Talent.com
This job offer is not available in your country.
Senior Detection Engineer - MITRE ATT&CK framework - XDR - EDR - AI - Cyber Security Startup - Remote - CTC INR 50 L

Senior Detection Engineer - MITRE ATT&CK framework - XDR - EDR - AI - Cyber Security Startup - Remote - CTC INR 50 L

CareerXperts Consultingsurat, gujarat, in
13 hours ago
Job type
  • Remote
Job description

We’re seeking a Senior Detection Engineer to lead the next evolution of AI-augmented threat detection.

This role goes beyond traditional detection engineering : you’ll help improve and build our Detection Engineering Agent , responsible for continuously grading and improving detection coverage based on a customer’s available telemetry, configuration, and behavioral baselines.

You’ll work across multi-cloud , hybrid , and data-lake environments to design modular detections that don’t depend on centralized data storage, but instead leverage federated queries, metadata scoring, and AI-based prioritization.

The ideal candidate combines deep hands-on SIEM expertise with a product mindset : able to design scalable detection pipelines, integrate AI feedback, and quantify detection efficacy at enterprise scale.

Key Responsibilities

  • Design and maintain modular, high-fidelity detections using Sigma, KQL, SPL, Lucene, and other rule / query languages for Sentinel, Splunk, Chronicle, Elastic, and data-lake environments (Snowflake, BigQuery, Databricks).
  • Build and evolve Detection Engineering Agent , enabling real-time tracking, grading, and ranking of a customer’s environment based on data coverage, signal quality, and rule performance.
  • Develop detections that operate without centralized storage , leveraging federated queries, streaming analytics, and metadata summarization instead of raw data ingestion.
  • Quantify coverage gaps across identity, endpoint, cloud, network, and SaaS telemetry; collaborate cross-functionally to enhance observability and threat visibility.
  • Integrate AI and ML models for automated rule tuning, false positive reduction, and behavioral correlation.
  • Implement feedback-driven rule lifecycle management , including performance tracking (TP / FP / FN), version control, and graceful rule deprecation or promotion.
  • Collaborate with SOC, data science, and platform teams to continuously improve detection quality and automate enrichment or response actions via SOAR platforms.

Manage detection-as-code pipelines , ensuring CI / CD integration, modular content reuse, and full traceability of changes.

Required Skills

  • 5+ years of experience in detection engineering, threat hunting, and SOC operations .
  • Expertise in at least two major SIEMs (Sentinel, Google SecOps / Chronicle, Splunk) and data-lake query environments (Snowflake / Databricks).
  • Strong command of Sigma, KQL, SPL, or Lucene , with the ability to abstract detection logic into environment-agnostic templates.
  • Experience with federated detection queries and data modeling for environments without long-term log storage.
  • Familiarity with AI / ML-driven prioritization for detection scoring, clustering, or environment-based tuning.
  • Ability to handle diverse telemetry : cloud (AWS / Azure / GCP), IAM, EDR, firewall, Windows event logs, network, and SaaS platforms.
  • Experience in GitOps / detection-as-code workflows with version control, testing, and deployment pipelines.
  • Excellent communication and documentation skills with a focus on translating technical detections into product-ready content.
  • Nice to Have

  • Experience building or contributing to detection optimization or coverage grading frameworks .
  • Scripting in Python or PowerShell for automation, enrichment, and testing.
  • Familiarity with SOAR integration , purple teaming frameworks , and automated response orchestration .
  • Background in AI / ML model feedback integration for detection scoring or prioritization.
  • Connect to me at rajeshwari.vh@careerxperts.com for more details.

    Create a job alert for this search

    Engineer Framework • surat, gujarat, in

    Related jobs
    • Promoted
    • New!
    Cyber Security Engineer

    Cyber Security Engineer

    Nexoria Techworks Inc.surat, gujarat, in
    Job Description : Cybersecurity Engineer.Cybersecurity, Information Security, Threat Management.Your core responsibilities will include : . Implement security measures to proactively identify and mitig...Show moreLast updated: 21 hours ago
    • Promoted
    Senior Penetration Tester

    Senior Penetration Tester

    AppSecure Securitymohali, gujarat, in
    Appsecure is a leading offensive cybersecurity and red-team services company trusted by Fortune 500s, high-growth startups, and global enterprises. Our team consists of top bug bounty hunters, seaso...Show moreLast updated: 21 days ago
    • Promoted
    Senior Penetration Tester

    Senior Penetration Tester

    Vista Applied Solutions Group IncSurat, IN
    Client is looking for Senior PenTester and this is remote position from India.Security and Penetration Testing.OSCP Certification - Industry-standard credential demonstrating practical penetration ...Show moreLast updated: 11 days ago
    • Promoted
    Protective AI Expert

    Protective AI Expert

    beBeeArtificialIntelligenceSurat, Gujarat, India
    We are currently seeking a seasoned AI Red Team professional to spearhead our offensive security testing initiatives.As an AI Red Team Engineer, you will be responsible for designing and executing ...Show moreLast updated: 1 day ago
    • Promoted
    CyberArk Engineer

    CyberArk Engineer

    Next VenturesSurat, IN
    Job Opportunity : CyberArk Engineer.Contract / Permanent / Fixed Term.Privileged Access Management (PAM) implementations using CyberArk technologies. CyberArk Core-PAS, AAM, PTA, HTML5 Gateway.AUTOIT...Show moreLast updated: 23 hours ago
    • Promoted
    • New!
    Security Architect

    Security Architect

    Tata Consultancy Servicessurat, gujarat, in
    Experience in datacentre, cloud and network.Hands-on experience in AWS and GCP cloud.Experience in Containers, Kubernetes and micro services. Experience in advance networking in public cloud.Terrafo...Show moreLast updated: 21 hours ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Paramount Computer SystemsSurat, IN
    Identity Governance and Administration (IGA).The role involves designing, implementing, and supporting enterprise-grade IGA solutions to ensure secure, efficient, and compliant identity lifecycle m...Show moreLast updated: 11 days ago
    • Promoted
    Network Security Engineer (Zeek / Suricata / Elastic- OT / Network Focus)

    Network Security Engineer (Zeek / Suricata / Elastic- OT / Network Focus)

    Microminder Cyber SecuritySurat, IN
    We are looking for a Network Security Engineer with experience in deploying and managing open-source network security platforms. The role involves setting up visibility sensors, handling network tra...Show moreLast updated: 23 hours ago
    • Promoted
    L3 Server Engineer – Major Incident Management

    L3 Server Engineer – Major Incident Management

    Nextbridge IT SolutionsSurat, IN
    Nextbridge IT Solutions is a US-based IT solution firm specializing in connecting exceptional talent with organizations driving transformation in infrastructure, cloud, and emerging technologies.We...Show moreLast updated: 23 days ago
    • Promoted
    AWS security engineer

    AWS security engineer

    JRD SystemsSurat, IN
    We are seeking a highly skilled.Senior DevOps / Platform Engineer.The ideal candidate will have deep expertise in infrastructure automation, Terraform, and cloud platform management, with a strong De...Show moreLast updated: 11 days ago
    • Promoted
    (Immediate Joiners Only)Identity and Access Management (IAM) Engineer – India (U.S. Hours)

    (Immediate Joiners Only)Identity and Access Management (IAM) Engineer – India (U.S. Hours)

    Triune Infomatics Incmohali, gujarat, in
    Job Title : Identity and Access Management (IAM) Engineer – India (U.Business Hours Reporting To : IAM Manager - U.We are seeking a highly skilled Identity and Access Management (IAM) Engineer to joi...Show moreLast updated: 23 days ago
    • Promoted
    Saviynt IGA Engineer / Developer - Identity Governance & Administration (IGA)

    Saviynt IGA Engineer / Developer - Identity Governance & Administration (IGA)

    SentinelSurat, IN
    Saviynt IGA Engineer / Developer - Identity Governance & Administration (IGA).The security function of a world renowned manufacturing organisation for power tools is seeking a Saviynt IGA Engineer ...Show moreLast updated: 15 days ago
    • Promoted
    Vulnerability Management Specialist_9+years_Remote

    Vulnerability Management Specialist_9+years_Remote

    Tekgence IncSurat, IN
    Remote
    Job Title : Vulnerability Management Specialist (AWS & Wiz).Duration : 12+ months , extendable.We are seeking a skilled Vulnerability Management Specialist with hands-on experience in AWS environment...Show moreLast updated: 23 hours ago
    • Promoted
    Security Researcher

    Security Researcher

    Altered SecuritySurat, IN
    Altered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore.We are experts in information secu...Show moreLast updated: 30+ days ago
    • Promoted
    Vulnerability Management Specialist -8+ years - Bangalore

    Vulnerability Management Specialist -8+ years - Bangalore

    Tekgence Incsurat, gujarat, in
    Vulnerability Management Specialist.Location : Bangalore, India - remote.Design, implement, and maintain automation scripts and frameworks using. Collaborate with cross-functional teams to identify op...Show moreLast updated: 21 days ago
    • Promoted
    • New!
    Cyber Security Architect

    Cyber Security Architect

    Tata Consultancy Servicessurat, gujarat, in
    In depth knowledge of IAM for AWS.Architect and automate the management of AWS Cloud IAM services.Support the Identity and Access Management team within the Technology Risk & Information Security O...Show moreLast updated: 21 hours ago
    • Promoted
    EMC Networker Backup Engineer (Riyadh, Saudi based)

    EMC Networker Backup Engineer (Riyadh, Saudi based)

    FR Consultancy (Middle East)Surat, IN
    Backup Engineer (EMC Networker) - L3.Family members, Insurance and other benefits.Provide L3-level support in a mission-critical banking environment. Lead major incidents / war rooms; guide L1 / L2; pro...Show moreLast updated: 23 hours ago
    • Promoted
    • New!
    Senior Detection Engineer - MITRE ATT&CK framework - XDR - EDR - AI - Cyber Security Startup - Remote - CTC INR 50 L

    Senior Detection Engineer - MITRE ATT&CK framework - XDR - EDR - AI - Cyber Security Startup - Remote - CTC INR 50 L

    CareerXperts Consultingmohali, gujarat, in
    Remote
    This role goes beyond traditional detection engineering : you’ll help improve and build our.AI feedback, and quantify detection efficacy at enterprise scale. Design and maintain modular, high-fideli...Show moreLast updated: 13 hours ago
    • Promoted
    • New!
    GRC + Cyberark PAM ( Cyberak 70 % and 30 % GRC)

    GRC + Cyberark PAM ( Cyberak 70 % and 30 % GRC)

    HCLTechmohali, gujarat, in
    HCl Is Hiring GRC + Cyberark PAM ( Cyberak 70 % and 30 % GRC) for.Required Skill : GRC + Cyberark PAM ( Cyberak 70 % and 30 % GRC). If you are interested please share your resume krishna_raja@hcltech...Show moreLast updated: 21 hours ago
    • Promoted
    Cyber Risk Governance Specialist

    Cyber Risk Governance Specialist

    beBeeCybersecuritySurat, Gujarat, India
    We seek a seasoned cybersecurity professional to drive vendor due diligence and ongoing assessments.Show moreLast updated: 1 day ago