Turn threat understanding into durable, testable detections across modern enterprise and cloud environments.
What you'll do
- Develop and validate behavior-based detections mapped to adversary techniques.
- Create detection-as-code workflows, test data, and coverage metrics.
- Partner with incident responders to convert lessons into better defenses.
What helps
- 4+ years in detection engineering, threat hunting, or incident response.
- Strong query skills across common SIEM or data platforms.
- Scripting and detection-as-code experience strongly preferred.