Senior Cyber Security Engineer - Blue Team
Core
Design, write, and tune detection/SIEM/XDR rules; respond to security alerts and incidents; maintain security posture across cloud, network, and endpoint environments.
Role type
Senior IC detection engineering and blue-team operations engineer
Builds
Detection logic, alerting workflows, incident response playbooks, and security dashboards
Domain
Cybersecurity (Blue Team, Detection Engineering, Incident Response)
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure
Required skills
SIEM/XDR rule authoring and tuning, log analysis and event correlation, incident triage and response, vulnerability assessment and threat hunting, security tool configuration (firewalls, IDS/IPS, EDR), cloud security (AWS/Azure), IAM, scripting (Python/PowerShell/Bash), security frameworks and compliance
Preferred skills
SOAR platform experience, cloud-native security environments, multi-cloud deployments, CISSP/CISM/CEH certifications
Technologies
SIEM, XDR, IDS/IPS, NDR, firewalls, endpoint protection, cloud-security tools, SOAR, Python, PowerShell, Bash
Responsibilities
Design and maintain detection logic/rules for SIEM/XDR; triage and investigate security alerts; perform vulnerability assessments and threat hunting; automate security operations via scripts/workflows; participate in incident response (containment, mitigation, root-cause analysis); collaborate with IT/DevOps to embed security best practices; maintain security policies and compliance frameworks
Seniority
Senior, hands-on IC
