Talent.com
This job offer is not available in your country.
Senior Detection Engineer - MITRE ATT&CK framework - XDR - EDR - AI - Cyber Security Startup - Remote - CTC INR 50 L

Senior Detection Engineer - MITRE ATT&CK framework - XDR - EDR - AI - Cyber Security Startup - Remote - CTC INR 50 L

CareerXperts Consultinghyderabad, telangana, in
2 days ago
Job type
  • Remote
Job description

We’re seeking a Senior Detection Engineer to lead the next evolution of AI-augmented threat detection.

This role goes beyond traditional detection engineering : you’ll help improve and build our Detection Engineering Agent , responsible for continuously grading and improving detection coverage based on a customer’s available telemetry, configuration, and behavioral baselines.

You’ll work across multi-cloud , hybrid , and data-lake environments to design modular detections that don’t depend on centralized data storage, but instead leverage federated queries, metadata scoring, and AI-based prioritization.

The ideal candidate combines deep hands-on SIEM expertise with a product mindset : able to design scalable detection pipelines, integrate AI feedback, and quantify detection efficacy at enterprise scale.

Key Responsibilities

  • Design and maintain modular, high-fidelity detections using Sigma, KQL, SPL, Lucene, and other rule / query languages for Sentinel, Splunk, Chronicle, Elastic, and data-lake environments (Snowflake, BigQuery, Databricks).
  • Build and evolve Detection Engineering Agent , enabling real-time tracking, grading, and ranking of a customer’s environment based on data coverage, signal quality, and rule performance.
  • Develop detections that operate without centralized storage , leveraging federated queries, streaming analytics, and metadata summarization instead of raw data ingestion.
  • Quantify coverage gaps across identity, endpoint, cloud, network, and SaaS telemetry; collaborate cross-functionally to enhance observability and threat visibility.
  • Integrate AI and ML models for automated rule tuning, false positive reduction, and behavioral correlation.
  • Implement feedback-driven rule lifecycle management , including performance tracking (TP / FP / FN), version control, and graceful rule deprecation or promotion.
  • Collaborate with SOC, data science, and platform teams to continuously improve detection quality and automate enrichment or response actions via SOAR platforms.

Manage detection-as-code pipelines , ensuring CI / CD integration, modular content reuse, and full traceability of changes.

Required Skills

  • 5+ years of experience in detection engineering, threat hunting, and SOC operations .
  • Expertise in at least two major SIEMs (Sentinel, Google SecOps / Chronicle, Splunk) and data-lake query environments (Snowflake / Databricks).
  • Strong command of Sigma, KQL, SPL, or Lucene , with the ability to abstract detection logic into environment-agnostic templates.
  • Experience with federated detection queries and data modeling for environments without long-term log storage.
  • Familiarity with AI / ML-driven prioritization for detection scoring, clustering, or environment-based tuning.
  • Ability to handle diverse telemetry : cloud (AWS / Azure / GCP), IAM, EDR, firewall, Windows event logs, network, and SaaS platforms.
  • Experience in GitOps / detection-as-code workflows with version control, testing, and deployment pipelines.
  • Excellent communication and documentation skills with a focus on translating technical detections into product-ready content.
  • Nice to Have

  • Experience building or contributing to detection optimization or coverage grading frameworks .
  • Scripting in Python or PowerShell for automation, enrichment, and testing.
  • Familiarity with SOAR integration , purple teaming frameworks , and automated response orchestration .
  • Background in AI / ML model feedback integration for detection scoring or prioritization.
  • Connect to me at rajeshwari.vh@careerxperts.com for more details.

    Create a job alert for this search

    Engineer Framework • hyderabad, telangana, in

    Related jobs
    • Promoted
    Senior Information Security Engineer

    Senior Information Security Engineer

    QualiZealHyderabad, Telangana, India
    We are looking for an experienced Security Information Engineer to strengthen our cloud and infrastructure security posture. The ideal candidate will be certified in Microsoft Azure Security (AZ-500...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Cyber Security Engineer - Vulnerability Management

    Senior Cyber Security Engineer - Vulnerability Management

    OSI Systems Pvt. Ltd.Hyderabad
    Overview : OSI Systems, Inc.We sell our products and provide related services in diversified markets, including homeland...Show moreLast updated: 24 days ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    MOURI Techhyderabad, telangana, in
    We are seeking a highly skilled.The ideal candidate will bring hands-on experience in.You will work closely with engineering, DevOps, and security teams to build, automate, and secure systems acros...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    ArcanaHyderabad, IN
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Nexoria Techworks Inc.secunderabad, telangana, in
    Job Description : Cybersecurity Engineer.Cybersecurity, Information Security, Threat Management.Your core responsibilities will include : . Implement security measures to proactively identify and mitig...Show moreLast updated: 2 days ago
    • Promoted
    • New!
    Principal AI Security Engineer

    Principal AI Security Engineer

    Sennovate Inc.hyderabad, telangana, in
    Principal AI Security Engineer.Sennovate is a global Managed Security Services Provider (MSSP) specializing in Identity and Access Management (IAM), Cybersecurity, and Cloud Security.We help enterp...Show moreLast updated: 6 hours ago
    • Promoted
    Senior Cyber Security Engineer _ Exp : 6+ Years

    Senior Cyber Security Engineer _ Exp : 6+ Years

    Atyeti IncHyderabad, Telangana, India
    Bachelor's or master’s degree in Computer Science or equivalent.Experience developing in any programming stacks not limited to SQL, Python, PowerShell, Javascript, Shell Scripting, REST API, YAML.S...Show moreLast updated: 2 days ago
    • Promoted
    • New!
    Senior Security Engineer [T500-20922]

    Senior Security Engineer [T500-20922]

    Deutsche BörseHyderabad, Telangana, India
    Headquartered in Frankfurt, Germany, Deutsche Börse Group is a leading international exchange organization and market infrastructure provider. They empower investors, financial institutions, and com...Show moreLast updated: 5 hours ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Paramount Computer SystemsHyderabad, IN
    Identity Governance and Administration (IGA).The role involves designing, implementing, and supporting enterprise-grade IGA solutions to ensure secure, efficient, and compliant identity lifecycle m...Show moreLast updated: 13 days ago
    • Promoted
    AI Engineer - Cyber Security Start-up - Remote - LLM, MCP, Statistical Rigor, System Design and API in Production Scale Environment - CTC INR - 60 L

    AI Engineer - Cyber Security Start-up - Remote - LLM, MCP, Statistical Rigor, System Design and API in Production Scale Environment - CTC INR - 60 L

    CareerXperts Consultinghyderabad, telangana, in
    Remote
    We are seeking a highly skilled and motivated AI Engineer with expertise in large language models (LLMs), AI workflows, and machine learning. This role combines deep technical knowledge in ML / AI wit...Show moreLast updated: 1 day ago
    • Promoted
    Senior Endpoint Security Engineer - Cyber Defense Engineering

    Senior Endpoint Security Engineer - Cyber Defense Engineering

    ConfidentialHyderabad / Secunderabad, Telangana
    FactSet is currently seeking a .Senior Endpoint Security Engineer .This is a hands-on role that requires a broad, high level of technical expertise with a focus on endpoint security.The Senior Endp...Show moreLast updated: 23 days ago
    • Promoted
    Principal Technical Engineer(Pharmacovigilance - Signal Detection Solutions)

    Principal Technical Engineer(Pharmacovigilance - Signal Detection Solutions)

    Qinecsa SolutionsHyderabad, IN
    We are seeking a Principal Technical Engineer to design and develop pharmacovigilance signal detection solutions based on our flagship Qinecsa Vigilance Workbench signal detection platform.The idea...Show moreLast updated: 2 days ago
    • Promoted
    Associate | Senior Security Engineer

    Associate | Senior Security Engineer

    Deutsche Börse GroupHyderabad, India
    Headquartered in Frankfurt, Germany, Deutsche Börse Group is a leading international exchange organization and market infrastructure provider. They empower investors, financial institutions, and com...Show moreLast updated: 2 days ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    QualiZealHyderabad, Telangana, India
    Conduct Static Application Security Testing (SAST) and Software Composition Analysis (SCA).Perform Dynamic Application Security Testing (DAST) and Interactive Application Security Testing (IAST) fo...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer - SIEM, DevSecOps, IPS / IDS

    Senior Security Engineer - SIEM, DevSecOps, IPS / IDS

    EmburseHyderabad, Telangana, India
    Emburse software engineers contribute to the development of an engaging and interconnected set of system solutions.As an engineer, you will enhance the experiences of your customers, solve interest...Show moreLast updated: 12 days ago
    • Promoted
    Associate | Senior Network Security Engineer

    Associate | Senior Network Security Engineer

    Deutsche Börse GroupHyderabad, India
    Senior Network Security Engineer.The Chief Technology Officer (CTO) area is at the heart of the Information Technology division of Deutsche Börse Group. The CTO area develops and operates the group-...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.aihyderabad, telangana, in
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Endpoint Security Engineer For Cyber Defense Engineering

    Senior Endpoint Security Engineer For Cyber Defense Engineering

    ConfidentialHyderabad / Secunderabad, Telangana
    FactSet is currently seeking a .Senior Endpoint Security Engineer .This is a hands-on role that requires a broad, high level of technical expertise with a focus on endpoint security.The Senior Endp...Show moreLast updated: 23 days ago