- Provide senior technical leadership across Security Operations, focusing on detection engineering, security research, SOC automation, threat hunting and fraud monitoring platform development
- Develop and maintain security detections across the technology stack
- Execute hypothesis-driven threat hunts and translate attacker TTPs into practical detections
- Map capabilities to MIT&CK; and identify coverage gaps
- Lead development of the fraud and abuse monitoring platform
- Design analytics, detection logic and integrations to identify abuse patterns within business applications
- Design and develop SOC automation
- Build automated enrichment, investigation and response workflows using SOAR playbooks
- Conduct independent research into emerging threats, vulnerabilities and attack techniques
- Reproduce exploits in controlled environments to validate findings
- Provide technical leadership and establish engineering standards
- Conduct quality reviews and act as a senior technical decision-maker
- Own complex technical projects from concept through implementation with a high degree of autonomy
Requirements
- Minimum 3 years of professional experience in cybersecurity, software development, or a combination of both with a strong security focus
- Demonstrated experience developing software, automation or security tooling
- Strong Python development capability
- Strong understanding of security monitoring and detection engineering
- Experience working with SIEM, security analytics and large-scale security telemetry
- Experience designing and developing integrations between security platforms and other systems
- Strong understanding of networking and network security principles
- Ability to translate security research into practical detections, automation or engineering solutions
- Strong analytical and problem-solving ability
- Excellent technical documentation skills
- Ability to work independently with minimal supervision
- Demonstrated initiative and willingness to research unfamiliar technologies and problems
- Ability to manage multiple technical projects and prioritise work effectively
- Relevant degree, diploma or equivalent formal qualification preferred, though practical professional experience and technical capability are considered equally important
- Industry certifications are not a primary requirement
Core Competencies
Demonstrates expertise in Security Operations, focusing on detection engineering, threat hunting, and SOC automation. Proficient in developing security detections and integrating security platforms to enhance monitoring and response capabilities.
📌 Principal Security Engineer, Detection (Roma)
🏢 Jobtailor
📍 Roma
Candidati a questo annuncio
Mostra le tue capacità professionali all'azienda, compila il form e lascia un tocco personale nella lettera di presentazione, aiuterà il recruiter nella scelta del candidato.