Cyber Security Engineer - Threat Detection
- Location
- Greater London, England, United Kingdom
catch, working alongside threat intelligence, incident response, and red team functions to keep coverage grounded in real adversary behavior. Responsibilities Detection Engineering - Design, build, test, and maintain detection content across SIEM, EDR, and NDR platforms, and document the intent, data source, and expected behaviour of each detection Detection Tuning … health and completeness of security log sources, detect collection failures and silent feeds, and onboard or update SIEM log sources in a timely manner Automation and Tooling - Apply a developer and problem-solving mindset to the work, using scripting to build internal tooling, process and normalize data, and remove ...