Cyber Detection & Response Engineering Lead Expert
L
Link GroupCybersecurity
Workplace type: remote; Country code: PLContractLead
Salary160 - 175 PLN per hour net b2b
Apply NowOpens the employer's application page
Job Details
- Languages
- Fluent English (written and verbal); proficiency in an additional European language (German, French, or Spanish) is a nice to have.
- Required Skills
- PythonSQLCybersecurityMicrosoft Azure
Requirements
- Strong background in cybersecurity detection and response, SOC operations, incident response, or cybersecurity consulting.
- Hands-on delivery experience across multiple CDR domains, such as SIEM, detection engineering, security automation, incident response, governance, or target operating model design.
- Track record leading cybersecurity engagements, complex workstreams, or multidisciplinary project teams.
- In-depth understanding of AI applications in CDR, including opportunities, limitations, security risks, validation needs, and human-in-the-loop requirements.
- Experience contributing to proposals, RFP responses, effort estimation, and business development.
- Fluent English, written and verbal.
- Outstanding presentation, leadership, and problem-solving skills.
- Nice to have: experience with SOAR platforms, security workflow automation, or complex API/tool integrations.
- Nice to have: working knowledge of KQL, SQL, and Python.
- Nice to have: experience with AI capabilities in SIEM, SOAR, EDR, or XDR platforms; MITRE ATT&CK, NIST CSF, and incident response lifecycles; or cloud security monitoring across Azure, AWS, or GCP.
- Nice to have: security certifications such as CISSP, CISM, or GCIH, management consulting experience, or proficiency in German, French, or Spanish.
Responsibilities
- Design and execute solutions for security monitoring, detection engineering, incident response, automation, and SOC/CSIRT operations.
- Apply AI-driven technologies to improve detection, investigation, response workflows, and operations, with validation and human oversight.
- Guide SIEM, SOAR, EDR, XDR, log management, integration, migration, and detection content operations.
- Translate business requirements and security risks into operating models, architectural designs, and improvement roadmaps.
- Facilitate workshops, present recommendations, and align technical teams with executive stakeholders.
- Lead, coach, and review consultants’ work.
- Develop proposals, RFP responses, effort estimates, solution designs, and client presentations.
- Develop reusable CDR frameworks, accelerators, service offerings, and delivery methodologies.
View Full Description & ApplyYou'll be redirected to the employer's site