This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We’re looking for a thoughtful and driven Threat Detection Engineer II to help strengthen CLEAR’s cyber defense capabilities. In this role, you’ll turn threat insights into meaningful action by designing, building, and refining the detections that keep our systems secure. You’ll spend your time developing reliable, high-quality detection logic, tuning existing rules to reduce noise, and automating key parts of the detection lifecycle so our teams can respond faster and more effectively.
Job Responsibility:
Design, implement, and tune custom detections that identify malicious or anomalous activity across a wide range of data sources
Translate threat intelligence, incident learnings, and emerging trends into high-impact detection logic
Partner closely with Threat Intelligence, Incident Response, Automation, and other security teams to operationalize new detections, refine response strategies, and improve overall signal fidelity
Continuously assess detection performance by analyzing false positives, coverage gaps, and visibility across critical assets
Support and expand automation efforts across the detection lifecycle—including development, validation, deployment, and routine maintenance
Document detection logic, workflows, and data sources clearly and consistently
Map detection coverage to frameworks like MITRE ATT&CK and contribute to reducing measurable gaps over time
Requirements:
Building, tuning, and validating detections in SIEM or cloud-native environments
Strong understanding of networking, identity, endpoint telemetry, and modern attack techniques
Spotting patterns across network, endpoint, identity, and cloud data
Writing clear, scalable detection logic using rule languages, scripting, automation frameworks, and Detection-as-Code practices
Collaborating across security functions and communicating effectively
Staying curious, adaptable, and detail-oriented
Hands-on experience with tools such as Google Chronicle, YARA/YARA-L, BigQuery, SOAR platforms, and scripting languages like Python
3–5 years of experience in security operations or detection engineering
Familiarity with frameworks like MITRE ATT&CK and Sigma
Leveraging relevant certifications (e.g., CISSP, Sec+) when helpful, though not required
What we offer:
Meals and snacks in offices
Stipend and reimbursement programs for well-being and learning & development
Comprehensive healthcare plans
Family building benefits (fertility and adoption/surrogacy support)
Flexible time off
Free OneMedical memberships for you and your dependents
Welcome to CrawlJobs.com – Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.
We use cookies to enhance your experience, analyze traffic, and serve personalized content. By clicking “Accept”, you agree to the use of cookies.