Confirmed on the employer's own hiring board on Oct 9, 2026. First seen by Alion on Jul 23, 2026.
Join our team as a Detection and Response Engineer, where you will play a crucial role in protecting our cloud infrastructure, crypto systems, endpoints, and network. You will be responsible for building detections, conducting threat hunts, and automating responses. Your work will focus on detection engineering, threat hunting, and validation, while our 24x7 SOC handles first-line triage. You should have at least 3 years of experience in security operations, detection engineering, or a related security engineering role.
Missions
- Construire des détections, des chasses et des automatisations pour protéger l'infrastructure cloud, les systèmes cryptographiques, les points de terminaison et le réseau.
- Écrire des détections en tant que code et automatiser la réponse, et émuler des attaques avec les équipes de sécurité des produits pour confirmer le bon fonctionnement des détections.
- Exécuter des chasses proactives basées sur le renseignement sur les menaces et convertir les résultats en nouvelles détections et en IOCs/TTPs documentés.
Profil recherché
- You have hands-on experience tuning detections in SIEM and EDR platforms to improve signal quality and reduce false positives, and can write or adapt detection rules from an existing template or pattern- You communicate clearly within your immediate team, contribute meaningfully to post-incident write-ups, and act on feedback that sharpens your investigative and detection work
- You bring 3+ years of experience in security operations, detection engineering, offensive security testing, or a related security engineering role, and you're comfortable owning tickets and incidents end-to-end within established runbooks, escalating clearly when you hit the edge of your knowledge
- You have used adversary-emulation or purple-team tooling to validate that your detections actually fire, and you understand common attack paths well enough to know what a given detection should - and shouldn't - catch
- You are prepared to participate in an on-call rotation and document incidents clearly and effectively to support continuous improvement
- You have hands-on experience investigating and responding to security threats across endpoints, cloud environments, and network telemetry, using existing tooling (SIEM, EDR, ticketing systems) effectively rather than needing to build it from scratch
- You are a builder who looks for opportunities to automate repetitive work, including using AI and scripting (Python/Bash) to speed up investigations
- You bring strong analytical judgment and a calm, methodical approach to triaging alerts and driving incidents through resolution, and you flag gaps in process or coverage as you find them

