Provide senior technical leadership across Security Operations, focusing on detection engineering, security research, SOC automation, threat hunting and fraud monitoring platform development
Develop and maintain security detections across the technology stack
Execute hypothesis-driven threat hunts and translate attacker TTPs into practical detections
Map capabilities to MITRE ATT&CK; and identify coverage gaps
Lead development of the fraud and abuse monitoring platform
Design analytics, detection logic and integrations to identify abuse patterns within business applications
Design and develop SOC automation
Build automated enrichment, investigation and response workflows using SOAR playbooks
Conduct independent research into emerging threats, vulnerabilities and attack techniques
Reproduce exploits in controlled environments to validate findings
Provide technical leadership and establish engineering standards
Conduct quality reviews and act as a senior technical decision-maker
Own projects from concept through implementation with a high degree of autonomy
Work hands-on across security engineering, software development, research and automation
Requirements
- Minimum 3 years of professional experience in cybersecurity, software development, or a combination of both with a strong security focus
- Demonstrated experience developing software, automation or security tooling
- Strong Python development capability
- Strong understanding of security monitoring and detection engineering
- Experience working with SIEM, security analytics and large-scale security telemetry
- Experience designing and developing integrations between security platforms and other systems
- Strong understanding of networking and network security principles
- Ability to translate security research into practical detections, automation or engineering solutions
- Strong analytical and problem-solving ability
- Excellent technical documentation skills
- Ability to work independently with minimal supervision
- Demonstrated initiative and willingness to research unfamiliar technologies and problems
- Ability to manage multiple technical projects and prioritise work effectively
- Relevant degree, diploma or equivalent formal qualification preferred
- Candidates without a traditional academic background may be considered based on strong practical cybersecurity or software-development experience
- Industry certifications are not a primary requirement
Core Competencies
Demonstrates expertise in security operations, focusing on detection engineering, threat hunting and SOC automation. Proficient in developing security tooling and integrating security platforms to enhance monitoring and response capabilities.