- Develop and maintain KQL queries for threat detection and security monitoring within SIEM platforms.
- Design detection use cases aligned with the MITRE ATT&CK; framework.
- Analyze and investigate security alerts to identify potential threats.
- Collaborate with the Incident Response team during security investigations.
- Tune and optimize detection rules to improve detection accuracy and reduce false positives.
- Identify gaps in existing detection coverage and develop new detection scenarios.
- Monitor emerging attack techniques and enhance detection capabilities accordingly.
- Document detection logic, investigation findings, and security use cases.
- Strong analytical and problem-solving skills.
- Valuable understanding of cybersecurity threats and attack techniques.
- Ability to work closely with SOC and Incident Response teams.
- Strong communication and documentation skills.
📌 Sanganan - SOC Content Detection Engineer (India)
🏢 Sanganan IT Solutions
📍 India
Reply to this offer
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.