Principal Detection Engineer, Threat Detection
3 days ago
GlaxoSmithKline is seeking a highly skilled and proactive Detection Engineer to join our dynamic CSO team. The successful candidate will be instrumental in developing, implementing, and maintaining advanced systems to detect and neutralize cyber threats and vulnerabilities. With a solid foundation in information security, system monitoring, and incident response, the Detection Engineer will be at the forefront of safeguarding our digital infrastructure.
Responsibilities:- Craft, own, and enhance default rules for our SIEM platform, ensuring robust detection across various data sources and timeframes.
- Develop and implement SOAR workflows to automate incident response tasks.
- Document SIEM configurations, detection rules, and incident response procedures.
- Conduct thorough false positive analysis and contribute to the continuous improvement of our detection capabilities.
- Design and manage sophisticated security detection systems to pinpoint threats and malicious activities.
- Refine detection rules and algorithms to minimize false positives and guarantee prompt threat detection.
- Analyse security logs, alerts, and outputs from diverse sources to interpret potential security incidents.
- Validate and investigate security incidents, employing a range of tools and methods.
- Work in tandem with the incident response team to assist in analysing and containing incidents.
- Stay updated on emerging cybersecurity threats and trends to maintain cutting-edge detection strategies.
- Regularly reassess and refine the company's security policies and protocols related to detection.
- Offer technical expertise and training to team members and stakeholders on detection tools and best practices.
- Lead the development of automated processes for detecting and mitigating security events.
- Document findings comprehensively, maintaining essential technical documentation.
- Proficient in writing behavioural detection rules for SIEM, WAF, or similar platforms; familiarity with YARA or static detections is advantageous.
- Knowledge of the MITRE ATT&CK Matrix and experience in building detections within this framework.
- Skilled in scripting and programming languages, particularly Python, proficiency in writing regular expressions (regex).
- Understanding of Detection Engineering processes, including backlog prioritization, writing tests.
- Experience in creating and managing detections for cybersecurity products, and working in a SOC or similar environment is beneficial.
- Strong analytical skills with a focus on false positive analysis.
- Comprehensive knowledge of cybersecurity frameworks, threat intelligence, and industry best practices.
- Exceptional communication and teamwork capabilities.
- Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent professional experience years).
- Demonstrated expertise in security monitoring, threat hunting, and incident response.
- In-depth knowledge of network protocols, operating systems, and secure architectures.
- Experience with various security technologies, including SIEM, IDS/IPS, and firewalls.
- Proficiency in scripting or programming languages is a plus.
- Familiarity with compliance and regulatory frameworks such as GDPR, HIPAA, NIST, or ISO is advantageous.
- Professional certifications like CISSP, GCIH, Splunk Certifications (SIEM & SOAR), ATT&CK Threat Hunting and Detection Engineering Certification, GIAC Certified Detection Analyst (GCDA), GIAC Cloud Threat Detection (GCTD) or equivalent are highly desirable.
- Strong abilities in communication and collaboration.
Uniting science, technology and talent to get ahead of disease together.
GSK is a global biopharma company with a special purpose to unite science, technology and talent to get ahead of disease together so we can positively impact the health of billions of people and deliver stronger, more sustainable shareholder returns as an organisation where people can thrive. We prevent and treat disease with vaccines, specialty and general medicines. We focus on the science of the immune system and the use of new platform and data technologies, investing in four core therapeutic areas (infectious diseases, HIV, respiratory/ immunology and oncology).
Our success absolutely depends on our people. While getting ahead of disease together is about our ambition for patients and shareholders, its also about making GSK a place where people can thrive. We want GSK to be a place where people feel inspired, encouraged and challenged to be the best they can be. A place where they can be themselves feeling welcome, valued, and included. Where they can keep growing and look after their wellbeing. So, if you share our ambition, join us at this exciting moment in our journey to get Ahead Together.
Important notice to Employment businesses/ AgenciesGSK does not accept referrals from employment businesses and/or employment agencies in respect of the vacancies posted on this site. All employment businesses/agencies are required to contact GSK's commercial and general procurement/human resources department to obtain prior written authorization before referring any candidates to GSK. The obtaining of prior written authorization is a condition precedent to any agreement (verbal or written) between the employment business/ agency and GSK. In the absence of such written authorization being obtained any actions undertaken by the employment business/agency shall be deemed to have been performed without the consent or contractual agreement of GSK. GSK shall therefore not be liable for any fees arising from such actions or any fees arising from any referrals by employment businesses/agencies in respect of the vacancies posted on this site.
It has come to our attention that the names of GlaxoSmithKline or GSK or our group companies are being used in connection with bogus job advertisements or through unsolicited emails asking candidates to make some payments for recruitment opportunities and interview. Please be advised that such advertisements and emails are not connected with the GlaxoSmithKline group in any way.
GlaxoSmithKline does not charge any fee whatsoever for recruitment process. Please do not make payments to any individuals/entities in connection with recruitment with any GlaxoSmithKline (or GSK) group company at any worldwide location. Even if they claim that the money is refundable.
If you come across unsolicited email from email addresses not ending in or job advertisements which state that you should contact an email address that does not end in , you should disregard the same and inform us by emailing , so that we can confirm to you if the job is genuine.
Locations: Bangalore
-
Senior Detection Engineer
2 weeks ago
Bengaluru, Karnataka, India Vectra Full time ₹ 12,00,000 - ₹ 36,00,000 per yearVectra is the leader in AI-driven threat detection and response for hybrid and multi-cloud enterprises.The Vectra AI Platform delivers integrated signal across public cloud, SaaS, identity, and data center networks in a single platform. Powered by patented Attack Signal Intelligence, it empowers security teams to rapidly prioritize, investigate and respond...
-
Senior Detection Engineer
2 weeks ago
Bengaluru, Karnataka, India Vectra AI Full time ₹ 12,00,000 - ₹ 36,00,000 per yearVectra is the leader in AI-driven threat detection and response for hybrid and multi-cloud enterprises.The Vectra AI Platform delivers integrated signal across public cloud, SaaS, identity, and data center networks in a single platform. Powered by patented Attack Signal Intelligence, it empowers security teams to rapidly prioritize, investigate and respond...
-
Senior Detection Engineer
3 days ago
Bengaluru, Karnataka, India Vectra AI Full timeDescription : Vectra is the leader in AI-driven threat detection and response for hybrid and multi-cloud enterprises. The Vectra AI Platform delivers integrated signal across public cloud, SaaS, identity, and data center networks in a single platform. Powered by patented Attack Signal Intelligence, it empowers security teams to rapidly...
-
AVP Platform Engineer
4 days ago
Bengaluru, Karnataka, India MUFG Full time ₹ 20,00,000 - ₹ 25,00,000 per yearAbout Us:MUFG Bank, Ltd. is Japan's premier bank, with a global network spanning in more than 40 markets. Outside of Japan, the bank offers an extensive scope of commercial and investment banking products and services to businesses, governments, and individuals worldwide. MUFG Bank's parent, Mitsubishi UFJ Financial Group, Inc. (MUFG) is one of the world's...
-
Senior Software Test Engineer
2 weeks ago
Bengaluru, Karnataka, India Smiths Detection Full time ₹ 20,00,000 - ₹ 25,00,000 per yearJob Title: Senior Software Test EngineerCompany Description:Every minute of every day, Smiths Detection's threat detection and security screening technology helps to protect people and infrastructure, making the world a safer place.Smiths Detection, part of Smiths Group is a global leader in the development, manufacture and management of security and...
-
Quality Engineer- Automated Detection
2 weeks ago
Bengaluru, Karnataka, India Arctic Wolf Full time ₹ 15,00,000 - ₹ 25,00,000 per yearAbout The JobAt Arctic Wolf, we're not just navigating the cybersecurity landscape - we're redefining it. Our global team of dedicated Pack members is driving innovation and setting new industry standards every day. Our impact speaks for itself: we've earned recognition on theForbes Cloud 100, CNBC Disruptor 50, Fortune Future 50, and Fortune Cyber 60lists,...
-
Quality Engineer- Automated Detection
2 weeks ago
Bengaluru, Karnataka, India Arctic Wolf Full time ₹ 6,00,000 - ₹ 12,00,000 per yearAbout the jobAt Arctic Wolf, we're not just navigating the cybersecurity landscape - we're redefining it. Our global team of dedicated Pack members is driving innovation and setting new industry standards every day. Our impact speaks for itself: we've earned recognition on the Forbes Cloud 100, CNBC Disruptor 50, Fortune Future 50, and Fortune Cyber...
-
Vice President
1 day ago
Bengaluru, Karnataka, India MUFG Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAbout Us:MUFG Bank, Ltd. is Japan's premier bank, with a global network spanning in more than 40 markets. Outside of Japan, the bank offers an extensive scope of commercial and investment banking products and services to businesses, governments, and individuals worldwide. MUFG Bank's parent, Mitsubishi UFJ Financial Group, Inc. (MUFG) is one of the world's...
-
Security Researcher-Automated Detection
2 weeks ago
Bengaluru, Karnataka, India Arctic Wolf Full time ₹ 6,00,000 - ₹ 12,00,000 per yearAbout The JobAt Arctic Wolf, we're not just navigating the cybersecurity landscape - we're redefining it. Our global team of dedicated Pack members is driving innovation and setting new industry standards every day. Our impact speaks for itself: we've earned recognition on theForbes Cloud 100, CNBC Disruptor 50, Fortune Future 50, and Fortune Cyber 60lists,...
-
Senior Developer-Automated Detection
1 week ago
Bengaluru, Karnataka, India Arctic Wolf Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAbout The JobAt Arctic Wolf, we're not just navigating the cybersecurity landscape - we're redefining it. Our global team of dedicated Pack members is driving innovation and setting new industry standards every day. Our impact speaks for itself: we've earned recognition on theForbes Cloud 100, CNBC Disruptor 50, Fortune Future 50, and Fortune Cyber 60lists,...