Talent.com
This job offer is not available in your country.
Senior Detection Engineer - MITRE ATT&CK framework - XDR - EDR - AI - Cyber Security Startup - Remote - CTC INR 50 L

Senior Detection Engineer - MITRE ATT&CK framework - XDR - EDR - AI - Cyber Security Startup - Remote - CTC INR 50 L

CareerXperts Consultinganand, gujarat, in
11 hours ago
Job type
  • Remote
Job description

We’re seeking a Senior Detection Engineer to lead the next evolution of AI-augmented threat detection.

This role goes beyond traditional detection engineering : you’ll help improve and build our Detection Engineering Agent , responsible for continuously grading and improving detection coverage based on a customer’s available telemetry, configuration, and behavioral baselines.

You’ll work across multi-cloud , hybrid , and data-lake environments to design modular detections that don’t depend on centralized data storage, but instead leverage federated queries, metadata scoring, and AI-based prioritization.

The ideal candidate combines deep hands-on SIEM expertise with a product mindset : able to design scalable detection pipelines, integrate AI feedback, and quantify detection efficacy at enterprise scale.

Key Responsibilities

  • Design and maintain modular, high-fidelity detections using Sigma, KQL, SPL, Lucene, and other rule / query languages for Sentinel, Splunk, Chronicle, Elastic, and data-lake environments (Snowflake, BigQuery, Databricks).
  • Build and evolve Detection Engineering Agent , enabling real-time tracking, grading, and ranking of a customer’s environment based on data coverage, signal quality, and rule performance.
  • Develop detections that operate without centralized storage , leveraging federated queries, streaming analytics, and metadata summarization instead of raw data ingestion.
  • Quantify coverage gaps across identity, endpoint, cloud, network, and SaaS telemetry; collaborate cross-functionally to enhance observability and threat visibility.
  • Integrate AI and ML models for automated rule tuning, false positive reduction, and behavioral correlation.
  • Implement feedback-driven rule lifecycle management , including performance tracking (TP / FP / FN), version control, and graceful rule deprecation or promotion.
  • Collaborate with SOC, data science, and platform teams to continuously improve detection quality and automate enrichment or response actions via SOAR platforms.

Manage detection-as-code pipelines , ensuring CI / CD integration, modular content reuse, and full traceability of changes.

Required Skills

  • 5+ years of experience in detection engineering, threat hunting, and SOC operations .
  • Expertise in at least two major SIEMs (Sentinel, Google SecOps / Chronicle, Splunk) and data-lake query environments (Snowflake / Databricks).
  • Strong command of Sigma, KQL, SPL, or Lucene , with the ability to abstract detection logic into environment-agnostic templates.
  • Experience with federated detection queries and data modeling for environments without long-term log storage.
  • Familiarity with AI / ML-driven prioritization for detection scoring, clustering, or environment-based tuning.
  • Ability to handle diverse telemetry : cloud (AWS / Azure / GCP), IAM, EDR, firewall, Windows event logs, network, and SaaS platforms.
  • Experience in GitOps / detection-as-code workflows with version control, testing, and deployment pipelines.
  • Excellent communication and documentation skills with a focus on translating technical detections into product-ready content.
  • Nice to Have

  • Experience building or contributing to detection optimization or coverage grading frameworks .
  • Scripting in Python or PowerShell for automation, enrichment, and testing.
  • Familiarity with SOAR integration , purple teaming frameworks , and automated response orchestration .
  • Background in AI / ML model feedback integration for detection scoring or prioritization.
  • Connect to me at rajeshwari.vh@careerxperts.com for more details.

    Create a job alert for this search

    Engineer Framework • anand, gujarat, in

    Related jobs
    • Promoted
    • New!
    Network Security Engineer (Zeek / Suricata / Elastic- OT / Network Focus)

    Network Security Engineer (Zeek / Suricata / Elastic- OT / Network Focus)

    Microminder Cyber SecurityNadiad, IN
    We are looking for a Network Security Engineer with experience in deploying and managing open-source network security platforms. The role involves setting up visibility sensors, handling network tra...Show moreLast updated: 20 hours ago
    • Promoted
    Cyber Security Consultant

    Cyber Security Consultant

    PwCAhmedabad, Gujarat, India
    We are seeking a highly motivated and experienced OT Security manager to join our dynamic security team.You will play a pivotal role in protecting our organization’s OT systems from cyber threats b...Show moreLast updated: 11 days ago
    • Promoted
    Senior Penetration Tester

    Senior Penetration Tester

    Vista Applied Solutions Group IncVadodara, IN
    Client is looking for Senior PenTester and this is remote position from India.Security and Penetration Testing.OSCP Certification - Industry-standard credential demonstrating practical penetration ...Show moreLast updated: 11 days ago
    • Promoted
    • New!
    TOSCA QA Egineer

    TOSCA QA Egineer

    NarwalVadodara, IN
    Narwal, with its Global Delivery Model, strategically expands its reach across North America, the United Kingdom, and an offshore development centre in India. Delivery cutting edge AI, Data and Qual...Show moreLast updated: 20 hours ago
    • Promoted
    • New!
    Vulnerability Management Specialist_9+years_Remote

    Vulnerability Management Specialist_9+years_Remote

    Tekgence IncAnand, IN
    Remote
    Job Title : Vulnerability Management Specialist (AWS & Wiz).Duration : 12+ months , extendable.We are seeking a skilled Vulnerability Management Specialist with hands-on experience in AWS environment...Show moreLast updated: 20 hours ago
    • Promoted
    L3 Server Engineer – Major Incident Management

    L3 Server Engineer – Major Incident Management

    Nextbridge IT SolutionsNadiad, IN
    Nextbridge IT Solutions is a US-based IT solution firm specializing in connecting exceptional talent with organizations driving transformation in infrastructure, cloud, and emerging technologies.We...Show moreLast updated: 23 days ago
    • Promoted
    3rd Line Network Security Engineer

    3rd Line Network Security Engineer

    iConsulteraAhmedabad, Gujarat, India
    Job Title : 3rd Line Network Engineer.Location : Ahmedabad, Gujarat, India.To manage and own support tickets for existing customer services. To design and implement changes as per the client’s require...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    IT Governance & Compliance Advisor

    IT Governance & Compliance Advisor

    Nexora Tech SolutionsVadodara, IN
    Join Nexora Tech as a Strategic Partner – IT Governance & Compliance Advisor.Former CIO – SBI, HSBC, and leadership positions at HDFC Bank, Capgemini, Oracle and Citi), is a.AI / ML strategy, IT mode...Show moreLast updated: 20 hours ago
    • Promoted
    AWS security engineer

    AWS security engineer

    JRD SystemsAhmedabad, IN
    We are seeking a highly skilled.Senior DevOps / Platform Engineer.The ideal candidate will have deep expertise in infrastructure automation, Terraform, and cloud platform management, with a strong De...Show moreLast updated: 10 days ago
    • Promoted
    Global Information Security Lead

    Global Information Security Lead

    Intas PharmaceuticalsAhmedabad, Gujarat, India
    Ownership and accountability for managing the Global Information Security Operations.Identify, mitigate, and manage Revenue, Financial and Brand risks to the organization.Maintain continuous awaren...Show moreLast updated: 19 days ago
    • Promoted
    • New!
    Workday Security System Analyst

    Workday Security System Analyst

    AvalaraVadodara, IN
    Avalara is an AI-first company.We expect every engineer, manager, and to actively leverage AI to enhance productivity, quality, innovation, and customer value. AI is embedded in our workflows, and p...Show moreLast updated: 20 hours ago
    • Promoted
    • New!
    MLops Engineer

    MLops Engineer

    RecroVadodara, IN
    We are looking for an experienced.Azure and AWS cloud ecosystems.The ideal candidate should bring a strong background in. GenAI tooling, automation, and CI / CD pipelines.Design, implement, and manage...Show moreLast updated: 20 hours ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Paramount Computer SystemsVadodara, IN
    Identity Governance and Administration (IGA).The role involves designing, implementing, and supporting enterprise-grade IGA solutions to ensure secure, efficient, and compliant identity lifecycle m...Show moreLast updated: 11 days ago
    • Promoted
    Security Researcher

    Security Researcher

    Altered SecurityNadiad, IN
    Altered Security is an information security startup with focus on edtech, hands-on learning and focused security assessments. It has offices in India and Singapore.We are experts in information secu...Show moreLast updated: 30+ days ago
    • Promoted
    Saviynt IGA Engineer / Developer - Identity Governance & Administration (IGA)

    Saviynt IGA Engineer / Developer - Identity Governance & Administration (IGA)

    SentinelVadodara, IN
    Saviynt IGA Engineer / Developer - Identity Governance & Administration (IGA).The security function of a world renowned manufacturing organisation for power tools is seeking a Saviynt IGA Engineer ...Show moreLast updated: 15 days ago
    • Promoted
    • New!
    CyberArk Engineer

    CyberArk Engineer

    Next VenturesAhmedabad, IN
    Job Opportunity : CyberArk Engineer.Contract / Permanent / Fixed Term.Privileged Access Management (PAM) implementations using CyberArk technologies. CyberArk Core-PAS, AAM, PTA, HTML5 Gateway.AUTOIT...Show moreLast updated: 20 hours ago
    • Promoted
    • New!
    Specialist - Privacy Implementation

    Specialist - Privacy Implementation

    Baldor Technologies Private Limited (IDfy)Vadodara, IN
    IDfy is Asia’s leading TrustStack, trusted by the best, with global expertise and enterprise-grade tech, we’re solving trust challenges, making compliance easy,fraud detection smarter, and onboardi...Show moreLast updated: 20 hours ago
    • Promoted
    • New!
    EMC Networker Backup Engineer (Riyadh, Saudi based)

    EMC Networker Backup Engineer (Riyadh, Saudi based)

    FR Consultancy (Middle East)Ahmedabad, IN
    Backup Engineer (EMC Networker) - L3.Family members, Insurance and other benefits.Provide L3-level support in a mission-critical banking environment. Lead major incidents / war rooms; guide L1 / L2; pro...Show moreLast updated: 20 hours ago
    • Promoted
    Penetration Tester

    Penetration Tester

    AsiteAhmedabad, Gujarat, India
    Penetration Testers - Junior and Senior / Lead.In Office, Ahmedabad, Gujarat, India (not remote).L (1,250,000) INR per year for Senior / Lead. Must undergo background check and security clearance.Candid...Show moreLast updated: 15 days ago
    • Promoted
    IAM Engineer (CIAM)

    IAM Engineer (CIAM)

    PerfictVadodara, IN
    The IAM Senior Engineer will be responsible for the service design, build and documentation all key elements of Client Customer IAM and Certificate Lifecycle Management supporting infrastructure an...Show moreLast updated: 11 days ago