- Posted a month ago
- Be among the first 30 applicants
Job Description
Job Summary:
- Seeking a Senior Staff Engineer with 10–12 years of hands-on experience.
- Responsible for technically leading and driving complex detection engineering initiatives across the organization.
- Requires strong leadership, a deep technical foundation in detections, and a passion for delivering best-in-class detections.
- Responsible for building and optimizing detection content and working on the roadmap to build new content.
Primary Responsibilities:
- Technically lead and drive Content Engineering projects (Detection Engineering) across cloud and on-prem environments.
- Collaborate with product, analytics, and business teams to define and prioritize detection engineering initiatives.
- Evaluate and integrate technologies required to enhance and strengthen the process of building detections.
- Actively participate in incident management, root cause analysis, and performance tuning.
- Identify, design, and implement internal process improvements: automating manual processes, optimizing detection, etc.
- Identify product/process limitations for content-based initiatives and propose plausible solutions.
- Identify and build prototypes for new detection abilities to reduce MTD of threats.
- Implement and use Breach and Attack Simulation Platform for better content delivery.
- Mentor and guide junior content engineers, driving best practices, code quality, and documentation.
Skill Set:
Must-Have Skills:
- 10–12 years of experience in Cybersecurity as a Detection Engineer or related roles, with a proven track record of driving initiatives end-to-end.
- Experience in technically leading the SOC.
- Understanding of the MITRE ATT&CK Framework.
- Knowledge of prominent attacker TTPs and building detections for the same.
- Solid understanding of cyber threats and attack vectors.
- Proficient with security technologies such as SIEM, EDR, IDS, IPS, network traffic analysis, endpoint security controls, and SOAR.
- Experience with one or more cloud platforms: AWS, GCP, or Azure.
- Strong fundamentals in network and operating systems concepts.
- Experience working with offensive security testing tools.
- Strong communication skills, especially in writing technical documentation.
Preferred Skills:
- Past experience in detection development with multiple SIEM vendors.
- Experience with Python automation development (good to have).
- Prior cloud detection content experience.
More Info
About Company
Securonix is transforming how security operations are delivered, measured, and scaled. Our Unified Defense SIEM combines SIEM, UEBA, SOAR, TIP, and TDIR in a single cloud-native platform that helps security teams detect threats faster, investigate with context, and respond with precision. No more silos. No more guesswork.
We do more than unify the SOC. We improve its economics. With outcome-based pricing, modular automation, and full control over data pipelines, customers reduce storage and compute costs by up to 50 percent. Analyst efficiency improves by 50 percent, and response times are reduced by as much as 60 percent.
At the core is Agentic AI, a modular set of intelligent agents that automate triage, threat hunting, investigation, and response. These agents deliver explainable, policy-aligned decisions that reduce manual workload and accelerate action.
Built natively on Snowflake and AWS, Securonix provides elastic performance and long-term scalability. Our Data Pipeline Manager gives security teams complete control over how telemetry is collected, routed, and stored, optimizing cost while preserving visibility and compliance.
Securonix is proud to be recognized as a Leader in the 2025 Gartner® Magic Quadrant™ for SIEM for the fifth consecutive year, and as a Gartner Peer Insights™ Customers’ Choice. Global enterprises trust us to modernize their SOC, reduce risk, and deliver outcomes that matter.
Modular by design and open by architecture, Securonix gives teams the flexibility to start with what matters most and scale as they grow.
