Working remotely in a full-time capacity, the Detection and Response Engineer will be responsible for enhancing detection and response capabilities, focusing on detection engineering, incident response, AI-enabled SOC operations, and security automation. Key responsibilities Design and tune detection content across various log sources while performing gap analysis against the MITRE ATT&CK framework Triage and investigate security incidents, conducting root cause analyses and documenting findings for continuous improvement Develop automation and orchestration solutions to streamline detection and response workflows, reducing manual efforts in the SOC Required qualifications Bachelor's degree in a technical field or equivalent professional experience 3-5 years of hands-on information security experience in detection engineering, incident response, or security automation Experience with SIEM or NG-SIEM platforms, including writing and tuning detection content Working knowledge of the MITRE ATT&CK framework and its application in detection engineering Scripting or automation experience using Python, PowerShell, or similar technologies for security use cases