CISOC Threat Detection Engineer | Pharma - Hybrid
We are looking for a Threat Detection Engineer to support the cybersecurity operations of a global pharmaceutical company.
In this role, you will be responsible for analyzing, detecting, and mitigating cyber threats targeting enterprise environments. You will design and implement robust detection mechanisms to proactively identify malicious activities across on-premise, cloud, and hybrid infrastructures.
SKILLS 🤹:
- Threat Detection Expertise:
- Fluent English.
o Experience with endpoint detection and response (EDR) solutions (e.g., CrowdStrike, FortiEDR, Defender for Endpoint).
o Familiarity with behavioral analytics and anomaly detection techniques.
• Threat Intelligence and Analysis:
o Understanding of threat intelligence sources (e.g., MITRE ATT&CK, D3FEND) and their application in detection strategies.
o Ability to research and adapt to emerging threats and attack methodologies.
• Programming and Automation:
o Scripting skills in Python, PowerShell, or Bash for automating security tasks.
o Experience developing integrations and automated workflows using APIs.
• Cloud and Network Security:
o Hands-on experience with cloud security tools (e.g., AWS GuardDuty, Azure Security Center).
o In-depth knowledge of IP networks, firewalls, intrusion detection/prevention systems (IDS/IPS), and packet analysis.
• Operating Systems:
o Strong knowledge of Linux and Windows internals, including log analysis and common attack vectors.
• Tool Proficiency:
o Familiarity with open-source tools like Zeek, Falco, Wireshark, and OSQuery.
o Knowledge of malware analysis tools and techniques.
• Minimum of 3-5 years in cybersecurity roles, such as Threat Hunter or Detection Engineer.
• Demonstrated success in developing and refining detection mechanisms in enterprise environments.
Certifications:
• Certified Detection Analyst (CDA)
• Certified Red Team Professional (CRTP) or expert (CRTE)
• Certified Azure Red Team Professional (CARTP) or expert (CARTE)
• OffSec Certified Professional (OSCP)
• GIAC Defending Advanced Threats (GDAT)
TASKS & RESPONSIBILITIES 🚀:
- Develop and maintain detection rules for Microsoft XDR.
- Continuously monitor and analyze the threat landscape to update detection logic.
- Conduct research and analysis on the latest threats and techniques to improve detection capabilities.
- Collaborate with other teams to ensure effective integration of detection mechanisms.
SCHEDULE 🕘:
- 08/09h -17/18h from Monday to Friday (flexible)
- 1 day of office work | 4 days by remote.
CONDITIONS 🌱:
- Salary package based on your profile. We will discuss it on our first call.
- Permanent Contract
- Ticket restaurant included in-office hours
- Flexible Retribution Program (medical insurance, public transport ticket and childcare check)
- Discounts on gym network (Wellhub)
- Learning & Development
- Friend Referral Program
Our goal is that you are well in every way!
- Department
- IT
- Locations
- Sant Cugat del Vallès
- Remote status
- Hybrid Remote
Sant Cugat del Vallès
Trabajamos con los mejores profesionales del sector y lo hacemos de forma:
CISOC Threat Detection Engineer | Pharma - Hybrid
Loading application form
Already working at Ambit BST?
Let’s recruit together and find your next colleague.