Detection Engineering Consultant working hands-on to enhance cyber detection capabilities. Collaborating with security teams and translating threat intelligence into actionable detections.
Responsibilities
Designing, developing, and maintaining high-fidelity detection logic aligned to real-world threats.
Improving existing detection content to reduce alert fatigue and increase signal quality.
Ensuring detections are robust, well-tested, and supported by meaningful context and response guidance for SOC analysts and incident responders.
Translating threat intelligence, attacker TTPs, and research into actionable detection logic.
Applying threat frameworks such as MITRE ATT&CK and Cyber Kill Chain to guide detection coverage.
Conducting positive and negative testing of detection logic, including attacker emulation where appropriate.
Reviewing detection code and processes to identify gaps, weaknesses, or opportunities for improvement.
Supporting threat hunts and contributing to detection-led investigations when required.
Contributing to detection-as-code practices, CI/CD pipelines, and validation tooling.
Developing or maintaining lightweight automation and scripts to improve detection engineering workflows.
Working with platform and engineering teams to ensure detection content scales reliably across environments.
Working closely with client stakeholders to understand their environment, risks, and detection priorities.
Providing clear, practical guidance on detection strategy, coverage, and improvements.
Communicating technical findings and recommendations in a way that is accessible and actionable.
Acting as a trusted consultant while representing Bridewell values and best practices.
Requirements
Developing and maintaining detection logic using query languages such as KQL or SPL.
Working with SIEM and detection platforms such as Microsoft Sentinel, Splunk, or Chronicle.
Understanding modern attacker techniques, behaviours, and evasion methods.
Translating threat intelligence into effective detection use cases.
Working knowledge of Windows, macOS, and/or Linux operating systems.
Secure, test-driven engineering practices and detection lifecycle management.
Writing or maintaining automation scripts (e.g. Python, PowerShell, Bash).
Working independently while collaborating effectively within multi-disciplinary teams.
Operating confidently in production environments at scale.
It’s a benefit if you have
Previous experience working as a Detection Engineer within an MSSP or consultancy.
Strong hands-on experience with Microsoft Sentinel detection engineering.
Knowledge of cloud infrastructure and security across Azure, AWS, or GCP.
Experience developing detections as code and integrating them into CI/CD pipelines.
Exposure to adversary emulation, purple teaming, or offensive security techniques.
Familiarity with Infrastructure as Code tools (e.g. Bicep, Terraform).
(Senior) Dynamics 365 Developer working on impactful CRM projects at pragmatic development GmbH. Join an innovative IT consulting team in Hamburg or Paderborn with excellent collaboration.
Conga Product Pricing Developer supporting Quote to Cash system for Labcorp. Involves being part of a team and supporting Conga CPQ application within Salesforce platform.
Director Engineering managing high - performing engineering teams for Agentic AI solutions at Neuron7.ai. Delivering AI capabilities that empower enterprise workflows and generate measurable business outcomes.
Engineering Intern at Hyster - Yale gaining practical experience with project work and collaboration with engineering teams. Support in development, compliance, and operational efficiency initiatives.
Senior iOS Mobile Developer role in Campinas focused on building and maintaining modular Swift modules with MVVM Clean and SwiftUI. Work with Tuist, SPM, unit testing, Bitrise CI/CD and legacy UIKit code while collaborating with cross - functional teams.
VP of Product & Engineering leading the technical vision and execution for twomynds, a Data & AI consulting firm transitioning to Product - Led Solutions. Overseeing team scaling and product development.
IBM Developer for Hybrid role designing scalable mainframe solutions in Philadelphia. Requires 5+ years experience and knowledge of COBOL, JCL, and Agile methodologies.
Senior Application Programmer servicing government initiatives as Sustainment Lead or SME. Analyzing applications, developing software, and ensuring program deadlines are met.
VP of Engineering leading the engineering team at a B2B software scale - up in Germany. Focusing on scaling the organization, architectural improvement, and predictable delivery systems.
Lead Developer at vyzn, shaping the future of construction planning with a data - and AI - driven SaaS platform. Collaborate with a skilled team to develop scalable solutions for construction projects.