Detection Engineer

2 settimane fa


Italy Getronics A tempo pieno

Detection Engineer About the Role We are looking for a Senior Detection Engineer to join our international cybersecurity team. The person who joins will help build upon the current ATT&CK-based detection manual used by the Getronics Security Operations Center (SOC), and take it to the next level of maturity and capability. Additionally, they will support the day-to-day threat detection work of a team of analysts servicing a wide range of clients across various industries, including Getronics' private/hybrid cloud and internal IT services. Key Responsibilities · Develop threat detection rules to identify modern attacker tactics and techniques, working closely with threat intelligence, incident response, security analysts, and infrastructure/security architecture teams. · Maintain and optimize the existing detection rulebase, applying lifecycle management and deprecating rules where needed. · Assess ATT&CK coverage to identify detection gaps and improvement opportunities. · Define and maintain effective detection metrics. · Support compliance-related use cases as required. · Create and maintain lists to support correlation rules. · Design dashboards for specific threat detection use cases and train analysts on their use. · Provide input into threat hunting activities through the development of efficient search queries. · Collaborate with business and IT teams to create detection strategies aligned with current and emerging business needs. · Analyze alert trends and propose improvements. · Support data collection improvements and maintain configuration management documentation. Requirements · Minimum of 2 years' experience as a Cybersecurity Detection Analyst working with SIEM technologies (QRadar, LogRhythm, Splunk, Elastic Security, InsightIDR, AlienVault OSSIM, etc.). · Previous experience in other technical cybersecurity roles such as SOC Analyst, Threat Intelligence Analyst, or Pentester. · Hands-on experience implementing detection playbooks based on the MITRE ATT&CK framework. · Strong analytical and problem-solving skills. · Solid understanding of the current threat landscape, including common attack vectors and best practices for protecting systems and networks. · Advanced knowledge or experience with at least two of the following technologies: Python, RegEx, Sigma, YARA. · Experience fine-tuning correlation rules for optimal performance. · Strong communication skills with the ability to document clearly and summarize effectively. · Fluent English is mandatory due to international team collaboration. · Structured, goal-oriented working style.



  • italy Smiths Detection A tempo pieno

    SMITHS DETECTION MAKING THE WORLD A SAFER PLACE Ogni minute di ogni giorno, in quadi ogni paese intorno al mondo, le persone e tecnologie di Smiths Detection rendono il mondo un luogo piu sicuro. Proteggiamo le persone, imprese e infrastructture con le tecnologie piu avanzate per lo screening nel campo dell’aviazione, porti marittimi, frontiere e confini,...


  • italy Chronos Consulting A tempo pieno

    Job Description Our client is a world-renowned US startup in the field of automation. This California unicorn is still a private enterprise experiencing hypergrowth. They are looking for an exceptional Senior Security Engineer to join their team as they build their defensive security capabilities. This is a full-time, permanent role. Hybrid or Remote....

  • Security Engineer

    3 settimane fa


    Italy Esprimo S.r.l. A tempo pieno

    ESPRIMO Srl, società di consulenza informatica che opera dal 2002 su tutto il territorio nazionale ed internazionale, a supporto delle imprese, si colloca nel settore dell’Information Technology proponendosi come obiettivo quello di fornire una vasta gamma di prodotti, servizi e soluzioni nelle aree più strategiche per l’impresa, come: Infrastrutture...

  • Cloud Engineer

    7 giorni fa


    South Italy HCLTech A tempo pieno

    We are looking for an Engineer from EU region. This position requires good knowledge in Azure, with AZ-900 mandatory certification, and requires AZ-104 certification minimum. AZ-400 certification is indeed accepted.• Expertise in Microservices provisioning and configuration.• Monitoring tools experience: Grafana, Datadog and Azure Monitoring• Implement...

  • Cloud Engineer

    2 settimane fa


    South Italy HCLTech A tempo pieno

    We are looking for an Engineer from EU region. This position requires good knowledge in Azure, with AZ-900 mandatory certification, and requires AZ-104 certification minimum. AZ-400 certification is indeed accepted.• Expertise in Microservices provisioning and configuration.• Monitoring tools experience: Grafana, Datadog and Azure Monitoring• Implement...


  • Roma, Italy, Integrity360 A tempo pieno

    About Us Integrity360 is the largest independent cyber security provider in Europe, with a growing international presence spanning the UK, Ireland, mainland Europe, Africa and the Caribbean. With over 700 employees, across 12 locations, and six Security Operations Centres (SOCs)—including locations in Dublin, Sofia, Stockholm, Madrid, Rome and Cape...

  • Fire Protection Engineer

    3 settimane fa


    Milan, Lombardy, Italy, Provincia di Milano IDOM Consulting, Engineering, Architecture A tempo pieno

    Do you want to be part of a company where customer satisfaction, colleagues and professional development are the cornerstones? A multinational company where you will have the expertise and the latest technology to develop your career and even become a partner one day. ABOUT THE JOB We are looking for a Fire Protection Engineer to join the team of...

  • Electrical Engineer

    4 giorni fa


    Treviglio, Bergamo, , Italy Anaergia A tempo pieno

    Electrical EngineerThe candidate will be part of the EICA (Electrical, Instrumentation, Control, Automation) team, with a focus on the electrical aspect.The design of the electrical system (cable sizing and grounding) and the auxiliary systems (lighting, outlets, smoke detection, etc.) is assigned to external engineering firms with whom we collaborate. The...


  • Flexible - Italy Sysdig A tempo pieno

    At Sysdig, we believe cloud security isn't a compromise - it's a promise. From the start, our mission has been clear: to help organizations secure innovation in the cloud, the right way. We created Falco, the open standard for cloud threat detection, and continue to lead the cloud security market with runtime insights, open innovation, and agentic Al....

  • Ingegnere ottico

    4 settimane fa


    Italy D-Tails Research A tempo pieno

    Optics/Photonics company R&D position: We are looking to hire Junior Optical Engineer/Scientist to contribute to our strategic research line on "Super-Resolution Microscopy and Retinal Imaging." This position is part of the public-private Joint-Lab collaboration between D-Tails and IIT-CLNS, supported by a five-year, large-scale research grant from the...