Detection Engineer

Posted 1 day 4 hours ago by Bridewell

£50,000 - £70,000 Annual
Permanent
Full Time
Other
Cardiff, City, United Kingdom, CF10 2AF
Job Description
Who are we looking for?

We are seeking a highly skilled and experienced Detection Engineer to expand our Managed Security Service Provider (MSSP) team. You will be responsible for developing and maturing detection coverage across our MSS customers (Splunk, Azure Sentinel, Chronicle SIEM).

For this particular role we're primarily looking for someone with Sentinel detection engineering experience.

This role sits within our detection engineering team who work with a variety of clients across a range of industries to constantly mature and maintain detection content.

  • Detection Maintenance - Identity and implement fixes to detection content throughout its lifecycle to combat alert fatigue and improve fidelity of signals triaged by the SOC team.
  • Detection Creation - Creation of new detection content from a mixture of customer requests, CTI reports, research and collaboration with Bridewell's offensive teams.
  • Innovation - Creation of requirements and implementation of quality of life features for the teams internal tooling (e.g. validation pipelines, schema definitions, helper tools).
  • CI/CD - Collaborating with engineering teams to ensure that detection content is managed in a scalable and repeatable way.
  • Attacker Emulation - Replicating attacker techniques to prove detection rules work and assumptions are valid.
  • Client Engagement - Work closely with clients to understand their security needs, provide expert advice, and ensure their satisfaction with our services.
  • Technical Leadership - Provide technical guidance and mentorship to more junior members of the team and share knowledge into wider MSS teams.
What we're looking for

You'll have experience of:

  • Writing scalable detection content (KQL/SPL/YARA-L)
  • Strong knowledge of scripting languages such as Python, Go or Shell
  • Knowledge of Infrastructure as Code (IaC) tools e.g. bicep
  • Experience with cloud platforms (AWS, Azure, GCP).
What's in it for you?

Our vision is to create a safe, inclusive digital world where people and organisations can thrive. Our values of Do the Right Thing, One Team and Above and Beyond emphasises the importance of the part we play in society, and our commitment to our people and clients. Our story to-date has been phenomenal, but success doesn't end here and as we continue to grow and scale, we want to keep the same culture, passion and commitment to high quality that has enabled us to get this far. Bridewell will provide a great career opportunity with continual development as well as the following:

  • Competitive Salary
  • 25 Days Holiday - Plus buy and sell options
  • Flexible Working (around core office hours)
  • Profit Share Scheme
  • Company Pension
  • Employee Shareholder Scheme
  • Dedicated Training Budget
  • Life Assurance
  • Cycle to Work Scheme
  • Electric Vehicle Scheme
  • Private Healthcare (incl. Gym discounts)
  • Vision Care
  • Birthday off (After 1 year)
About Bridewell

One of the most exciting prospects in the UK Cyber Security sector today, Bridewell is one of the fastest growing Cyber Security services businesses with a strong track record for delivering complex security projects and providing excellent customer service. Bridewell has an exciting and varied portfolio of clients across Financial Services, Manufacturing, Oil & Gas, Government, Critical National Infrastructure and more. Bridewell holds the Gold level Investors in People award which we feel solidifies and reflects on the outstanding calibre that makes us truly One Team.

Along with our focus on our people, we also have a big focus on sustainability and recognise the role we play in the fight against climate change. Today, Bridewell is proud to be a carbon negative business.

Location

Bridewell operates a hybrid and flexible working policy, however you will be required to travel to different sites on occasion.

Bridewell values diversity in the workplace and is a fair and equal opportunity employer. We are committed to creating an equal and inclusive working environment, with the aim that our employees will be truly representative of all sections of society and each person feels respected and able to give their best.