Related skills
azure aws sql mitre att&ck kql📋 Description
- Create and refine detection logic across endpoint, cloud, identity, network, web, and email.
- Validate rule behavior through functional testing, false-positive review, and iterative tuning.
- Evaluating attack paths across domains and boosting coverage along the kill chain.
- Analyzing multi-source telemetry to find detection opportunities and boost SNR.
- Supporting cloud security validation for AWS, Azure, and GCP detections.
- Collaborating with senior researchers to test new detection approaches.
🎯 Requirements
- Experience in detection engineering, threat research, SOC, IR.
- Understanding of core concepts across multiple domains.
- Ability to write/validate detections with EQL, KQL, or SQL.
- Familiarity with MITRE ATT&CK and ATLAS.
- Strong analytical skills on false positives and weak signals.
- Clear, collaborative communication with senior researchers.
🎁 Benefits
- Competitive pay based on your work
- Health coverage for you and family
- Flexible locations and schedules
- Generous vacation days each year
- Up to 40 hours/year for volunteer projects
- 16 weeks parental leave
Meet JobCopilot: Your Personal AI Job Hunter
Automatically Apply to Engineering Jobs. Just set your
preferences and Job Copilot will do the rest — finding, filtering, and applying while you focus on what matters.
Help us maintain the quality of jobs posted on Empllo!
Is this position not a remote job?
Let us know!