Confirmed on the employer's own hiring board on Oct 10, 2026. First seen by Alion on Sep 11, 2026.
Join BlueVoyant, a leading cybersecurity company, as a Senior Security Content Engineer. In this fully remote role, you will develop automated security analysis solutions, enhance security operations, and improve SOC efficiency. You will work closely with internal teams and customers, conduct research on threat actors and attack vectors, and design complex detection analytic rules. Additionally, you will assist clients in testing and tuning detection logic, perform global tuning for complex alerts, and mentor developing team members.
Missions
- Develop detection logic, automation, and visualizations to help clients derive actionable security insights.
- Research threat actors and attack vectors to develop detection content for emerging threats and improve detection posture.
- Design and build automation content for onboarding new products, and complex detection analytic rules to improve global detection capabilities.
Profil recherché
- Case management systems- Atlassian Suite (Jira and Confluence)
- API integrations
- Strong knowledge of:
- Email security, DLP, encryption, and vulnerability management
- Excellent written and verbal communication skills, with the ability to explain complex topics clearly
- Complex JSON data structures
- Log analysis and malware detection
- Experience in digital forensics and blue team operations
- SIEM and SOAR platforms
- Ability to gather client requirements and translate them into technical solutions
- Expert scripting skills in Python, Ruby, or similar languages
- Sentinel Incidents, Workbooks, Hunting Queries, and Notebooks
- Strong collaboration and interpersonal skills, especially in distributed team environments
- Endpoint Detection and Response (EDR)
- Development tools, including Git, IDEs, and CI/CD pipelines
- Network monitoring tools
- Hands-on experience with Microsoft Azure, Sentinel, Defender, and related tools
- Deep experience with:
- Kusto Query Language (KQL) or similar
- Expert-level proficiency in analyzing event logs and identifying indicators of compromise
- Expert understanding of network protocols and infrastructure
- Expert experience writing detection signatures or algorithms
- Bachelor's degree in a related field or equivalent professional experience and certifications
- A Master's degree in Cybersecurity, Computer Science, Information Assurance, or a related technical field is preferred
- 10+ years of experience in IT or cybersecurity, with a focus on SIEM and detection content
- Background in intrusion analysis, detection engineering, or penetration testing
- Relevant certifications such as: Microsoft 365 Certified: Security Administrator Associate, GCFA, GCFE, OSCP

