Senior Detection Engineer – Splunk (H/F)

Thales
France
Workplace: HybridFull timeFunction: Solutions Engineering & Sales EngineeringExperience: 5+ yearsSkills: ["Curiosity","Collaboration","Communication","Knowledge sharing","Relationship building"]

Build and evolve SOC detection capabilities as a technical reference for assigned clients. Design advanced detection strategies using MITRE ATT&CK, continuously improve detection rules, and deploy/tune detections in customer SIEM platforms to optimize threat detection. Support PoCs for new SOC solutions, automate and industrialize methods, and partner with CSOC SOC analysts through periodic rotations, client demos, and proposal support.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Thales
Thales
1 month ago

Senior Detection Engineer – Splunk (H/F)

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 19 hours agoStatus: Live

Job Summary

Build and evolve SOC detection capabilities as a technical reference for assigned clients. Design advanced detection strategies using MITRE ATT&CK, continuously improve detection rules, and deploy/tune detections in customer SIEM platforms to optimize threat detection. Support PoCs for new SOC solutions, automate and industrialize methods, and partner with CSOC SOC analysts through periodic rotations, client demos, and proposal support.
Location: France
Workplace: Hybrid
Employment Type: Full time
Job Function: Solutions Engineering & Sales Engineering
Seniority: Mid level

Key Responsibilities

  • •Serve as the detection referent for assigned clients.
  • •Design and present advanced detection strategies aligned with threat identification best practices using MITRE ATT&CK.
  • •Integrate new security perimeters and continuously improve detection rules in line with CSIRT strategic guidance and evolving threats.
  • •Deploy and adjust detection rules in clients’ SIEM platforms to optimize threat detection capabilities.
  • •Analyze and contribute to PoCs for future SOC solutions, supporting architects on new projects.

Key Requirements

  • •5+ years of experience as a SOC analyst.
  • •Experience with SIEM, SOAR and EDR (agent deployment, alert tuning, detection rule creation).
  • •Mastery of SIEM solution Splunk.
  • •Experience with at least one EDR solution (e.g., Harfanglab, SentinelOne, Crowdstrike, FireEye, Cybereason, Microsoft Defender for Endpoint, Cisco AMP for Endpoint).
  • •Strong English (written and spoken).
Experience:5+ yearsSOC
Skills:CuriosityCollaborationCommunicationKnowledge sharingRelationship building
Languages:English
Tech Stack:SplunkSIEMSOAREDRMITRE ATT&CKThreat Detection FactoryCSIRTSOCDevOpsAnsibleKubernetesDockerGitlab PipelinesPythonBashHarfanglabSentinelOneCrowdstrikeFireEyeCybereason

Eligibility

Security Clearance:Secret de la défense nationale

Company Brief

Thales
Designs and delivers advanced systems and services for aerospace, defence, security, and digital identity and cybersecurity markets, serving government and commercial customers worldwide.
Industry: Defense Technology
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Paris, France
Founded: 2000
WebsiteLinkedIn