Principal Security & Detection Engineer (Roma)

Principal Security & Detection Engineer (Roma)

22 set
|
Integrity360
|
Roma

22 set

Integrity360

Roma

ppTitle: Principal Security Detection Engineer /p pJob type: Full-Time Permanent /p pWorking arrangement: 3 days a week onsite/hybrid. /p pSalary: Negotiable / DOE /p h3About Us /h3 pIntegrity360 is a leading independent cybersecurity and PCI specialist operating across Europe, Africa, the Caribbean, and North America. The company has office locations in Ireland, the UK, Bulgaria, Italy, Sweden, Spain, Lithuania, Ukraine, Africa, the Caribbean, and Canada, supported by seven Security Operations Centres (SOCs) located in Dublin, Sofia, Madrid, Stockholm, Rome, Johannesburg and Cape Town. /p pWith over 780 employees, including more than 585 dedicated cybersecurity professionals, Integrity360 delivers a full suite of professional, support, and managed security services. These span the complete cyber risk lifecycle, from identification and prevention to detection, response, and recovery. Integrity360 supports over 3000 mid-market and enterprise organisations across sectors including financial services, insurance, government, healthcare, retail, telecommunications, and utilities. /p pAt Integrity360, people come first. We invest heavily in learning, development and progression, fostering a dynamic culture where innovation, collaboration and continuous growth are at the heart of what we do. If you're ready to take your cyber security career to the next level, we’d love to hear from you. /p h3Job Role / Responsibilities /h3 pAs a Principal Security Detection Engineer, you will provide senior technical leadership across our Security Operations capability, with a particular focus on detection engineering, security research, SOC automation, threat hunting, and the continued development of our fraud monitoring platform. /p pThis is a highly technical role for an individual who is comfortable operating with a high degree of autonomy and taking ownership of complex technical problems from concept through to implementation. /p pYou will operate as a senior member of the technical leadership team, helping define the direction of our detection and research capabilities while continuing to work hands-on across security engineering, software development, research and automation.



/p pThe ideal candidate is equally comfortable investigating how a new attack technique works, reproducing an exploit in a controlled environment, writing software to automate a security process, developing a new detection, and turning that work into a repeatable capability for the wider SOC. /p pThis is not a traditional SOC monitoring or incident-response role. The focus is on building and improving the technology, methodologies and intelligence that enable the SOC to operate more effectively. /p h3Key Responsibilities /h3 ul liDetection Engineering Threat Hunting ul liDevelop and maintain security detections across the technology stack. /li liExecute hypothesis-driven threat hunts and translate attacker TTPs into practical detections. /li liMap capabilities to MITRE ATTCK and identify coverage gaps. /li /ul /li liFraud Monitoring Platform Development ul liLead the development of the fraud and abuse monitoring platform. /li liDesign analytics, detection logic, and integrations to identify abuse patterns within business applications. /li /ul /li liSecurity Automation SOAR ul liDesign and develop automation to improve SOC efficiency. /li liBuild automated enrichment, investigation, and response workflows (SOAR playbooks). /li /ul /li liSecurity Research Development ul liConduct independent research into emerging threats, vulnerabilities, and attack techniques. /li liReproduce exploits in a controlled environment to validate findings. /li /ul /li /ul h3Technical Leadership Autonomy /h3 ul liProvide technical leadership and establish standards for engineering activities. /li liConduct quality reviews and act as a senior technical decision‑maker. /li liOperate with a high degree of autonomy, owning projects from concept to implementation.



/li /ul h3Technical Environment /h3 pThe successful candidate should be comfortable working across a broad security and software engineering environment, including: /p ul liSIEM /li liEDR/XDR technologies /liliSOAR and security automation /li liThreat hunting /li liVulnerability research and exploitation /li liNetwork security and networking technologies /li liPython /li liSQL /li liAPIs and system integrations /li /ul h3Required Experience Skills /h3 ul liMinimum 3 years of professional experience in cybersecurity, software development, or a combination of both with a strong security focus. /li liDemonstrated experience developing software, automation or security tooling. /li liStrong Python development capability. /li liStrong understanding of security monitoring and detection engineering. /li liExperience working with SIEM, security analytics and large-scale security telemetry. /li liExperience designing and developing integrations between security platforms and other systems. /li liStrong understanding of networking and network security principles. /li liAbility to translate security research into practical detections, automation or engineering solutions. /li liStrong analytical and problem-solving ability. /li liExcellent technical documentation skills. /li liAbility to work independently with minimal supervision. /li liDemonstrated initiative and a willingness to research unfamiliar technologies and problems. /li liAbility to manage multiple technical projects and prioritise work effectively. /li /ul h3Certifications/Qualifications /h3 ul liA relevant degree, diploma or equivalent formal qualification is preferred. /li liHowever, demonstrated professional experience and technical capability will be considered equally important. Candidates who can demonstrate strong practical cybersecurity or software-development experience without a traditional academic background will be considered.Industry certifications are not a primary requirement for this position. Demonstrated technical ability, initiative, engineering capability and practical experience are more important. /li /ul /p #J-18808-Ljbffr

📌 Principal Security & Detection Engineer (Roma)
🏢 Integrity360
📍 Roma

Candidati a questo annuncio

Mostra le tue capacità professionali all'azienda, compila il form e lascia un tocco personale nella lettera di presentazione, aiuterà il recruiter nella scelta del candidato.

Iscriviti a questa job alert:

Ricevi via email le nuove offerte di lavoro per: principal security & detection engineer (roma) / roma

Iscriviti a questa job alert:

Ricevi via email le nuove offerte di lavoro per: principal security & detection engineer (roma) / roma