Talent.com
This job offer is not available in your country.
Senior Detection Engineer - MITRE ATT&CK framework - XDR - EDR - AI - Cyber Security Startup - Remot

Senior Detection Engineer - MITRE ATT&CK framework - XDR - EDR - AI - Cyber Security Startup - Remot

CareerXperts ConsultingKochi, Kerala, India
7 hours ago
Job description

We’re seeking a Senior Detection Engineer to lead the next evolution of AI-augmented threat detection.

This role goes beyond traditional detection engineering : you’ll help improve and build our Detection Engineering Agent , responsible for continuously grading and improving detection coverage based on a customer’s available telemetry, configuration, and behavioral baselines.

You’ll work across multi-cloud , hybrid , and data-lake environments to design modular detections that don’t depend on centralized data storage, but instead leverage federated queries, metadata scoring, and AI-based prioritization.

The ideal candidate combines deep hands-on SIEM expertise with a product mindset : able to design scalable detection pipelines, integrate AI feedback, and quantify detection efficacy at enterprise scale.

Key Responsibilities

Design and maintain modular, high-fidelity detections using Sigma, KQL, SPL, Lucene, and other rule / query languages for Sentinel, Splunk, Chronicle, Elastic, and data-lake environments (Snowflake, BigQuery, Databricks).

Build and evolve Detection Engineering Agent , enabling real-time tracking, grading, and ranking of a customer’s environment based on data coverage, signal quality, and rule performance.

Develop detections that operate without centralized storage , leveraging federated queries, streaming analytics, and metadata summarization instead of raw data ingestion.

Quantify coverage gaps across identity, endpoint, cloud, network, and SaaS telemetry; collaborate cross-functionally to enhance observability and threat visibility.

Integrate AI and ML models for automated rule tuning, false positive reduction, and behavioral correlation.

Implement feedback-driven rule lifecycle management , including performance tracking (TP / FP / FN), version control, and graceful rule deprecation or promotion.

Collaborate with SOC, data science, and platform teams to continuously improve detection quality and automate enrichment or response actions via SOAR platforms.

Manage detection-as-code pipelines , ensuring CI / CD integration, modular content reuse, and full traceability of changes.

Required Skills

5+ years of experience in detection engineering, threat hunting, and SOC operations .

Expertise in at least two major SIEMs (Sentinel, Google SecOps / Chronicle, Splunk) and data-lake query environments (Snowflake / Databricks).

Strong command of Sigma, KQL, SPL, or Lucene , with the ability to abstract detection logic into environment-agnostic templates.

Experience with federated detection queries and data modeling for environments without long-term log storage.

Familiarity with AI / ML-driven prioritization for detection scoring, clustering, or environment-based tuning.

Ability to handle diverse telemetry : cloud (AWS / Azure / GCP), IAM, EDR, firewall, Windows event logs, network, and SaaS platforms.

Experience in GitOps / detection-as-code workflows with version control, testing, and deployment pipelines.

Excellent communication and documentation skills with a focus on translating technical detections into product-ready content.

Nice to Have

Experience building or contributing to detection optimization or coverage grading frameworks .

Scripting in Python or PowerShell for automation, enrichment, and testing.

Familiarity with SOAR integration , purple teaming frameworks , and automated response orchestration .

Background in AI / ML model feedback integration for detection scoring or prioritization.

Connect to me at rajeshwari.vh@careerxperts.com for more details.

Create a job alert for this search

Engineer Framework • Kochi, Kerala, India

Related jobs
  • Promoted
Artificial Intelligence Software Development Expert

Artificial Intelligence Software Development Expert

beBeeAIDeveloperKochi, Kerala, India
This role combines technical expertise with business acumen.Design and develop AI-powered enterprise applications.Collaborate with cross-functional teams to drive business outcomes.Stay up-to-date ...Show moreLast updated: 1 day ago
  • Promoted
Chief Artificial Intelligence Architect

Chief Artificial Intelligence Architect

beBeeArtificialIntelligenceKochi, Kerala, India
We are seeking a seasoned AI developer to build high-quality components for an AI-driven platform.Design and deploy Intent, Planner, and Router / Composer agents with typed JSON I / O, retries / timeouts...Show moreLast updated: 1 day ago
  • Promoted
Information Security Consultant

Information Security Consultant

Soffit Infrastructure Services (P) LtdKochi, Kerala, India
The Information Security Consultant will be responsible for the implementation, assessment, and management of ISO 27001 : 2022, ISO 27002, and SOC 2 standards for clients. This role involves working i...Show moreLast updated: 23 days ago
  • Promoted
Senior Penetration Tester

Senior Penetration Tester

AppSecure Securitykochi, kerala, in
Appsecure is a leading offensive cybersecurity and red-team services company trusted by Fortune 500s, high-growth startups, and global enterprises. Our team consists of top bug bounty hunters, seaso...Show moreLast updated: 21 days ago
  • Promoted
Software Security Lead

Software Security Lead

beBeeSoftwareKottayam, Kerala, India
HCL Software develops and markets over 20 product families in customer experience, digital solutions, secure DevOps, security, and automation. Our mission is to drive customer success with relentles...Show moreLast updated: 1 day ago
  • Promoted
L3 Server Engineer – Major Incident Management

L3 Server Engineer – Major Incident Management

Nextbridge IT SolutionsKochi, IN
Nextbridge IT Solutions is a US-based IT solution firm specializing in connecting exceptional talent with organizations driving transformation in infrastructure, cloud, and emerging technologies.We...Show moreLast updated: 23 days ago
  • Promoted
IAM Engineer (CIAM)

IAM Engineer (CIAM)

PerfictKochi, IN
The IAM Senior Engineer will be responsible for the service design, build and documentation all key elements of Client Customer IAM and Certificate Lifecycle Management supporting infrastructure an...Show moreLast updated: 11 days ago
  • Promoted
IT Security Lead - CISO / DLP / SIEM

IT Security Lead - CISO / DLP / SIEM

B2NKerala
Location : Thrissur Key Responsibilities : - Lead and manage all IT security initiatives within the IT department.En...Show moreLast updated: 6 days ago
  • Promoted
Saviynt IGA Engineer / Developer - Identity Governance & Administration (IGA)

Saviynt IGA Engineer / Developer - Identity Governance & Administration (IGA)

SentinelKochi, IN
Saviynt IGA Engineer / Developer - Identity Governance & Administration (IGA).The security function of a world renowned manufacturing organisation for power tools is seeking a Saviynt IGA Engineer ...Show moreLast updated: 15 days ago
  • Promoted
Senior Penetration Tester

Senior Penetration Tester

Vista Applied Solutions Group IncKottayam, IN
Client is looking for Senior PenTester and this is remote position from India.Security and Penetration Testing.OSCP Certification - Industry-standard credential demonstrating practical penetration ...Show moreLast updated: 11 days ago
  • Promoted
(Immediate Joiners Only)Identity and Access Management (IAM) Engineer – India (U.S. Hours)

(Immediate Joiners Only)Identity and Access Management (IAM) Engineer – India (U.S. Hours)

Triune Infomatics Inckottayam, kerala, in
Job Title : Identity and Access Management (IAM) Engineer – India (U.Business Hours Reporting To : IAM Manager - U.We are seeking a highly skilled Identity and Access Management (IAM) Engineer to joi...Show moreLast updated: 23 days ago
  • Promoted
Chief Technology Officer - Artificial Intelligence

Chief Technology Officer - Artificial Intelligence

beBeeArtificialIntelligenceKottayam, Kerala, India
We are seeking a skilled and visionary technologist to spearhead the design, development, and deployment of advanced machine learning solutions. In this leadership role, you will guide a team of eng...Show moreLast updated: 1 day ago
  • Promoted
Quantiphi - Senior Cyber Security Engineer - DAST / SAST

Quantiphi - Senior Cyber Security Engineer - DAST / SAST

Quantiphi AnalyticsKerala
Role : Senior Cyber Security Engineer.Experience Level : 3+ Years.Work location : Mumbai, Bangalore & Trivandrum.Role & Responsibilities : ...Show moreLast updated: 30+ days ago
  • Promoted
Chief Application Security Architect

Chief Application Security Architect

beBeePlatformKochi, Kerala, India
We are seeking an experienced Platform Security Engineer with strong expertise in DevSecOps and Application Security (AppSec) to join our team. You will design, build, and maintain secure platforms ...Show moreLast updated: 1 day ago
  • Promoted
Artificial Intelligence Solutions Developer

Artificial Intelligence Solutions Developer

beBeeDeveloperKottayam, Kerala, India
We are seeking a skilled AI developer to design, develop and deploy innovative AI solutions in cloud environments.The ideal candidate will have hands-on experience with Python, strong proficiency i...Show moreLast updated: 1 day ago
  • Promoted
Cyber Security Engineer

Cyber Security Engineer

Paramount Computer SystemsKottayam, IN
Identity Governance and Administration (IGA).The role involves designing, implementing, and supporting enterprise-grade IGA solutions to ensure secure, efficient, and compliant identity lifecycle m...Show moreLast updated: 11 days ago
  • Promoted
Security Researcher

Security Researcher

Altered SecurityKottayam, IN
Altered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore.We are experts in information secu...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Cyber Security Architect

Cyber Security Architect

Tata Consultancy ServicesKottayam, Kerala, India
Job Description : In depth knowledge of IAM for AWS.Architect and automate the management of AWS Cloud IAM services.Support the Identity and Access Management team within the Technology Risk & Info...Show moreLast updated: 13 hours ago