We’re looking for an exceptional Detection Engineer to join our growing R&D team at Mitiga.
Why Mitiga?
Mitiga preemptively detects and stops attacks before damage is done.Mitiga moves your security beyond configuration-focused prevention. In today’s cloud-first, AI-driven world, attackers inevitably get in. Mitiga promptly stops them.Our platform connects Cloud, SaaS, AI, and Identity into one panoramic forensic system that gives SecOps total awareness, attack decoding, and autonomous containment. The result: attacks stop mid-flight, investigations are instant, and impact disappears.We replace the false promise of “zero breach” with a promise we can keep - Zero Impact.
When attackers get in, Mitiga ensures they get nothing.
Zero Impact Breach Mitigation.Mitiga is used by many well-known brands to reduce risk, enhance their SecOps, and improve business resilience.
What you'll do:
- Develop and maintain IOAs in PySpark for cloud, SaaS, and IdP environments (AWS, Azure, GCP, Okta, M365, etc.)
- Analyze attack techniques and threat intelligence to translate them into detections
- Test, validate, and tune detection logic to reduce false positives while maintaining coverage
- Stay current on cloud and SaaS attack patterns to identify detection gaps
- Collaborate with the team to improve detection frameworks, workflows, and engineering standards
Requirements
Who You Are:
- 3+ years building detections in a security context (SOC, threat detection, IR, or similar)
- 2+ years of proven strong Python skills and working knowledge of PySpark (Open Source contribution, active GitHub\Gitlab accounts, etc.)
- Familiarity with common detection languages (KQL, SPL, Sigma, YARA, or similar)
- Understanding of cloud architecture and how attackers move through cloud environments
- Comfortable reading and interpreting logs from cloud providers, SaaS apps, and identity platforms
- Clear communicator who can explain technical detection logic to different audiences
- Self-driven and comfortable working independently in a remote setup
Some More Details and Perks
- Location: Tel Aviv, IL
- Hybrid work environment
- Competitive compensation package with stock options, educational fund, cibus.
- Top of the line equipment
For more information, visit us at www.mitiga.io.
Mitiga is an equal opportunity employer, committed to diversity and inclusiveness and aim to attract, retain, and engage a diverse workforce. We consider all qualified applicants without regard to race, color, nationality, gender, gender identity, sexual orientation, religion, disability, age or any other characteristic protected by law.
Similar Jobs
What We Do
Mitiga’s cloud-oriented technology platform and its dynamic-readiness approach enable customers not only to rapidly complete the investigation, response, and recovery stages when a cloud security incident occurs, but also to increase their resiliency for a future attack.
Mitiga Cloud Incident Response gets you back to business-as-usual right away. In the middle of an incident you need situational awareness, transparency in communications, and fast results. Mitiga provides quick and rapid recovery from any type of cyber breach.
Mitiga Cloud Incident Readiness uses technology and services to build the cybersecurity resiliency of an organization. This prevents a breach from becoming a crisis, helping business continue as usual. During an active incident, subscribers to Mitiga Incident Readiness have unlimited active Incident Response.







