As a Security Engineer (Detection & Response) you will:
Develop and maintain custom SIEM rules to enhance detection capabilities, ensuring broad coverage and minimal false positives.
Conduct proactive threat hunting to identify potential security gaps and emerging risks.
Investigate, triage, and respond to security incidents, ensuring timely resolution and accurate reporting.
Ensure systems are designed with robust monitoring, logging, and auditable controls for full security visibility.
Collaborate with development and operations teams to integrate threat monitoring and detection into system lifecycles.
Build and refine playbooks to streamline incident response and detection processes.
4+ years of experience in security engineering, detection and response, or related roles.
Advanced skills in custom SIEM rule creation and threat hunting.
Strong experience with threat detection platforms such as Upwind, Microsoft Defender, or Datadog.
Expertise in threat detection modeling, log analysis, and incident response processes.
Familiarity with AWS security tools, including CloudTrail, GuardDuty, and IAM configurations.
Proficiency in scripting languages like Python or Bash for automating security tasks.
Excellent analytical, troubleshooting, and collaboration skills.
Deep knowledge of Kubernetes and container security.
Certifications like AWS Security Specialty, OSCP, or GCIH.
Experience with red-teaming or adversarial simulation practices.
Familiarity with compliance standards like GDPR and SOC 2.
Be part of a globally distributed, diverse team driving innovation in AI and security.
Flexible remote work options with self-managed project timelines.
Opportunities to explore and implement the latest in security technology.
Access to training and growth resources to enhance your skills.