Talent.com
This job offer is not available in your country.
Senior Detection Engineer - MITRE ATT&CK framework - XDR - EDR - AI - Cyber Security Startup - Remote - CTC INR 50 L

Senior Detection Engineer - MITRE ATT&CK framework - XDR - EDR - AI - Cyber Security Startup - Remote - CTC INR 50 L

CareerXperts Consultingalwar, rajasthan, in
19 hours ago
Job type
  • Remote
Job description

We’re seeking a Senior Detection Engineer to lead the next evolution of AI-augmented threat detection.

This role goes beyond traditional detection engineering : you’ll help improve and build our Detection Engineering Agent , responsible for continuously grading and improving detection coverage based on a customer’s available telemetry, configuration, and behavioral baselines.

You’ll work across multi-cloud , hybrid , and data-lake environments to design modular detections that don’t depend on centralized data storage, but instead leverage federated queries, metadata scoring, and AI-based prioritization.

The ideal candidate combines deep hands-on SIEM expertise with a product mindset : able to design scalable detection pipelines, integrate AI feedback, and quantify detection efficacy at enterprise scale.

Key Responsibilities

  • Design and maintain modular, high-fidelity detections using Sigma, KQL, SPL, Lucene, and other rule / query languages for Sentinel, Splunk, Chronicle, Elastic, and data-lake environments (Snowflake, BigQuery, Databricks).
  • Build and evolve Detection Engineering Agent , enabling real-time tracking, grading, and ranking of a customer’s environment based on data coverage, signal quality, and rule performance.
  • Develop detections that operate without centralized storage , leveraging federated queries, streaming analytics, and metadata summarization instead of raw data ingestion.
  • Quantify coverage gaps across identity, endpoint, cloud, network, and SaaS telemetry; collaborate cross-functionally to enhance observability and threat visibility.
  • Integrate AI and ML models for automated rule tuning, false positive reduction, and behavioral correlation.
  • Implement feedback-driven rule lifecycle management , including performance tracking (TP / FP / FN), version control, and graceful rule deprecation or promotion.
  • Collaborate with SOC, data science, and platform teams to continuously improve detection quality and automate enrichment or response actions via SOAR platforms.

Manage detection-as-code pipelines , ensuring CI / CD integration, modular content reuse, and full traceability of changes.

Required Skills

  • 5+ years of experience in detection engineering, threat hunting, and SOC operations .
  • Expertise in at least two major SIEMs (Sentinel, Google SecOps / Chronicle, Splunk) and data-lake query environments (Snowflake / Databricks).
  • Strong command of Sigma, KQL, SPL, or Lucene , with the ability to abstract detection logic into environment-agnostic templates.
  • Experience with federated detection queries and data modeling for environments without long-term log storage.
  • Familiarity with AI / ML-driven prioritization for detection scoring, clustering, or environment-based tuning.
  • Ability to handle diverse telemetry : cloud (AWS / Azure / GCP), IAM, EDR, firewall, Windows event logs, network, and SaaS platforms.
  • Experience in GitOps / detection-as-code workflows with version control, testing, and deployment pipelines.
  • Excellent communication and documentation skills with a focus on translating technical detections into product-ready content.
  • Nice to Have

  • Experience building or contributing to detection optimization or coverage grading frameworks .
  • Scripting in Python or PowerShell for automation, enrichment, and testing.
  • Familiarity with SOAR integration , purple teaming frameworks , and automated response orchestration .
  • Background in AI / ML model feedback integration for detection scoring or prioritization.
  • Connect to me at rajeshwari.vh@careerxperts.com for more details.

    Create a job alert for this search

    Engineer Framework • alwar, rajasthan, in

    Related jobs
    • Promoted
    TOSCA QA Egineer

    TOSCA QA Egineer

    NarwalAlwar, IN
    Narwal, with its Global Delivery Model, strategically expands its reach across North America, the United Kingdom, and an offshore development centre in India. Delivery cutting edge AI, Data and Qual...Show moreLast updated: 1 day ago
    • Promoted
    Vulnerability Management Specialist -8+ years - Bangalore

    Vulnerability Management Specialist -8+ years - Bangalore

    Tekgence Incalwar, rajasthan, in
    Vulnerability Management Specialist.Location : Bangalore, India - remote.Design, implement, and maintain automation scripts and frameworks using. Collaborate with cross-functional teams to identify op...Show moreLast updated: 22 days ago
    • Promoted
    Security Researcher

    Security Researcher

    Altered SecurityAlwar, IN
    Altered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore.We are experts in information secu...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Nexoria Techworks Inc.alwar, rajasthan, in
    Job Description : Cybersecurity Engineer.Cybersecurity, Information Security, Threat Management.Your core responsibilities will include : . Implement security measures to proactively identify and mitig...Show moreLast updated: 1 day ago
    • Promoted
    AWS security engineer

    AWS security engineer

    JRD SystemsAlwar, IN
    We are seeking a highly skilled.Senior DevOps / Platform Engineer.The ideal candidate will have deep expertise in infrastructure automation, Terraform, and cloud platform management, with a strong De...Show moreLast updated: 11 days ago
    • Promoted
    Workday Security System Analyst

    Workday Security System Analyst

    AvalaraAlwar, IN
    Avalara is an AI-first company.We expect every engineer, manager, and to actively leverage AI to enhance productivity, quality, innovation, and customer value. AI is embedded in our workflows, and p...Show moreLast updated: 1 day ago
    • Promoted
    Security Architect

    Security Architect

    Tata Consultancy Servicesalwar, rajasthan, in
    Experience in datacentre, cloud and network.Hands-on experience in AWS and GCP cloud.Experience in Containers, Kubernetes and micro services. Experience in advance networking in public cloud.Terrafo...Show moreLast updated: 1 day ago
    • Promoted
    Saviynt IGA Engineer / Developer - Identity Governance & Administration (IGA)

    Saviynt IGA Engineer / Developer - Identity Governance & Administration (IGA)

    SentinelAlwar, IN
    Saviynt IGA Engineer / Developer - Identity Governance & Administration (IGA).The security function of a world renowned manufacturing organisation for power tools is seeking a Saviynt IGA Engineer ...Show moreLast updated: 15 days ago
    • Promoted
    EMC Networker Backup Engineer (Riyadh, Saudi based)

    EMC Networker Backup Engineer (Riyadh, Saudi based)

    FR Consultancy (Middle East)Alwar, IN
    Backup Engineer (EMC Networker) - L3.Family members, Insurance and other benefits.Provide L3-level support in a mission-critical banking environment. Lead major incidents / war rooms; guide L1 / L2; pro...Show moreLast updated: 1 day ago
    • Promoted
    L3 Server Engineer – Major Incident Management

    L3 Server Engineer – Major Incident Management

    Nextbridge IT SolutionsAlwar, IN
    Nextbridge IT Solutions is a US-based IT solution firm specializing in connecting exceptional talent with organizations driving transformation in infrastructure, cloud, and emerging technologies.We...Show moreLast updated: 23 days ago
    • Promoted
    (Immediate Joiners Only)Identity and Access Management (IAM) Engineer – India (U.S. Hours)

    (Immediate Joiners Only)Identity and Access Management (IAM) Engineer – India (U.S. Hours)

    Triune Infomatics Incalwar, rajasthan, in
    Job Title : Identity and Access Management (IAM) Engineer – India (U.Business Hours Reporting To : IAM Manager - U.We are seeking a highly skilled Identity and Access Management (IAM) Engineer to joi...Show moreLast updated: 23 days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Paramount Computer SystemsAlwar, IN
    Identity Governance and Administration (IGA).The role involves designing, implementing, and supporting enterprise-grade IGA solutions to ensure secure, efficient, and compliant identity lifecycle m...Show moreLast updated: 11 days ago
    • Promoted
    Network Security Engineer (Zeek / Suricata / Elastic- OT / Network Focus)

    Network Security Engineer (Zeek / Suricata / Elastic- OT / Network Focus)

    Microminder Cyber SecurityAlwar, IN
    We are looking for a Network Security Engineer with experience in deploying and managing open-source network security platforms. The role involves setting up visibility sensors, handling network tra...Show moreLast updated: 1 day ago
    • Promoted
    • New!
    Tripwire Cyber Security Expert

    Tripwire Cyber Security Expert

    RapidBrainsAlwar, IN
    Bachelor’s degree in Computer Science, Information Security, or related field.SIEM, vulnerability management, endpoint security, and compliance frameworks. Familiarity with Windows and Linux environ...Show moreLast updated: 12 hours ago
    • Promoted
    • New!
    UKG Ready Implementation Specialist

    UKG Ready Implementation Specialist

    TechnoidLLCAlwar, IN
    UKG Ready Implementation Specialist – Benefits & Payroll Integration (Contract / Consulting Role).Time- US SHIFT HOURS (6 : 30 PM IST- 3 AM IST). UKG Ready Implementation Specialist.The ideal candidate ...Show moreLast updated: 12 hours ago
    • Promoted
    Cyber Security Architect

    Cyber Security Architect

    Tata Consultancy Servicesalwar, rajasthan, in
    In depth knowledge of IAM for AWS.Architect and automate the management of AWS Cloud IAM services.Support the Identity and Access Management team within the Technology Risk & Information Security O...Show moreLast updated: 1 day ago
    • Promoted
    Vulnerability Management Specialist_9+years_Remote

    Vulnerability Management Specialist_9+years_Remote

    Tekgence IncAlwar, IN
    Remote
    Job Title : Vulnerability Management Specialist (AWS & Wiz).Duration : 12+ months , extendable.We are seeking a skilled Vulnerability Management Specialist with hands-on experience in AWS environment...Show moreLast updated: 1 day ago
    • Promoted
    CyberArk Engineer

    CyberArk Engineer

    Next VenturesAlwar, IN
    Job Opportunity : CyberArk Engineer.Contract / Permanent / Fixed Term.Privileged Access Management (PAM) implementations using CyberArk technologies. CyberArk Core-PAS, AAM, PTA, HTML5 Gateway.AUTOIT...Show moreLast updated: 1 day ago
    • Promoted
    IAM Engineer (CIAM)

    IAM Engineer (CIAM)

    PerfictAlwar, IN
    The IAM Senior Engineer will be responsible for the service design, build and documentation all key elements of Client Customer IAM and Certificate Lifecycle Management supporting infrastructure an...Show moreLast updated: 11 days ago
    • Promoted
    Senior Penetration Tester

    Senior Penetration Tester

    Vista Applied Solutions Group IncAlwar, IN
    Client is looking for Senior PenTester and this is remote position from India.Security and Penetration Testing.OSCP Certification - Industry-standard credential demonstrating practical penetration ...Show moreLast updated: 11 days ago