Threat Detection Engineer
6 days ago
Role & responsibilities
- Experience in migrating threat detection use cases from an MSSP to an in-house Splunk SIEM.
- Expertise in SIEM platforms (Splunk preferred), including writing and tuning correlation/scheduled search rules.
- Ability to interpret detection logic and replicate from legacy to target SIEM environments.
- Familiarity with MITRE ATT&CK/Kill Chain frameworks for mapping detection logic.
- Familiarity with log analysis, incident response, security operations, email and cloud security solutions, Python scripting, SOAR, SIEM, EDR, IPS, and firewalls.
- Strong written and verbal communication skills for collaboration and reporting.
- Experience collaborating with SOC teams in an enterprise environment.
- Time management skills to meet project milestones and deadlines.
Preferred candidate profile
- Use Case & Detection Migration: Review existing detection rules/use cases from our current MSSP.
- Re-create, validate, and tune detection logic in Splunk SIEM according to established templates and requirements.
- Collaboration & Documentation: Work closely with internal SOC and Deloitte L1/L2 teams to gather requirements, clarify use case functionality, and ensure detection rules operate as intended in the in-house SIEM.
- Document migrated rules, dependencies, and outcomes for effective handover.
- Testing & Tuning: Validate migrated use cases with simulated data to ensure proper alerting, minimize false positives, and verify coverage.
- Tune alerts as needed based on feedback from the security operations team.
- Progress Reporting: Provide regular status reports on migration progress, challenges, and completion metrics.
-
Sr Threat Detection Engineer
3 weeks ago
Delhi, India Insight Global Full time** 6 month contract with multi year extension****25/LPA to 35/LPA**Exact compensation may vary based on several factors, including skills, experience, and education.We are seeking a highly experienced Senior Detection Engineer to lead the development and optimization of advanced threat detection and response capabilities. This role requires deep expertise in...
-
Sr threat detection engineer
2 weeks ago
Delhi, India Insight Global Full time** 6 month contract with multi year extension****25/LPA to 35/LPA**Exact compensation may vary based on several factors, including skills, experience, and education.We are seeking a highly experienced Senior Detection Engineer to lead the development and optimization of advanced threat detection and response capabilities. This role requires deep expertise in...
-
Sr threat detection engineer
3 weeks ago
Delhi, India Insight Global Full time** 6 month contract with multi year extension****25/LPA to 35/LPA**Exact compensation may vary based on several factors, including skills, experience, and education.Benefit packages for this role will start on the 31st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement...
-
Sr Threat Detection Engineer
4 weeks ago
Delhi, India Insight Global Full time** 6 month contract with multi year extension****25/LPA to 35/LPA**Exact compensation may vary based on several factors, including skills, experience, and education.Benefit packages for this role will start on the 31st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement...
-
Sr threat detection engineer
4 weeks ago
Delhi, India Insight Global Full time** 6 month contract****25/LPA to 35/LPA**Exact compensation may vary based on several factors, including skills, experience, and education.Benefit packages for this role will start on the 31st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer...
-
Detection Engineer – SIEM/EDR
5 days ago
New Delhi, India ThreatLens Full timeCompany DescriptionThreatLens is a cutting-edge cybersecurity company specializing in advanced threat intelligence solutions powered by AI and Large Language Models (LLMs). Our platform enhances organizations' cybersecurity efforts by enabling proactive detection and swift responses to sophisticated threats. By integrating LLM-driven insights, we provide...
-
Detection Engineer – SIEM/EDR
3 days ago
New Delhi, India ThreatLens Full timeCompany Description ThreatLens is a cutting-edge cybersecurity company specializing in advanced threat intelligence solutions powered by AI and Large Language Models (LLMs). Our platform enhances organizations' cybersecurity efforts by enabling proactive detection and swift responses to sophisticated threats. By integrating LLM-driven insights, we provide...
-
Threat Detection and Incident Analyst
1 week ago
Hyderabad, India Tata Consultancy Services Full timeWe await your innovation at TCS: Hiring |Security Operations Center Analyst|Greetings from TCS!! Required Total Experience: 5+ yearsWork location: Hyderabad, Bangalore. Required Technical Skill Set:5–8 years of SOC or relevant cybersecurity experience, preferably with time in a L2 SOC roleRequired Skills Proficiency with SIEM tools (Splunk, QRadar, or...
-
Product Leader – AI-Powered Threat Detection
2 weeks ago
New Delhi, India CareerXperts Consulting Full timeWe’re looking for a hands-on Product Leader to drive the strategy, design, and scale of our AI-powered threat investigation and response platform.If you’ve evolved from detection engineering or SOC operations into product leadership, and love building structured, extensible content pipelines for AI-first security, this is for you.What You’ll Do- Lead...
-
Threat Researcher
4 hours ago
Hyderabad, India Aptita Full time#LI-PS1 Title: Threat Researcher Years of Experience: 5 years of relevant experience (Cybersecurity Industry is preferred). Location: Hyderabad/Remote Shift: Morning or Afternoon shift Notice period: Immediate to 30 days Email to: Core Skills: 5 yrs of experience, or 50+ EDR rules if heshe doesn't have the 5 yrs of experience. Note, I wouldn't...