Senior Security Detection Engineer

Job Category: Security
Job Type: Full Time
Job Location: Málaga, Madrid or Sevilla

Reporting to the Regional SOC Lead as Senior Detection Engineer, you will form part of a team of Information Security specialists supporting clients globally. Where you will help define, evolve and operate the security technologies, controls, policies and practices ensuring that they are applied pragmatically to strike a balance between protecting our business and customers, whilst allowing the organisation to get on with doing what it does best.

We are looking for someone within the information security field, specifically defensive security activities, who is progressing their career in Security through working in collaboration with a team of IT operations and business specialists in identifying, responding, and efficiently remediating any security related alerts, incidents, or other concerns that may impact the business. As an experienced engineer within Security Operations your key responsibilities will include;

  • Consistently deliver, to a high standard, reactive and proactive Security Operations services to the organisation and its clients. Ensuring technical controls, operational practices, processes, personnel, detections, and response capabilities remain relevant and effective in reducing meaningful business risks.
  • Act as the Security Representative in both internal and multi-disciplinary project teams, actively identifying technical and organisational requirements. Contribute to shaping solutions and play a key role in delivering end-to-end project engagement for both local and distributed projects focused on technological transformation, improvement and growth.

You must possess a strong understanding of security operations and incident response processes.

To succeed in this role, you must enjoy working hands-on and building innovative security solutions to address the security needs of a rapidly evolving business.

Responsibilities

As a Senior Detection Engineer, you will:

  • Lead Detection Strategy: Drive the end-to-end lifecycle of security detections, from identifying necessary telemetry to designing and implementing high-fidelity rules aligned with frameworks like MITRE ATT&CK. You’ll ensure comprehensive monitoring and protection of critical assets and data.
  • Optimize Detection Efficacy: Continuously tune and refine detection rules to ensure accuracy, optimize performance, and significantly minimize false positives, enhancing our ability to focus on genuine threats.
  • Enhance Platform Capabilities: Maintain and optimize our SIEM platforms to ensure robust detection capabilities and efficient incident response workflows.
  • Collaborate and Integrate: Partner closely with engineering and IT teams to define and ensure critical logging and telemetry requirements are met across our infrastructure.
  • Proactive Threat Intelligence: Conduct continuous monitoring and analysis of the evolving threat landscape to proactively update and refine our detection mechanisms and strategies.
  • Strategic Security Leadership: Play a key role in making strategic decisions to address and prioritize security detection gaps, actively contributing to the maturity of our overall security detection program and the organization’s security roadmap.
  • Incident Response Support: Provide expert support for production-related security incidents and investigations, including participation in the security on-call rotation as required.
  • Operational Excellence: Consistently deliver high-standard reactive and proactive Security Operations services. Ensure that technical controls, operational practices, processes, personnel, detections, and response capabilities remain relevant, effective, and capable of reducing meaningful business risks.
  • Security Representative: Act as a primary security representative within internal and multi-disciplinary project teams, proactively identifying and advocating for technical and organizational security requirements.
  • Support Security Automation: Identify potential security automation use cases that can improve daily security operations and contribute to the design, deployment, and maintenance of relevant security automation playbooks. You’ll also support the integration of automation into new security operations processes.

Technical knowledge and experience

  • Deep Technical Expertise: Proven, hands-on expertise with SIEM tools (e.g., Splunk, ELK) and endpoint detection tools (e.g., EDR/XDR).
  • Threat Intelligence & Frameworks: Extensive knowledge of threat actor tactics, techniques, and procedures (TTPs), along with a strong understanding and practical application of security frameworks such as MITRE ATT&CK and the Kill Chain.
  • Security Technologies: Comprehensive experience with common security technologies deployed in SOC environments, including WAF, SIEM, XDR, CTI, etc.
  • Enterprise-Scale Design: Demonstrated experience in designing and implementing robust security solutions at scale for large enterprises or multi-tenant service providers.
  • Industry Standards: Familiarity with industry-leading security configuration standards, such as NIST and CIS.
  • Problem-Solving & Prioritization: Exceptional ability to manage multiple concurrent tasks and activities, make sound judgments, and effectively prioritize in a fast-paced, high-pressure environment.
  • Adaptability & Drive: Proven capability to manage technical and procedural transformation, adapt quickly to a rapidly changing threat landscape, and demonstrate a highly self-motivated and directing approach.
  • Team Collaboration: Strong sense of team spirit, capable of harnessing diverse skills and experiences, and effectively collaborating in a global, multi-office environment. Willingness to travel to international offices as required.
  • Communication & Documentation: Excellent verbal communication and technical writing skills in English, with the ability to clearly articulate complex security concepts to both technical and non-technical audiences.
  • This role offers an exciting opportunity to significantly impact our security posture and grow within a leading organization. If you are a proactive and skilled Senior Detection Engineer passionate about building cutting-edge security capabilities, we encourage you to apply.

Non-essential but desirable:

  • Degree in Computer Science or equivalent working experience preferred
  • Security accreditation (such as CISSP-ISSEP, CISSP-ISSAP, or CCSP)
  • Vendor Based Accreditations or Training
Menu