Talent.com
Senior Detection Engineer - MITRE ATT&CK framework - XDR - EDR - AI - Cyber Security Startup - Remot

Senior Detection Engineer - MITRE ATT&CK framework - XDR - EDR - AI - Cyber Security Startup - Remot

CareerXperts ConsultingAmritsar, Punjab, India
11 days ago
Job description

We’re seeking a Senior Detection Engineer to lead the next evolution of AI-augmented threat detection.

This role goes beyond traditional detection engineering : you’ll help improve and build our Detection Engineering Agent , responsible for continuously grading and improving detection coverage based on a customer’s available telemetry, configuration, and behavioral baselines.

You’ll work across multi-cloud , hybrid , and data-lake environments to design modular detections that don’t depend on centralized data storage, but instead leverage federated queries, metadata scoring, and AI-based prioritization.

The ideal candidate combines deep hands-on SIEM expertise with a product mindset : able to design scalable detection pipelines, integrate AI feedback, and quantify detection efficacy at enterprise scale.

Key Responsibilities

Design and maintain modular, high-fidelity detections using Sigma, KQL, SPL, Lucene, and other rule / query languages for Sentinel, Splunk, Chronicle, Elastic, and data-lake environments (Snowflake, BigQuery, Databricks).

Build and evolve Detection Engineering Agent , enabling real-time tracking, grading, and ranking of a customer’s environment based on data coverage, signal quality, and rule performance.

Develop detections that operate without centralized storage , leveraging federated queries, streaming analytics, and metadata summarization instead of raw data ingestion.

Quantify coverage gaps across identity, endpoint, cloud, network, and SaaS telemetry; collaborate cross-functionally to enhance observability and threat visibility.

Integrate AI and ML models for automated rule tuning, false positive reduction, and behavioral correlation.

Implement feedback-driven rule lifecycle management , including performance tracking (TP / FP / FN), version control, and graceful rule deprecation or promotion.

Collaborate with SOC, data science, and platform teams to continuously improve detection quality and automate enrichment or response actions via SOAR platforms.

Manage detection-as-code pipelines , ensuring CI / CD integration, modular content reuse, and full traceability of changes.

Required Skills

5+ years of experience in detection engineering, threat hunting, and SOC operations .

Expertise in at least two major SIEMs (Sentinel, Google SecOps / Chronicle, Splunk) and data-lake query environments (Snowflake / Databricks).

Strong command of Sigma, KQL, SPL, or Lucene , with the ability to abstract detection logic into environment-agnostic templates.

Experience with federated detection queries and data modeling for environments without long-term log storage.

Familiarity with AI / ML-driven prioritization for detection scoring, clustering, or environment-based tuning.

Ability to handle diverse telemetry : cloud (AWS / Azure / GCP), IAM, EDR, firewall, Windows event logs, network, and SaaS platforms.

Experience in GitOps / detection-as-code workflows with version control, testing, and deployment pipelines.

Excellent communication and documentation skills with a focus on translating technical detections into product-ready content.

Nice to Have

Experience building or contributing to detection optimization or coverage grading frameworks .

Scripting in Python or PowerShell for automation, enrichment, and testing.

Familiarity with SOAR integration , purple teaming frameworks , and automated response orchestration .

Background in AI / ML model feedback integration for detection scoring or prioritization.

Connect to me at rajeshwari.vh@careerxperts.com for more details.

Create a job alert for this search

Engineer Framework • Amritsar, Punjab, India

Related jobs
  • Promoted
Principal AI Security Engineer

Principal AI Security Engineer

Sennovate Inc.amritsar, punjab, in
Principal AI Security Engineer.Sennovate is a global Managed Security Services Provider (MSSP) specializing in Identity and Access Management (IAM), Cybersecurity, and Cloud Security.We help enterp...Show moreLast updated: 9 days ago
  • Promoted
TDM Senior Engineer

TDM Senior Engineer

QualiZealamritsar, punjab, in
Responsible for delivering test data management solutions focusing on enhanced data provisioning capabilities, data integration and devising efficient TDM processes. Work with other stakeholders lik...Show moreLast updated: 12 days ago
  • Promoted
Lead Security Engineer

Lead Security Engineer

Arcanaamritsar, punjab, in
As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
  • Promoted
Cerebry — GenAI Implementation Engineer (AI Growth Lead)

Cerebry — GenAI Implementation Engineer (AI Growth Lead)

Cerebryamritsar, punjab, in
Transform Cerebry Research designs into.Architect, code, evaluate, and package GenAI services that power Cerebry end-to-end. Why this is exciting (Ownership-Forward).Initial grants are designed for ...Show moreLast updated: 30+ days ago
  • Promoted
Illumio- Zero Trust Microsegmentation

Illumio- Zero Trust Microsegmentation

CareerXperts Consultingamritsar, punjab, in
Hiring : Manager - Zero Trust Microsegmentation.Bengaluru | 💼 5+ Years Experience.Lead Illumio microsegmentation implementations. Design & deploy Zero Trust policies.Analyze network infrastructure &...Show moreLast updated: 1 day ago
  • Promoted
Principal Technical Engineer(Pharmacovigilance - Signal Detection Solutions)

Principal Technical Engineer(Pharmacovigilance - Signal Detection Solutions)

Qinecsa Solutionsamritsar, punjab, in
We are seeking a Principal Technical Engineer to design and develop pharmacovigilance signal detection solutions based on our flagship Qinecsa Vigilance Workbench signal detection platform.The idea...Show moreLast updated: 11 days ago
  • Promoted
Lead Security Engineer

Lead Security Engineer

interface.aiamritsar, punjab, in
Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 30+ days ago
  • Promoted
Cyber Security Engineer

Cyber Security Engineer

Nexoria Techworks Inc.amritsar, punjab, in
Job Description : Cybersecurity Engineer.Cybersecurity, Information Security, Threat Management.Your core responsibilities will include : . Implement security measures to proactively identify and mitig...Show moreLast updated: 12 days ago
  • Promoted
Senior Security Engineer

Senior Security Engineer

CBTSamritsar, punjab, in
Senior level roles as IT Security Architect, IT Security Engineer, IT Security Auditor, Cyber-Security Analyst, Cyber-Intelligence Analyst. Certifications, Accreditations, Licenses.One or more of th...Show moreLast updated: 3 days ago
  • Promoted
Senior Software Engineer- Windows Sensor (XDR)

Senior Software Engineer- Windows Sensor (XDR)

Cyber Periscopeamritsar, punjab, in
Software Engineer- Windows Sensor (XDR Agent Development).Cyber Periscope is building a world-class Extended Detection & Response (XDR) platform to redefine cybersecurity for enterprises, critical ...Show moreLast updated: 11 days ago
  • Promoted
Security Engineer (Detection and Response)

Security Engineer (Detection and Response)

Foodsmartamritsar, punjab, in
Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 9 days ago
  • Promoted
Senior MLOps Engineer

Senior MLOps Engineer

Mitchell Martin Inc.amritsar, India
Include, but are not limited to, the following : .Own productionizing models—from tracked experiments to governed releases—ensuring resilient services with clear SLOs, runbooks, and fast, safe rollba...Show moreLast updated: 5 days ago
  • Promoted
Senior Detection Engineer - MITRE ATT&CK framework - XDR - EDR - AI - Cyber Security Startup - Remote - CTC INR 50 L

Senior Detection Engineer - MITRE ATT&CK framework - XDR - EDR - AI - Cyber Security Startup - Remote - CTC INR 50 L

CareerXperts Consultingamritsar, punjab, in
Remote
This role goes beyond traditional detection engineering : you’ll help improve and build our.AI feedback, and quantify detection efficacy at enterprise scale. Design and maintain modular, high-fideli...Show moreLast updated: 11 days ago
  • Promoted
Sr Threat Detection Engineer

Sr Threat Detection Engineer

Insight Globalamritsar, punjab, in
Exact compensation may vary based on several factors, including skills, experience, and education.Benefit packages for this role will start on the 31st day of employment and include medical, dental...Show moreLast updated: 3 days ago
  • Promoted
Desktop Support Engineer - Kapurthala

Desktop Support Engineer - Kapurthala

ITC InfotechKapurthala, Punjab, India
Installation and configuration of Windows 10 / 11 OS.Troubleshooting and resolving OS-related issues.User support and issue resolution. Provide first-level support for end-users experiencing issues wi...Show moreLast updated: 12 days ago
  • Promoted
Desktop Support Specialist

Desktop Support Specialist

ITC InfotechKapurthala, Punjab, India
Job Opportunity Desktop Support Specialist at ITC Infotech.End user support (not remote support).Networking, DNS, LAN, WAN, DHCP, Outlook Configuration. Kindly share the below details along with you...Show moreLast updated: 2 days ago
  • Promoted
Contractor Security Engineer Level 3 – GRC Tech Solutions

Contractor Security Engineer Level 3 – GRC Tech Solutions

Mindlanceamritsar, punjab, in
Remote Role | Contractor Security Engineer Level 3 – GRC Tech Solutions.This position focuses on enabling process clarity, automation, and efficiency while creating insights that empower our busine...Show moreLast updated: 3 days ago
  • Promoted
AI Security & Cloud Engineer (Cybersecurity + Full-Stack)

AI Security & Cloud Engineer (Cybersecurity + Full-Stack)

CloudMatosamritsar, punjab, in
In order to proceed further, you have to take the test.M2nO77GO-BogYEl0NY4ceD60TtSJ2hFPnlW0lhizqDE / edit?tab=t.CloudMatos is a next-generation cloud-security and AI-security platform designed for mo...Show moreLast updated: 1 day ago