Detection & Response Platform Lead (Magliano in Toscana)

Detection & Response Platform Lead (Magliano in Toscana)

17 ago
|
Team.Blue
|
Magliano in Toscana

17 ago

Team.Blue

Magliano in Toscana

team.blue is an ecosystem of 60+ successful brands working together across 22 European countries to provide its 3.5 million SMB customers with everything they need to succeed online by offering best-in-class expertise and services.team.blue's brands are a mix of traditional hosting businesses that offer services from domain names, email, shared hosting, e-commerce, and server hosting solutions and, as specialist SaaS providers, adjacent products such as compliance, marketing tools, and team collaboration products.

Scopra se questa occasione è adatta a lei leggendo tutte le informazioni riportate di seguito.

This broad product offering makes it a one-stop partner for online businesses and entrepreneurs across Europe.The roleWe are looking for a Detection &

- Response Platform Lead to drive our endpoint security strategy and evolve our detection capabilities at scale.

This is an opportunity to shape the future of teamb.blue’s Security Operations.You will own our detection and response platforms as the foundation, while building scalable detection solutions, automating workflows, and collaborating across DevOps, Operations, and SaaS portfolio companies to reduce threats upstream.Your objectives are:Strategically manage our endpoint detection platforms – Own detection & response platforms configurations, optimization, and vendor relationships to maximize detection efficacy across team.blue infrastructureEngineer scalable detection solutions – Automate alert triage and enrichment, and continuously improve detection coverageDrive cross-functional influence – Partner with DevOps, vulnerability management, and SaaS companies to reduce alert volume by strengthening preventive controls and threat modeling upstreamThe position can be based anywhere within the EU as fully remote or hybrid working from one of our many offices.Your ResponsibilitiesPlatform Ownership &

- StrategyOwn the strategic direction, configuration, and optimization of detection & response platforms across team.blue infrastructureMaintain and continuously improve the services,



reviewing incidents and collaborating with the vendor to enhance service qualityMonitor alert trends and tune detection policies to optimize true positive rates while reducing alert fatigueDetection Engineering &
- AutomationConduct threat hunting to identify gaps in detection coverage and validate detection efficacyBuild custom detection rules based on threat intelligence, hunting findings, and incident learningsCross-Functional Collaboration &
- InfluencePartner with Operations and Infrastructure teams to ensure consistent endpoint protection standardsWork with vulnerability management to prioritize patching based on active threats and detection findingsProvide threat context to upstream teams to improve preventive controls and reduce alert volumeContinuous Improvement &
- Knowledge SharingImplement blameless postmortems after incidents to drive continuous improvementSharing detection content and learnings within team.blueDocument detection logic, playbooks, runbooks, and configuration standardsStay current on endpoint threat landscape, attack techniques, and detection methodologiesYour SkillsetRequired Experience &
- Skills5+ years in technical security roles – security operations, detection engineering, incident response, or system administration with security focusEndpoint security expertise – Good understanding of operating systems such as Windows (Server), Linux, and macOSDetection engineering capabilities – Experience developing detection rules, alerts, and response workflowsHands-on EDR/XDR experience – Practical experience with EDR platforms (SentinelOne experience valued)Threat analysis skills – Ability to analyze attack patterns, understand attacker TTPs, and translate to detectionsCollaborative approach – Experience working across organizational boundaries with IT, DevOps,



and business teamsGood English – Both verbal and written communication skillsNice to HaveAutomation mindset – Scripting skills (PowerShell, Python) and enthusiasm for automating repetitive tasksSecurity certificationsSOC/MDR service experience – Working with external SOC or MDR providersMITRE ATT&CK; knowledge – Practical experience mapping detections to the MITRE ATT&CK; frameworkCloud security knowledge – Understanding of cloud environments (Azure, AWS, GCP) and their security modelsMulti-tenant experience – Working in SaaS or MSP environments supporting multiple organizationsWorking EnvironmentYou will join team.blue's Security Management team of 14 security professionals, reporting directly to the Group CISO.

You will work closely with our Operations department and collaborate with security teams across our portfolio of SaaS companies.This role follows a modern, distributed security operations model:Remote-first flexibility – Work fully remote within the EU, hybrid, or from one of our officesMinimal travel – Occasional team events or company gatheringsWork-life balance – Healthy boundaries to prevent burnout and maintain sustainable performanceReasons to ApplyEngineering impact at scale – Build detection solutions that protect a diverse portfolio of companies, not just respond to alertsShape the future SOC – Help transform team.blue's security operations"Come as you are"Everyone is welcome here.

Diversity &

- Inclusion are at our core.

Far above any technical competence, we value respect, openness, and trusted collaboration.

We do not tolerate intolerance.Right to workAt any stage, please be prepared to provide proof of eligibility to work in the European country you are applying for.

Unfortunately, we are unable to support Sponsorship VisasESG“At team.blue, our commitment to caring for the environment and each other is at the heart of everything we do.

Our latest impact report showcases our ongoing ESG efforts and ambitious sustainability goals.

Interested in learning more about our dedication to making a positive impact? xkiyazw Check it out here.”

📌 Detection & Response Platform Lead (Magliano in Toscana)
🏢 Team.Blue
📍 Magliano in Toscana

Candidati a questo annuncio

Mostra le tue capacità professionali all'azienda, compila il form e lascia un tocco personale nella lettera di presentazione, aiuterà il recruiter nella scelta del candidato.

Iscriviti a questa job alert:

Ricevi via email le nuove offerte di lavoro per: detection & response platform lead (magliano in toscana) / magliano in toscana

Iscriviti a questa job alert:

Ricevi via email le nuove offerte di lavoro per: detection & response platform lead (magliano in toscana) / magliano in toscana