Threat Detection - COOP

Posted Yesterday
Be an Early Applicant
Riyadh, SAU
In-Office
Internship
Information Technology • Software • Cybersecurity
The Role
Design and implement high-fidelity detections and automations for SOC platforms, optimize XDR/SIEM stacks and log ingestion, support threat hunting and Tier-3 incident response, and mentor junior analysts while improving SOC playbooks, testing, and compliance alignment.
Summary Generated by Built In

As a Threat Detection COOP at COGNNA, you’ll design high-impact detection strategies, build powerful automation, and elevate SOC operations to a world-class standard. You’ll also mentor rising cyber talent and collaborate with teams across threat intel, incident response, and platform engineering.
🔐 Advanced Threat Detection Engineering

  • Build high-fidelity correlation rules and behavioral detections within the COGNNA security platforms.
  • Translate adversary TTPs (MITRE ATT&CK), threat intel, and vulnerability data into actionable logic.
  • Identify detection gaps and introduce new data sources to cover evolving threat landscapes.
  • Automate detection testing and maintain detection quality over time.

⚙️ Platform Engineering & Optimization

  • Lead architecture and optimization of XDR, SIEM, and SOC tech stacks for scale and resilience.
  • Streamline log ingestion pipelines — from parsing to normalization and enrichment.
  • Build scripts and automations (Python, PowerShell) to enhance SOC efficiency.
  • Integrate tools across the SOC stack to enable seamless workflows and response.

🕵️‍♂️ Threat Hunting & Incident Response

  • Collaborate with intel and IR teams to enrich detection use cases and support threat hunts.
  • Provide Tier-3+ support for incident investigations and post-mortem analysis.

👥 Mentorship & SOC Maturity

  • Improve SOC playbooks, SOPs, and detection engineering workflows.
  • Stay updated on global and regional threats — and evolve detection accordingly.
  • Ensure compliance alignment (e.g., NCA ECC, SAMA CSF).

Requirements

Minimum Requirements (Must Haves):

  • Education: Currently enrolled in their final year of a Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a closely related field, with graduation planned within or immediately following the 6-month co-op.
  • Foundational Security Knowledge: Basic understanding of cybersecurity concepts, including common attack vectors, the Windows/Linux operating system internals, and network protocols.
  • Programming/Scripting Basics: Familiarity with writing simple scripts in Python or PowerShell to automate repetitive tasks or parse data.
  • Log & System Familiarity: Basic understanding of what logs are (e.g., Windows Event Logs, Syslog) and an interest in how they are collected and analyzed.
  • Duration: Availability to commit to a full-time (or near full-time, depending on university rules) 6-month continuous Co-op assignment.

Preferred Qualifications (Nice to Haves / Big Plusses):

  • Framework Familiarity: Conceptual knowledge of the MITRE ATT&CK framework and how it maps to adversary behaviors.
  • Hands-on Exposure: Previous experience using SIEM/XDR platforms, or building a home lab (e.g., Splunk, Elastic, Wireshark).
  • Regulatory Awareness: A general awareness of cybersecurity frameworks or local compliance standards (like NCA ECC or SAMA CSF).
  • Soft Skills: Strong analytical mindset, a high level of curiosity to dig into threat trends, and excellent written documentation skills.

Benefits

🚀 Impact that Matters – Build products that shape the future of cybersecurity and protect organizations globally.

🏢 On-Site Collaboration – Be at the heart of innovation in our Riyadh office, working side by side with passionate experts.

💡 Continuous Growth – Access to certifications, trainings, and opportunities to sharpen your expertise.

🤝 Culture of Trust – We empower talent, encourage ownership, and celebrate real outcomes.

Skills Required

  • Currently enrolled in final year of a Bachelor's in Computer Science, Cybersecurity, Information Technology, or related field with graduation planned within or immediately after the 6-month co-op.
  • Basic understanding of cybersecurity concepts, common attack vectors, Windows/Linux internals, and network protocols.
  • Familiarity with writing simple scripts in Python or PowerShell to automate tasks or parse data.
  • Basic understanding of logs (e.g., Windows Event Logs, Syslog) and interest in log collection and analysis.
  • Availability to commit to a full-time (or near full-time) 6-month continuous co-op assignment.
  • Conceptual knowledge of the MITRE ATT&CK framework and mapping to adversary behaviors.
  • Previous experience using SIEM/XDR platforms or building a home lab (e.g., Splunk, Elastic, Wireshark).
  • General awareness of cybersecurity frameworks or local compliance standards (e.g., NCA ECC, SAMA CSF).
  • Strong analytical mindset, curiosity for threat trends, and excellent written documentation skills.
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
50 Employees
Year Founded: 2022

What We Do

Detect the Undetectable. Defeat the Unpredictable.

Similar Jobs

Mastercard Logo Mastercard

Consultant

Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
Hybrid
Riyadh, SAU
38800 Employees

HERE Technologies Logo HERE Technologies

Sales Development Representative

Artificial Intelligence • Automotive • Computer Vision • Information Technology • Internet of Things • Logistics • Software
Hybrid
Riyadh, SAU
6000 Employees

Immersive Logo Immersive

Enterprise Account Manager

Enterprise Web • HR Tech • Information Technology • Software • Cybersecurity
Remote or Hybrid
Saudi Arabia
330 Employees

Mastercard Logo Mastercard

VP, Business Development - Public Sector, Saudi Arabia & Bahrain

Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
Hybrid
Riyadh, SAU
38800 Employees

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account