Security Detection Engineer

WPP
Chennai
Workplace: HybridFull timeFunction: Solutions Engineering & Sales EngineeringSkills: ["Analytical thinking","Problem-solving","Communication","Teamwork","Collaboration"]

Design, develop, and maintain high-fidelity detection logic across SIEM, EDR, NDR, and cloud security platforms as part of the SOC transformation toward an autonomic security operations model. Build and automate detection rules using detection-as-code, CI/CD, and scripting; improve accuracy and reduce noise through continuous tuning. Lead root-cause analysis for detection gaps and missed outcomes, collaborate with SOC and threat teams, and support purple-team validations and detection performance improvements.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
WPP
WPP
8 hours ago

Security Detection Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 6 hours agoStatus: Live
Reposted: similar role first listed 5 months ago

Job Summary

Design, develop, and maintain high-fidelity detection logic across SIEM, EDR, NDR, and cloud security platforms as part of the SOC transformation toward an autonomic security operations model. Build and automate detection rules using detection-as-code, CI/CD, and scripting; improve accuracy and reduce noise through continuous tuning. Lead root-cause analysis for detection gaps and missed outcomes, collaborate with SOC and threat teams, and support purple-team validations and detection performance improvements.
Location: Chennai
Workplace: Hybrid
Employment Type: Full time
Job Function: Solutions Engineering & Sales Engineering

Key Responsibilities

  • •Develop, test, and maintain detection rules and logic across SIEM, EDR, NDR, and cloud-native platforms.
  • •Review and enhance detection logic to improve accuracy, reduce noise, and keep pace with evolving threats.
  • •Automate detection rule deployment, QA, and version control using scripting and CI/CD pipelines.
  • •Conduct root cause analysis on missed detections, delayed responses, and high-severity incidents, then drive corrective actions.
  • •Collaborate with SOC, Incident Response, and Threat Hunting teams to operationalize detection improvements and validate logic through purple-team exercises.

Key Requirements

  • •Strong knowledge of SIEM, SOAR, EDR, and cloud security platforms.
  • •Proficiency in scripting and automation (Python, PowerShell).
  • •Familiarity with detection-as-code principles and CI/CD pipelines.
  • •Understanding of the MITRE ATT&CK framework and threat-informed defense.
  • •Ability to work with SOC analysts, threat hunters, and engineers, including documenting detection logic and RCA outcomes.
Experience:SOC transformationSecurity operationsSIEMEDRCloud security
Skills:Analytical thinkingProblem-solvingCommunicationTeamworkCollaboration
Certifications:GIAC GCTIGIAC GCFA
Languages:English
Tech Stack:SIEMSOAREDRNDRCloud-native platformsPythonPowerShellCI/CDMITRE ATT&CKAI/MLAnomaly detectionDetection-as-code

Company Brief

WPP
Global marketing and communications services group offering advertising, media investment management, branding, public relations, and digital services to multinational clients across industries.
Industry: Advertising Media Groups
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: London, United Kingdom
Founded: 1971
WebsiteLinkedIn