368,657open jobs
9,442companies
50,883added this week
Browse all
Salary
$60k – $149k per year (Estimated)
Location
In office (Ottobrunn, Ulm, Germany)
Seniority
Staff
Employment
Full-Time
Overview
Company
Impact
Profile match
Airbus SE is a European multinational aerospace and defense corporation, serving as one of the world's primary commercial aircraft manufacturers alongside its civil, parapublic, and defense divisions. Operating through three core business segments - Commercial Aircraft, Airbus Helicopters, and Airbus Defence and Space - the company designs, manufactures, and services narrow-body and wide-body jetliners, military transport and combat aircraft, civil and military rotorcraft, and space hardware spanning satellites and launch systems.

Job Description:

In order to support our Digital Security Team, Airbus Defence and Space is looking for a

Cyber Detection Engineering Lead (d/f/m)

Role Overview

To support our Digital Security Team, Airbus Defence and Space division is seeking a highly skilled Leader Role for Detection Engineer (d/f/m). This is a critical, high-impact role designed to actively protect our entire organization and our world-class products.

This is a technical, hands-on position that sits at the heart of our defense strategy. You will not simply respond to alerts; you will be the architect of our detection ecosystem-transforming threat intelligence into high-fidelity detection logic and bridging the gap between raw telemetry and actionable security intelligence.

Your location

Our site is just a stone's throw away from Munich, the beautiful capital of Bavaria. You are into sports and other outdoor activities? The Alps and Lake Starnberg are within an hour’s reach, offering a multitude of recreational options. Possible work locations include Manching, Taufkirchen/Ottobrunn, Immenstaad am Bodensee, and Ulm.

Our Benefits for You

  • Fair Compensation & Extras: Attractive remuneration and individual additional benefits, such as company pension schemes, mobility offers (e.g., bike leasing), or corporate discounts with partner companies in accordance with our current guidelines.

  • Time for You (and Your Loved Ones): 30 days of annual leave based on our collective agreement (35-hour week); work-life balance through flexible working hours (flextime), mobile working, part-time options, job sharing, and sabbatical opportunities.

  • Growth Made Easy: Excellent professional development opportunities and international, group-wide career perspectives.

  • Feel Good at Work: On-site company doctor; comprehensive health programs (sports courses, preventive care, etc.), canteen and cafeteria, and local childcare facilities at selected locations.

  • Diversity Connects: Work in a diverse environment with more than 140 nationalities, where exchange, mutual support, and inclusion are part of our DNA.

Your tasks and responsibilities

  • Lead Detection Strategy: Define the long-term vision for detection engineering, aligning technical roadmaps with organizational risk profiles while standardizing the development lifecycle.

  • Engine & Rule Lifecycle Management: Architect, develop, maintain, and optimize high-fidelity detection rules for the SOC while expanding framework coverage against MITRE ATT&CK® and Sigma standards.

  • Threat Intelligence Translation: Analyze Cyber Threat Intelligence (CTI) and translate complex TTPs into proactive, resilient detection logic.

  • Automation & Orchestration: Drive "Detection-as-Code" initiatives and engineer automated response playbooks to streamline incident response and minimize manual intervention.

  • Technical Mentorship & Escalation: Act as the primary escalation point for complex technical issues, mentoring junior detection engineers and SOC analysts.

  • Cross-Functional Collaboration: Partner closely with Incident Response and SOC teams to ensure deployment of context-rich detections that enable rapid threat containment.

Desired skills and qualifications

  • Degree in Computer Science, Cybersecurity, Information Technology, or equivalent practical experience.

  • Proven track record in developing use cases and detection logic within a Security Operations Center (SOC) environment, including leadership or mentorship experience.

  • Strong proficiency in Python and hands-on experience with automation frameworks to streamline operations.

  • Deep technical expertise in Windows and Linux operating systems, including OS internals, system logging, and telemetry analysis.

  • Practical background in Red Teaming, Penetration Testing, or an offensive mindset to anticipate attacker methodologies.

  • Advanced expertise with the MITRE ATT&CK® framework and Detection-as-Code concepts.

  • Strong communication skills with an empathetic, collaborative approach to leading cross-functional teams and technical initiatives.

Not a 100% match? No worries! Airbus supports your personal growth with customized development solutions.

Take your career to a new level and apply online now!

This job requires an awareness of any potential compliance risks and a commitment to act with integrity, as the foundation for the Company’s success, reputation and sustainable growth.

Company:

Airbus Defence and Space GmbH

Employment Type:

Permanent

-------

Experience Level:

Professional

Job Family:

Cyber Security

By submitting your CV or application you are consenting to Airbus using and storing information about you for monitoring purposes relating to your application or future employment. This information will only be used by Airbus.

Airbus is committed to achieving workforce diversity and creating an inclusive working environment. We welcome all applications irrespective of social and cultural background, age, gender, disability, sexual orientation or religious belief.

Airbus is, and always has been, committed to equal opportunities for all. As such, we will never ask for any type of monetary exchange in the frame of a recruitment process. Any impersonation of Airbus to do so should be reported to [email protected].

At Airbus, we support you to work, connect and collaborate more easily and flexibly. Wherever possible, we foster flexible working arrangements to stimulate innovative thinking.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,657 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Ottobrunn
$90k – $184k per year (Estimated) • Equity • Remote • Full-Time • 3+ years exp • United States
AI/ML
Red Teaming
Cybersecurity
Burp Suite
Cobalt Strike
Crowdstrike
Metasploit
MITRE ATT&CK
Nessus
Nmap
Apply
Cybersecurity Manager 6 hours ago
$113k – $227k per year • In office • Full-Time • 10+ years exp • Bachelor's Degree • Lake Forest • Saint Paul • Chicago
Cybersecurity
CVSS
FedRAMP
GDPR
ISO 27001
MITRE ATT&CK
SOC 2
Apply
Инженер SIEM 9 hours ago
$22k – $54k per year (Estimated) • Remote/Hybrid • Full-Time • Moscow
Bash
Python
Cybersecurity
MITRE ATT&CK
Apply
$17k – $21k per year (Estimated) • Remote/Hybrid • Full-Time • Bucharest
DevOps
Azure
GCP
Incident Management
Splunk
Cybersecurity
Google SecOps
MITRE ATT&CK
Apply
$20k – $44k per year (Estimated) • Remote • Full-Time • 5+ years exp • Minsk
Bash
PowerShell
Python
DevOps
AWS
Azure
Azure DevOps
Bicep
CI/CD
CloudFormation
Datadog
Docker
GCP
GitHub
GitHub Actions
GitLab
GitLab CI
IAM
Jenkins
Kubernetes
Splunk
Terraform
Cybersecurity
Aqua Security
CIS Benchmarks
CWE
Falco
HIPAA
ISO 27001
Kubescape
Kyverno
Least Privilege
Microsoft Sentinel
MITRE ATT&CK
OPA Gatekeeper
OWASP Top 10
PCI DSS
Prisma Cloud
SBOM
SOC 2
Threat Modeling
Trivy
Zero Trust
Open Policy Agent
Apply
$74k – $126k per year (Estimated) • In office • Full-Time • Singapore
Python
Apply
$57k – $137k per year (Estimated) • Remote/Hybrid • Full-Time • Bachelor's Degree • Montreal
Apply
$86k – $182k per year (Estimated) • Equity • In office • Full-Time • Bachelor's Degree • Ulm
DevOps
Rest API
Management
Confluence
Jira
Apply
$34k – $85k per year (Estimated) • Equity • In office • Full-Time • 5+ years exp • Getafe
Apply
$68k – $142k per year (Estimated) • In office • Full-Time • 10+ years exp • Bachelor's Degree • Marseille
AI/ML
Knowledge Graph
DevOps
AWS
Azure
GCP
Management
ServiceNow
Apply
$52k – $121k per year (Estimated) • Remote/Hybrid • Full-Time • Ottobrunn
C++
Java
Apply
$45k – $111k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Ottobrunn
ABAP
SQL
Databases
Databricks
Apply
$68k – $187k per year (Estimated) • In office • Full-Time • Ottobrunn
PowerShell
DevOps
Ansible
Kubernetes
Apply
$67k – $183k per year (Estimated) • In office • Full-Time • Ottobrunn
Cybersecurity
Nessus
Nmap
Apply
$49k – $121k per year (Estimated) • In office • 10+ years exp • Bachelor's Degree • Ottobrunn
Apply
See all jobs
This is one of many
368,657 more open roles from verified company boards, updated every day.