Detection Engineer

Posted 8 Hours Ago
Be an Early Applicant
Hiring Remotely in Kraków, Małopolskie, POL
In-Office or Remote
Mid level
Security • Software
The Role
Research emerging threats and translate attacker behavior, incidents, and telemetry into scalable detection logic. Investigate detection gaps, improve accuracy and reduce false positives, and develop advanced analytics, behavioral detections, risk scoring, and enrichment. Analyze large-scale security data, validate and optimize detections, communicate findings, and collaborate with Forensics, Engineering, Product Management, MDR, and Support teams.
Summary Generated by Built In
Summary 
 
Data has never been more valuable and vulnerable. As cybercriminals become more sophisticated and regulations more strict, organizations struggle to answer one key question: “Is my data safe?"
At Varonis, we see the world of cybersecurity differently. Instead of chasing threats, we believe the most practical approach is protecting data from the inside out. We’ve built the industry’s first fully autonomous Data Security Platform to help our customers dramatically reduce risk with minimal human effort. 
 
At Varonis, we move fast. We’re an ultra-collaborative company with brilliant people who care deeply about the details. Together, we’re solving interesting and complex puzzles to keep the world’s data safe.
 
We work in a flexible, hybrid model, so you can choose the home-office balance that works best for you. 
 
Technical Account Managers are the primary contact for Varonis customers and the first line of defense for data.  All Varonis employees are Customer Success and Technical Account Managers are the tip of the spear.  Technical Account Managers provide onboarding and proactive on-going value and support to Varonis customers. To be a successful Technical Account Manager you must be a motivated self-starter, be committed to on-going self-development and education and possess strong technical acumen and customer service skills. 
 
 
This is a 100% remote position 
 
We are seeking a highly skilled and motivated Detection Engineer to join our elite team. In this role, you will be responsible for researching emerging threats, designing and developing detection logic, and continuously improving security analytics that protect organizations around the globe.
As a Detection Engineer, you will transform threat research, real-world incidents, and customer feedback into scalable detection capabilities using our proprietary platform, You will work across the full detection lifecycle, from threat analysis and model design to validation, tuning, performance monitoring, and ongoing optimization.
You will collaborate closely with Forensics, Product Management, Engineering, and MDR teams to identify coverage gaps, refine existing detections, and deliver new security capabilities. Success in this role requires both a strong technical foundation and an investigative mindset, with the ability to translate attacker behavior into actionable detection logic.
The ideal candidate is comfortable working with large datasets, analyzing complex security scenarios, and making data-driven decisions to improve detection quality and customer outcomes. Experience with security monitoring, threat hunting, incident response, detection engineering, or SOC operations is highly valuable, along with hands-on experience of querying and analyzing large-scale data environments.
Beyond technical excellence, we are looking for someone who is curious, collaborative, and highly accountable. Strong communication skills, critical thinking, creativity, and a passion for solving difficult security problems are essential. This is an opportunity to make a significant impact on the future of security detection and help shape how modern threats are identified and stopped at scale.
Responsibilities
  • Research emerging threats, attacker techniques, and security trends, and translate them into scalable detection capabilities and security analytics.
  • Investigate detection gaps, real-world incidents to identify opportunities for improving coverage, accuracy, and customer outcomes.
  • Leverage diverse telemetry sources and security signals to identify malicious activity, improve threat visibility, and strengthen detection coverage across cloud, identity, SaaS, and data security environments.
  • Evaluate and improve the quality of existing detections by reducing false positives, increasing fidelity, and ensuring detections remain effective against evolving attacker techniques.
  • Contribute to strategic detection initiatives, including advanced threat analytics, detection enrichment, risk scoring, behavioral analytics, and next-generation detection approaches.
  • Communicate technical findings, detection logic, and investigation outcomes to both technical and non-technical stakeholders.
  • Stay current with emerging attack techniques, threat intelligence, security research, and industry best practices to continuously enhance detection capabilities.
Requirements
  • 4+ years of experience in Detection Engineering, Threat Hunting, Incident Response, Security Research, DFIR, MDR, or a related security discipline
  • Experience analyzing large-scale datasets and building data-driven solutions using Python, SQL, Spark, PySpark, or similar technologies
  • Proven ability to translate attacker techniques, security research, and real-world incidents into scalable and effective detection logic
  • Strong understanding of modern attack methodologies
  • Strong investigative and analytical skills, with the ability to analyze ambiguous security problems and drive them to resolution
  • Excellent communication and collaboration skills, with the ability to work effectively across Engineering, Product Management, MDR, Forensics, and Support teams
  • Demonstrated ownership mindset and ability to independently lead initiatives from problem identification through implementation and operationalization
  • Ability to balance research, execution, operational responsibilities, and long-term strategic work in a fast-paced environment
  • Passion for continuous learning, curiosity about attacker behavior, and a desire to stay at the forefront of the cybersecurity landscape
 
 
Preferred Qualifications
 
  • Experience building detections for identity, SaaS, data security, insider risk, or behavioral analytics use cases.
  • Experience evaluating detection quality, measuring effectiveness, improving precision and recall through data analysis and feedback loops.
  • Designing and developing scalable agentic pipelines to drive innovation across threat detection and security operations
We invite you to check out our Instagram Page to gain further insight into the Varonis culture!
@VaronisLife 
Varonis is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, and other legally protected characteristics.
#LI-Remote

Skills Required

  • 4+ years of experience in Detection Engineering, Threat Hunting, Incident Response, Security Research, DFIR, MDR, or a related security discipline
  • Experience analyzing large-scale datasets and building data-driven solutions using Python, SQL, Spark, PySpark, or similar technologies
  • Ability to translate attacker techniques, security research, and real-world incidents into scalable detection logic
  • Strong understanding of modern attack methodologies
  • Strong investigative and analytical skills for resolving ambiguous security problems
  • Excellent communication and collaboration skills across technical and non-technical teams
  • Ownership mindset and ability to independently lead initiatives through implementation and operationalization
  • Ability to balance research, execution, operational responsibilities, and strategic work
  • Passion for continuous learning and curiosity about attacker behavior
  • Experience building detections for identity, SaaS, data security, insider risk, or behavioral analytics
  • Experience evaluating detection quality and improving precision and recall through data analysis and feedback loops
  • Experience designing and developing scalable agentic pipelines for threat detection and security operations

Varonis Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Varonis and has not been reviewed or approved by Varonis.

  • Healthcare Strength Healthcare coverage is positioned as comprehensive, including medical, dental, and vision options that start immediately in some locations. The package is frequently characterized as a strong part of the overall rewards offering alongside other core benefits.
  • Retirement Support Retirement benefits include a 401(k) with company matching (or a pension plan by region), which strengthens the long-term value of the package. Participation is complemented by additional ownership programs that increase total-rewards attractiveness.
  • Equity Value & Accessibility Equity-related rewards such as stock options and an employee stock purchase plan (ESPP) are a notable part of the total compensation mix. These elements are often cited as helping offset middling perceptions of base pay, especially where equity participation is accessible.

Varonis Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, NY
1,894 Employees
Year Founded: 2005

What We Do

Varonis is a pioneer in data security and analytics, fighting a different battle than conventional cybersecurity companies. Varonis focuses on protecting enterprise data on premises and in the cloud: sensitive files and emails; confidential customer, patient and employee data; financial records; strategic and product plans; and other intellectual property. The Varonis Data Security Platform detects insider threats and cyberattacks by analyzing data, account activity, perimeter telemetry, and user behavior; prevents and limits disaster by discovering, classifying and locking down sensitive, regulated and stale data; and efficiently sustains a secure state with automation. With a focus on data security, Varonis serves a variety of use cases including data protection, threat detection and response, and compliance. Varonis started operations in 2005 and, as of December 31, 2018, had approximately 6,600 customers worldwide — comprised of industry leaders in many sectors including technology, consumer, retail, financial services, healthcare, manufacturing, energy, media, and education.

Similar Jobs

Cisco Logo Cisco

Tetragon Threat Detection Engineer - Isovalent

Cloud • Information Technology • Internet of Things • Professional Services • Software
In-Office or Remote
19 Locations
77500 Employees

GitLab Logo GitLab

Account Executive

Cloud • Security • Software • Cybersecurity • Automation
Easy Apply
Remote
Poland
2500 Employees

GitLab Logo GitLab

Senior Back-end Engineer

Cloud • Security • Software • Cybersecurity • Automation
Easy Apply
Remote
Poland
2500 Employees
272K-408K Annually

Pfizer Logo Pfizer

Director R&D EHS Program Lead

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office or Remote
36 Locations
121990 Employees
177K-294K Annually

Similar Companies Hiring

Kepler  Thumbnail
Artificial Intelligence • Fintech • Software
New York, New York
9 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel.io Thumbnail
Aerospace • Hardware • Robotics • Software
US
50 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account