, and maintainable detection content through design reviews, code reviews, and root-cause analysis.
- Track detection fidelity, ATT&CK coverage, false-positive and false-negative rates, and regression prevention.
- Translate threat intelligence, proactive threat hunting, and SOC analyst feedback into roadmap priorities and engine improvements.
Requirements
- Foundational understanding of AI/ML technologies and experience leveraging, securing, or positioning AI-driven solutions.
- Deep detection experience in at least one area: Endpoint/MDR, Cloud/SaaS, Identity, Email, or SIEM.
- Experience owning technical work end-to-end and being accountable for quality with limited oversight.
- Strong understanding of attacker behavior and fluent use of the MITRE ATT&CK framework.
- Experience with detector-as-code, version control, code review, and controlled deployment using Git and CI/CD.
Nice to have
- Experience using AI-driven automation, LLMs, or machine learning models for detection engineering and threat analysis.
- Programming or scripting experience with Python, Go, Ruby, or similar languages.
- Reverse engineering or advanced malware analysis experience.
Culture & Benefits
- Inclusive environment focused on collaboration, ownership, accountability, and constructive feedback.
- Health plans, vacation and sick time, parental leave, retirement options, and education reimbursement.
- In-office perks and support for employees and their families.
ΠΡΠ΄ΡΡΠ΅ ΠΎΡΡΠΎΡΠΎΠΆΠ½Ρ: Π΅ΡΠ»ΠΈ ΡΠ°Π±ΠΎΡΠΎΠ΄Π°ΡΠ΅Π»Ρ ΠΏΡΠΎΡΠΈΡ Π²ΠΎΠΉΡΠΈ Π² ΠΈΡ ΡΠΈΡΡΠ΅ΠΌΡ, ΠΈΡΠΏΠΎΠ»ΡΠ·ΡΡ iCloud/Google, ΠΏΡΠΈΡΠ»Π°ΡΡ ΠΊΠΎΠ΄/ΠΏΠ°ΡΠΎΠ»Ρ, Π·Π°ΠΏΡΡΡΠΈΡΡ ΠΊΠΎΠ΄/ΠΠ, Π½Π΅ Π΄Π΅Π»Π°ΠΉΡΠ΅ ΡΡΠΎΠ³ΠΎ - ΡΡΠΎ ΠΌΠΎΡΠ΅Π½Π½ΠΈΠΊΠΈ. ΠΠ±ΡΠ·Π°ΡΠ΅Π»ΡΠ½ΠΎ ΠΆΠΌΠΈΡΠ΅ "ΠΠΎΠΆΠ°Π»ΠΎΠ²Π°ΡΡΡΡ" ΠΈΠ»ΠΈ ΠΏΠΈΡΠΈΡΠ΅ Π² ΠΏΠΎΠ΄Π΄Π΅ΡΠΆΠΊΡ. ΠΠΎΠ΄ΡΠΎΠ±Π½Π΅Π΅ Π² Π³Π°ΠΉΠ΄Π΅ β
ΠΠΎΡ ΠΎΠΆΠΈΠ΅ Π²Π°ΠΊΠ°Π½ΡΠΈΠΈ
21 ΡΠ°Ρ Π½Π°Π·Π°Π΄
Senior Security Engineer (Microsoft Sentinel SIEM)
6 Π΄Π½Π΅ΠΉ Π½Π°Π·Π°Π΄
Lead Information Security Analyst (Cybersecurity)
3 ΡΠ°ΡΠ° Π½Π°Π·Π°Π΄
Senior Security Research Engineer (Cybersecurity)
8 ΡΠ°ΡΠΎΠ² Π½Π°Π·Π°Π΄
Security Engineer (Cloud Security)
21 ΡΠ°Ρ Π½Π°Π·Π°Π΄
Security Engineer ll β Microsoft Sentinel SIEM
22 ΡΠ°ΡΠ° Π½Π°Π·Π°Π΄