We are looking for a Senior Security Engineer to join a global Cyber Intelligence & Security Operations Center (CISOC) team, focusing on security monitoring, detection engineering, and the continuous improvement of SIEM/XDR capabilities. In this role, you will design and optimize security use cases, develop automation and integrations, and collaborate with Security Detection and Incident Response teams to improve threat detection and remediation. You will also contribute to security reporting, dashboards, documentation, and the evolution of monitoring technologies.
🏢 About Ambit
🎯 The Role
In this role, you will design and optimize security use cases, develop automation and integrations, and collaborate with Security Detection and Incident Response teams to improve threat detection and remediation.
✅ Key Responsibilities
Develop and implement security use cases for SIEM/XDR platforms.
Fine-tune existing use cases to improve detection quality and reduce false positives.
Develop and maintain scripts and API integrations to automate and enrich security monitoring capabilities.
Support the implementation of Breach & Attack Simulation (BAS) scenarios to test and improve detection use cases.
Contribute to the evolution of security monitoring technologies according to the defined roadmap.
Collaborate with Security Detection and Incident Response teams to strengthen detection capabilities.
Prepare and manage security monitoring reports, dashboards, and status updates.
Maintain accurate documentation in line with security processes, SOPs, and working instructions.
Present monitoring insights and updates to technical stakeholders and management.
📌 Required Qualifications
Proven experience developing security use cases for SIEM/XDR technologies, such as Microsoft Sentinel or Microsoft Defender.
Experience with scripting languages such as Python, PowerShell, or Bash.
Experience with API integrations and security automation.
Knowledge of security weaknesses, remediation, prioritization, change management, analysis, and triage.
Experience with reporting or ticketing platforms such as ServiceNow.
Strong analytical, problem-solving, communication, and teamwork skills.
Experience working in international and multicultural environments.
Excellent spoken and written English.
⭐ Desirable Experience
Experience with Breach & Attack Simulation (BAS) and threat scenario creation.
Security certifications such as Security+, GCIH, ECIH, OSCP, or CEH.
Experience in Security Operations, Detection Engineering, or Incident Response.
🎁 Benefits
Salary package based on your profile.
Ticket restaurant included in-office hours.
Flexible compensation plan (free of income tax) where we provide you with medical insurance, public transport ticket and childcare check.