Senior Detection Engineer (AI-Augumented)
Brak informacji o wynagrodzeniu
SeniorFull-time·Umowa o pracę
#413314·Dodano 15 dni temu·0
Źródło: P>ech Stack / Keywords
AIGoSIEMLLMGitData LakeCI/CDSecurity
Firma i stanowisko
Procter & Gamble produces globally recognized brands and operates in approximately 70 countries worldwide. The company is hiring for a role within its InfoSec Cyber Defense Technology team.
Wymagania
- 5+ years in detection engineering, security operations, or threat detection roles.
- Experience writing and tuning SIEM detection rules/analytics.
- Strong understanding of the MITRE ATT&CK framework.
- Proficiency in Python for automation and tooling.
- Experience with git-based workflows for managing security content.
- Familiarity with security log sources: EDR, identity, cloud, network, proxy.
- Strong analytical skills distinguishing true threats from noise.
- Bachelor's degree in Information Systems, IT, Computer Science, Engineering, or related field, or equivalent experience.
Preferred:
- Experience with multiple query languages.
- Experience with detection-as-code practices and YAML-based rule formats (Sigma, custom schemas).
- Knowledge of AI/LLM capabilities and security implications.
- Experience with MCP servers, GitHub Copilot, or AI-assisted development workflows.
- Familiarity with SOAR platforms integration.
- Understanding of Kubernetes, cloud-native architectures, and OT/ICS environments.
Certification Preferred: CISSP, CCSP, OSCP, GIAC Certified Detection Analyst (GCDA), GCIA, and relevant cloud/ML/AI certifications.
Obowiązki
Detection Engineering (Core):
- Design, build, test, and tune detection rules mapped to MITRE ATT&CK.
- Write detection logic across SIEM and data lake platforms.
- Manage detection content as code using git workflows including PR reviews and CI/CD deployment.
- Investigate and suppress false positives using lookup-based architectures.
- Collaborate with Threat Hunting and Threat Intelligence teams.
- Monitor emerging threats and develop detections for new TTPs, CVEs, and active campaigns.
AI-Augmented Detection (Differentiator):
- Leverage AI agents and LLM-assisted workflows to accelerate detection development.
- Use and contribute to MCP tooling for AI-assisted detection validation.
- Operate agentic pipelines triaging large rule libraries at scale.
- Apply AI/ML techniques for anomaly detection and behavioral analytics.
- Stay current on frontier AI threats and translate them into detection opportunities.
Collaboration & Operations:
- Work closely with SOC analysts to improve alert quality.
- Collaborate with data engineers on telemetry and log source onboarding.
- Contribute to detection coverage reporting and MITRE ATT&CK posture measurement.
- Document detection logic, tuning rationale, and suppression decisions.
Benefity
- P&G-sized projects and access to leading IT partners and technologies.
- Wide range of self-development possibilities including trainings and certification paths.
- Competitive starting salary and benefits program including private health care, P&G stock, saving plans, and sport cards.
- Regular salary increases and promotions based on performance.
- Opportunity to change roles every few years.
- Hybrid work model with option to work from home two days a week.
Opieka zdrowotna
Udziały pracownicze
Karta sportowa
Inne informacje
Employment is exclusively extended on the basis of an "Umowa o Pracę" (Full-time Employment Contract). Apply only if you agree to these conditions. Equal opportunity employer statement included.
P&G
28 aktywnych ofert