Security Detection Engineer

WPP
Chennai
Workplace: HybridFull timeFunction: Solutions Engineering & Sales EngineeringSkills: ["Analytical thinking","Problem-solving","Communication","Teamwork"]

Design, develop, and maintain high-fidelity detection logic across SIEM, EDR, NDR, and cloud-native security platforms. Improve detection accuracy by reducing noise, automating rule deployment with detection-as-code, and managing QA/version control through CI/CD. Perform root-cause analysis on missed detections and high-severity incidents, drive corrective actions, and collaborate with SOC, incident response, threat hunting, and threat intelligence teams to support WPP SOC transformation and continuous security improvement.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
WPP
WPP
2 days ago

Security Detection Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 5 hours agoStatus: Live
Reposted: similar role first listed 5 months ago

Job Summary

Design, develop, and maintain high-fidelity detection logic across SIEM, EDR, NDR, and cloud-native security platforms. Improve detection accuracy by reducing noise, automating rule deployment with detection-as-code, and managing QA/version control through CI/CD. Perform root-cause analysis on missed detections and high-severity incidents, drive corrective actions, and collaborate with SOC, incident response, threat hunting, and threat intelligence teams to support WPP SOC transformation and continuous security improvement.
Location: Chennai
Workplace: Hybrid
Employment Type: Full time
Job Function: Solutions Engineering & Sales Engineering

Key Responsibilities

  • •Develop, test, and maintain detection rules and logic across SIEM, EDR, NDR, and cloud-native platforms.
  • •Review and enhance detection logic to improve accuracy, reduce noise, and keep pace with evolving threats.
  • •Automate detection rule deployment, QA, and version control using scripting and CI/CD pipelines.
  • •Conduct RCA on missed detections, delayed responses, and high-severity incidents, then drive corrective actions based on findings.
  • •Collaborate with SOC, incident response, and threat hunting teams to operationalize detection improvements and validate logic through purple team exercises.

Key Requirements

  • •Strong knowledge of SIEM, SOAR, EDR, and cloud security platforms.
  • •Proficiency in scripting and automation (Python, PowerShell).
  • •Familiarity with detection-as-code concepts and CI/CD pipelines for detection rule deployment and version control.
  • •Understanding of the MITRE ATT&CK framework and threat-informed defense.
  • •Ability to collaborate with SOC analysts, threat hunters, and engineers while documenting detection logic and RCA outcomes.
Experience:SOCSecurity operationsThreat detection
Skills:Analytical thinkingProblem-solvingCommunicationTeamwork
Certifications:GIAC GCTIGIAC GCFA
Languages:English
Tech Stack:SIEMSOAREDRNDRCloud security platformsPythonPowerShellDetection-as-codeCI/CDMITRE ATT&CKSOCIncident responseThreat huntingThreat intelligenceAI/ML

Company Brief

WPP
Global marketing and communications services group offering advertising, media investment management, branding, public relations, and digital services to multinational clients across industries.
Industry: Advertising Media Groups
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: London, United Kingdom
Founded: 1971
WebsiteLinkedIn