Threat Detection Engineer

Posted 2 Days Ago
Be an Early Applicant
Riyadh, SAU
In-Office
Senior level
Information Technology • Software • Cybersecurity
The Role
Design and implement high-fidelity detections, automate testing and SOC workflows, optimize XDR/SIEM stacks and log pipelines, perform threat hunting and Tier-3 incident response, mentor SOC staff, and ensure compliance alignment.
Summary Generated by Built In

As a Threat Detection Engineer at COGNNA, you’ll design high-impact detection strategies, build powerful automation, and elevate SOC operations to a world-class standard. You’ll also mentor rising cyber talent and collaborate with teams across threat intel, incident response, and platform engineering.
🔐 Advanced Threat Detection Engineering

  • Build high-fidelity correlation rules and behavioral detections within the COGNNA security platforms.
  • Translate adversary TTPs (MITRE ATT&CK), threat intel, and vulnerability data into actionable logic.
  • Identify detection gaps and introduce new data sources to cover evolving threat landscapes.
  • Automate detection testing and maintain detection quality over time.

⚙️ Platform Engineering & Optimization

  • Lead architecture and optimization of XDR, SIEM, and SOC tech stacks for scale and resilience.
  • Streamline log ingestion pipelines — from parsing to normalization and enrichment.
  • Build scripts and automations (Python, PowerShell) to enhance SOC efficiency.
  • Integrate tools across the SOC stack to enable seamless workflows and response.

🕵️‍♂️ Threat Hunting & Incident Response

  • Collaborate with intel and IR teams to enrich detection use cases and support threat hunts.
  • Provide Tier-3+ support for incident investigations and post-mortem analysis.

👥 Mentorship & SOC Maturity

  • Improve SOC playbooks, SOPs, and detection engineering workflows.
  • Stay updated on global and regional threats — and evolve detection accordingly.
  • Ensure compliance alignment (e.g., NCA ECC, SAMA CSF).

Requirements🎓 Education
  • Bachelor’s in Computer Science, Cybersecurity, or related field.
💼 Experience
  • Hands-on expertise in developing and maintaining complex detection use cases.
  • Strong understanding of attacker behavior, IR fundamentals, and digital forensics.
🔧 Technical Skills (You’re a Power User!)
  • SIEM: Expert in SIEM queries (SPL, KQL, Lucene), rule tuning, UEBA, and scaling.
  • EDR: Deep knowledge of EDR tools and endpoint detection tactics.
  • Network Security: Pro at packet analysis (Wireshark), IDS/IPS, and NetFlow.
  • Scripting: Advanced skills in Python and/or PowerShell for automation and integration.
  • OS Internals: Mastery of Windows/Linux/macOS logging, artifacts, and forensic value.
  • Threat Intelligence: Skilled in turning threat intel into real-time detection logic.
  • Cloud Security: Strong command of monitoring IaaS/PaaS/SaaS environments.
🏅 Certifications (Highly Preferred)
  • 🎓 SANS GIAC (GDAT, GMON, GCIA, GCTI, GCIH)
  • 🐉 Offsec (OSDA)
  • 🏫 INE (eCTHP, eCIR)
  • 🧩 (ISC)² CISSP, CSSLP
🤝 Soft Skills
  • Exceptional analytical thinking and creative problem-solving.
  • Excellent communication (English & Arabic), including technical reporting.
  • Strong mentorship abilities and a collaborative spirit.
  • Self-motivated, focused, and passionate about cyber defense.
  • Capable of juggling priorities under high-pressure situations.

Benefits

🚀 Impact that Matters – Build products that shape the future of cybersecurity and protect organizations globally.

🏢 On-Site Collaboration – Be at the heart of innovation in our Riyadh office, working side by side with passionate experts.

💡 Continuous Growth – Access to certifications, trainings, and opportunities to sharpen your expertise.

📈 Ownership Mindset – Benefit from our ESOP program and grow with COGNNA’s success.

🤝 Culture of Trust – We empower talent, encourage ownership, and celebrate real outcomes.

Skills Required

  • Bachelor's degree in Computer Science, Cybersecurity, or related field
  • Hands-on expertise developing and maintaining complex detection use cases
  • Strong understanding of attacker behavior, incident response fundamentals, and digital forensics
  • Expertise in SIEM queries (SPL, KQL, Lucene), rule tuning, UEBA, and scaling SIEM platforms
  • Deep knowledge of EDR tools and endpoint detection tactics
  • Network security skills including packet analysis (Wireshark), IDS/IPS, and NetFlow
  • Advanced scripting for automation and integration (Python and/or PowerShell)
  • Mastery of Windows, Linux, and macOS logging, artifacts, and forensic techniques
  • Ability to convert threat intelligence and MITRE ATT&CK TTPs into real-time detection logic
  • Cloud security monitoring experience across IaaS, PaaS, and SaaS environments
  • Certifications such as SANS GIAC, Offsec OSDA, INE eCTHP/eCIR, (ISC)² CISSP/CSSLP
  • Excellent communication (English and Arabic), mentorship ability, analytical thinking, and collaboration skills
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
50 Employees
Year Founded: 2022

What We Do

Detect the Undetectable. Defeat the Unpredictable.

Similar Jobs

Mastercard Logo Mastercard

Consultant

Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
Hybrid
Riyadh, SAU
38800 Employees

HERE Technologies Logo HERE Technologies

Sales Development Representative

Artificial Intelligence • Automotive • Computer Vision • Information Technology • Internet of Things • Logistics • Software
Hybrid
Riyadh, SAU
6000 Employees

Immersive Logo Immersive

Enterprise Account Manager

Enterprise Web • HR Tech • Information Technology • Software • Cybersecurity
Remote or Hybrid
Saudi Arabia
330 Employees

Mastercard Logo Mastercard

VP, Business Development - Public Sector, Saudi Arabia & Bahrain

Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
Hybrid
Riyadh, SAU
38800 Employees

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account