Detection Engineer / Threat Detection Lead
College Recruiter, Inc
yesterday
Role details
Contract type
Permanent contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
English Experience level
SeniorJob location
Tech stack
Computer Security
Continuous Integration
Intrusion Detection and Prevention
Python
Powershell
Red Team (Cyber Security)
Security Information and Event Management
Mitre Att&ck
QRadar
Cyber Threat Analysis
GIT
Cybercrime
Microsoft Sentinel
Purple Team (Cyber Security)
Splunk
Job description
- Design, develop, and continuously improve detection rules across SIEM and XDR platforms.
- Lead proactive threat hunting activities to identify advanced threats before they become incidents.
- Own the complete detection lifecycle, from creation and testing through to optimisation and retirement.
- Work closely with Incident Response, Threat Intelligence, Red Team, and Purple Team functions.
- Build and enhance Detection-as-Code capabilities using modern engineering practices.
- Translate threat intelligence into meaningful, high-quality detections.
- Support cyber resilience programmes and strengthen the organisation's overall security posture.
- Provide technical leadership and mentor colleagues while helping shape the future direction of the detection capability.
Requirements
Are you passionate about staying one step ahead of cyber threats? We're looking for an experienced Senior Detection Engineer / Threat Detection Lead to take ownership of a growing threat detection capability within a highly regulated enterprise environment., * Extensive experience in Detection Engineering, Threat Hunting, or Security Operations.
- Strong knowledge of Microsoft Sentinel, Splunk, QRadar, or similar SIEM technologies.
- Experience working with MITRE ATT&CK, Threat Intelligence, Incident Response, and Purple Team engagements.
- Knowledge of Detection-as-Code, automation, CI/CD, Git, Python, or PowerShell is highly desirable.
- Strong stakeholder management and leadership skills.
- Experience within Financial Services, Critical Infrastructure, Government, or other highly regulated sectors is advantageous.