Role overview

Senior Detection Engineer

Requirements and responsibilities

Readable role content extracted into sections for faster review.

About the Job

  • Develop, tune, document, and maintain detection logic across multiple log sources including endpoint, cloud, container, and SaaS products.
  • Assist in cyber forensic investigations across a variety of log sources
  • Optimize log ingestion pipelines and telemetry collection to ensure high-quality, actionable security data while managing volume and cost
  • Design and build SOAR playbooks and automation workflows to streamline detection triage, enrichment, and response actions
  • Mentor junior security analysts and detection engineers on threat hunting methodologies, detection logic development, and investigation techniques

About You

  • 5+ years of experience in a detection engineering, incident response, or offensive security role.
  • Experience with 1 or more public cloud platforms (AWS, Azure, GCP)
  • Deep understanding of attacker TTPs across modern zero trust environments, including identity compromise, token theft, and abuse of trust boundaries
  • Proficient understanding of macOS internals and telemetry available to identify macOS specific threats
  • Experience implementing detection-as-code workflows including version control, peer review processes, automated testing, and CI/CD deployment pipelines
  • Basic proficiency with Python, Golang, or other programming languages
  • Relevant certifications: GCFA, GCFE, GNFA, GREM, OSCP, GCIA, or similar

About You

  • Background in offensive security or red teaming Knowledge of machine learning for threat detection
  • Background in offensive security or red teaming
  • Knowledge of machine learning for threat detection

Details

  • Background in offensive security or red teaming
  • Knowledge of machine learning for threat detection
Similar roles

Keep a backup shortlist.

Browse stack
FocusSecurityRole area
Seniority signalSeniorCandidate level
StackAWS, Azure, CI/CDPrimary skills
Location3 accepted countriesEligibility

Stack

Use these tags to compare similar remote roles.

Location eligibility

Candidates should apply only when their profile country is listed here.

Your profileCountry not setSign in to check your country against this role.

Hiring flow

WithMira shows the role, then sends candidates to the company application.

1Check role fit, stack, and location eligibility in WithMira.
2Open the company application page from the tracked apply link.
3Save the role or subscribe for similar opportunities before leaving.
Apply on company siteCompany siteOpen link