Job Description:Job Title: Detection Engineer
Description**:
- As a Detection Engineer, your primary mission is to research, design, and build advanced detection logic to protect the Airbus ecosystem. You will move beyond simple alert monitoring to proactively identify gaps in our** Detection Coverage and create robust "Detection as Code" solutions. You will be part of the Detection & Response (D&R)team, ensuring our defenses evolve as fast as the threat landscape.
The Mission Research & Develop: Proactively research threat actor TTPs (Tactics, Techniques, and Procedures) and Understand how they are being used in an Attack and emulate the scenario to convert them into actionable detection rules.
Detection as Code: Utilize CI/CD frameworks to deploy, test, and maintain detection logic and have an Automation mindset for smooth functioning of the CI/CD Pipeline.Adversary Emulation: Mimic real-world attacks in a lab environment to validate that our sensors and alerts actually work, identify the coverage Gap understand the Emulation Output and and create a detection for same.Continuous Defensive Evolution: To partner with the Detection & Response (D&R) team to ensure our defensive capabilities evolve at the speed of the threat landscape, hardening the organization against emerging risks also Map the Detection capability accurately with MITRE ATT&CK framework to identify and close blind spots.
Qualification & Experience:
- Education: Bachelor’s degree in Computer Science, Cybersecurity, or a related technical field.
- **Experience:**4 to 8+ years of experience specifically in Detection Engineering, Threat Hunting, or Advanced SOC Analysis (L3).
- Core Technical Skills: Deep knowledge of Windows, Unix/Linux, and Cloud (AWS/GCP) telemetry.
- Proficiency in Splunk SPL and experience with Splunk Enterprise Security.
- Familiarity with detection standards: Sigma, YARA, Snort, or STIX/TAXII.
- Strong understanding of the MITRE ATT&CK framework.
- Some Experience towards Adversary Emulation and Simulation.
- Research Oriented mindset to understand the latest attacks, TTPs used into the same and test the controls against the same through Simulation and build the Detections.
- Preferred: Certifications like OSCP, GCIA, GDAT, or Splunk Power User/Admin.
- Mindset: A "purple team" mentality—understanding how to attack in order to better defend.
Key Responsibilities
- Threat Research: Analyse latest threats and APT behaviours to improve the security detection posture.
- Rule Engineering: Build and maintain security detections using a Git-based CI/CD framework.
- Validation: Perform adversary emulation to test the efficacy of security controls and detection logic.
- Testing: Develop specific test cases and regression tests to ensure detection reliability and reduce false positives.
Emulation and Simulation:
- Emulate and Simulate the scenarios against real telemetry to identify the behaviour and output and convert the same as a robust Detection.
- Collaboration: Work with the Use Case Factory (UCF) and Business stakeholders to refine detection requirements.
- Documentation: Produce high-quality technical documentation for each detection, including the "logic" behind the alert and recommended response steps for SOC analysts.
This job requires an awareness of any potential compliance risks and a commitment to act with integrity, as the foundation for the Company’s success, reputation and sustainable growth.
Company:
Airbus India Private Limited:
Employment Type:
Permanent
Experience Level:
Professional
Job Family:
Cyber Security
By submitting your CV or application you are consenting to Airbus using and storing information about you for monitoring purposes relating to your application or future employment. This information will only be used by Airbus.
Airbus is committed to achieving workforce diversity and creating an inclusive working environment. We welcome all applications irrespective of social and cultural background, age, gender, disability, sexual orientation or religious belief.
Airbus is, and always has been, committed to equal opportunities for all. As such, we will never ask for any type of monetary exchange in the frame of a recruitment process. Any impersonation of Airbus to do so should be reported to emsom@airbus.com.
At Airbus, we support you to work, connect and collaborate more easily and flexibly. Wherever possible, we foster flexible working arrangements to stimulate innovative thinking.
閲覧数
0
応募クリック
0
Mock Apply
0
スクラップ
0
類似の求人

Administrator - Desk Side Services, AMT Asset Management Software
HCL Technologies

RTS DevSecOps Engineer
Lockheed Martin · Boulder, Colorado

Specialist Software Engineer – Industrial IoT
Amgen · India - Hyderabad

Software Engineer II, Manufacturing Test
Anduril · Costa Mesa, California, United States

R&D Team Leader- JFrog Fly
JFrog · Tel Aviv/ Netanya, Israel
Airbusについて

Airbus
PublicAirbus SE is a European aerospace corporation. While the company's primary business is the design and manufacture of commercial aircraft, it also operates separate divisions for Defence and Space and Helicopters.
10,001+
従業員数
Leiden
本社所在地
$89B
企業価値
レビュー
10件のレビュー
3.7
10件のレビュー
ワークライフバランス
3.2
報酬
4.0
企業文化
4.1
キャリア
3.5
経営陣
3.8
72%
知人への推奨率
良い点
Learning opportunities and professional development
Supportive team and collaborative environment
Good compensation and benefits
改善点
High pressure and performance expectations
Long hours and overwhelming workload
Bureaucratic and rigid structure
給与レンジ
43件のデータ
Junior/L3
L2
L6
L3
L4
L5
Junior/L3 · Cybersecurity Analyst
0件のレポート
$51,199
年収総額
基本給
-
ストック
-
ボーナス
-
$43,519
$58,879
面接レビュー
レビュー4件
難易度
3.0
/ 5
期間
14-28週間
内定率
25%
体験
ポジティブ 25%
普通 75%
ネガティブ 0%
面接プロセス
1
Application Review
2
HR Screen
3
Technical/Hiring Manager Interview
4
Panel Interview
5
Offer
よくある質問
Technical Knowledge
Behavioral/STAR
Past Experience
Culture Fit
最新情報
Airbus installs 1st cargo door for A350 freighter prototype - FreightWaves
FreightWaves
News
·
1w ago
Air Canada Takes Delivery of Its First Airbus A321XLR - Airways Magazine
Airways Magazine
News
·
1w ago
What skills are needed for Airbus Digital Workspace / Digital CoE / Integration & Testing roles?
I’m a fresher trying to target roles at Airbus like Digital Workspace, Digital CoE (ERP), and Integration + Testing. Can anyone working in Airbus or who has gone through the process share: What skills/technologies should I focus on for these roles? How deep should I go into Python / SQL / APIs / Testing concepts? Are projects important? If yes, what kind of projects would actually help? What tools are commonly used (like ServiceNow, SAP, automation tools, etc.)? Any tips to crack the inter
·
1w ago
·
1
·
5
Lufthansa's first Airbus A380 with upgraded business class debuts on flight to LAX - The Points Guy
The Points Guy
News
·
1w ago