Cloud Security Detection Engineer (SIEM, SOAR & Automation) (India)

Cloud Security Detection Engineer (SIEM, SOAR & Automation) (India)

04 Aug
|
Huxley
|
India

04 Aug

Huxley

India

About the Organization

We are a global technology company operating large-scale internet platforms and cloud-based services used by millions of customers worldwide. Our Technology Management organization provides enterprise technology governance, cybersecurity, privacy, and risk management capabilities that enable secure innovation across diverse business units and regions.

Within our cybersecurity function, the Cyber Security Defense team is responsible for protecting products, infrastructure, and users against a constantly evolving threat landscape. The team combines secure engineering, threat detection, incident response, and security operations to defend critical production environments and strengthen overall cyber resilience.

The Opportunity

We are seeking an experienced Cloud Security Detection & Automation Engineer to design and build the detection and response capabilities that underpin our modern security operations program.

This position sits at the intersection of Security Operations, Cloud Security, Detection Engineering, and Security Automation. You will be responsible for developing advanced detection content, creating security automation workflows, and building engineering solutions that improve visibility, response speed, and overall security effectiveness across a large global hybrid-cloud environment.

The ideal candidate enjoys solving complex security challenges through engineering and automation rather than manual processes and is passionate about building scalable security capabilities.

What You Will Be Doing

Detection Engineering

- Create, enhance, and optimize detection content across SIEM, EDR, and cloud security platforms.
- Develop high-confidence detection rules that identify malicious or suspicious activity across cloud, containerized, and virtualized environments.




- Map detections to recognized threat frameworks such as MITRE ATT&CK.;
- Continuously improve detection coverage while minimizing false positives.

Security Automation & Response
- Design and implement security orchestration and automated response workflows (SOAR).
- Automate repetitive operational tasks to improve efficiency and reduce analyst workload.
- Develop automated remediation and containment actions for common threat scenarios.
- Improve detection-to-response timelines through intelligent automation.

Cloud & Infrastructure Security
- Secure and monitor hybrid cloud environments spanning public cloud and private infrastructure.
- Build automated mechanisms to assess cloud security posture and detect configuration drift.
- Strengthen security controls across Kubernetes, virtualized systems, and cloud-native platforms.
- Support continuous compliance initiatives through automation and monitoring.

Security Engineering
- Develop custom security tools and integrations using Python, Go, or similar technologies.
- Leverage APIs and automation frameworks to improve security visibility and operational effectiveness.
- Engineer solutions that close capability gaps within the security technology ecosystem.
- Transform security requirements into scalable, code-driven implementations.

Collaboration & Threat Analysis
- Partner closely with SRE, DevOps, platform engineering,



and infrastructure teams to embed security controls into CI/CD workflows.
- Analyze logs, telemetry, network traffic, and system activity to uncover advanced threats and suspicious behaviors.
- Contribute technical expertise during investigations and incident response activities.
- Communicate findings and technical recommendations effectively to both technical and non-technical stakeholders.

Required Experience & Qualifications
- 4+ years of experience in one or more of the following areas:
- Detection Engineering
- Security Engineering
- Incident Response
- Security Operations
- Hands-on experience securing cloud-native, virtualized, or containerized environments.
- Practical experience with Kubernetes and at least one major cloud platform:
- AWS
- Azure
- GCP
- Strong programming ability in at least one of the following:
- Python
- Go
- Ruby
- Experience creating and maintaining detections within SIEM, EDR, or cloud security platforms.
- Demonstrated success in automating security processes through SOAR platforms or custom-developed solutions.
- Strong understanding of:
- Network protocols
- Linux and Windows internals
- Modern web application architecture
- Ability to work effectively in a multinational environment with cross-functional technical teams.
- Solid verbal and written communication skills in English.

Preferred Qualifications
- Experience building detections aligned to the MITRE ATT&CK; framework.
- Hands-on experience with CI/CD technologies such as:
- Jenkins
- GitLab CI
- GitHub Actions
- Familiarity with Security-as-Code methodologies.
- Experience implementing identity-centric security controls.
- Knowledge of micro-segmentation architectures.
- Industry certifications such as:
- GCIA
- GDAT
- Comparable security certifications

📌 Cloud Security Detection Engineer (SIEM, SOAR & Automation) (India)
🏢 Huxley
📍 India

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: cloud security detection engineer (siem, soar & automation) (india) / india

Subscribe to this job alert:

Get the latest job offers by email for: cloud security detection engineer (siem, soar & automation) (india) / india