Threat Detection & Automation Engineer
Core
Design, build, and operate production-grade security detection infrastructure and automation workflows to enable end-to-end threat detection, response, and reporting within enterprise cybersecurity operations.
Role type
Senior Threat Detection & Automation Engineer
Builds
Resilient detection infrastructure, integrations, and automation services for enterprise-scale security operations
Domain
Cybersecurity / Fintech
Deliverable
production ML models | product features | dashboards & analysis
Required skills
Threat detection engineering, SIEM tuning, SOAR platform development, Python scripting, API integration design, MITRE ATT&CK mapping, telemetry lifecycle management, SQL, event-driven patterns
Preferred skills
Google SecOps experience, AI/ML for cybersecurity analytics, prompt engineering, infrastructure as code, CI/CD pipelines
Technologies
Python, SQL, PowerShell, Bash, REST, JSON, OAuth, Terraform, Google SecOps, MITRE ATT&CK
Responsibilities
Research adversarial techniques and translate behaviors into high-fidelity detections; Design and operate security detection infrastructure; Lead telemetry and detection lifecycles; Develop custom integrations and automations; Create dashboards and threat reports; Collaborate with threat intelligence and incident response teams
Seniority
Senior, hands-on IC