Cyber Detection & Response Engineering Lead Expert

L
Link GroupCybersecurity
Workplace type: remote; Country code: PLContractLead
Salary160 - 175 PLN per hour net b2b
Apply NowOpens the employer's application page

Job Details

Languages
Fluent English (written and verbal); proficiency in an additional European language (German, French, or Spanish) is a nice to have.
Required Skills
PythonSQLCybersecurityMicrosoft Azure

Requirements

  • Strong background in cybersecurity detection and response, SOC operations, incident response, or cybersecurity consulting.
  • Hands-on delivery experience across multiple CDR domains, such as SIEM, detection engineering, security automation, incident response, governance, or target operating model design.
  • Track record leading cybersecurity engagements, complex workstreams, or multidisciplinary project teams.
  • In-depth understanding of AI applications in CDR, including opportunities, limitations, security risks, validation needs, and human-in-the-loop requirements.
  • Experience contributing to proposals, RFP responses, effort estimation, and business development.
  • Fluent English, written and verbal.
  • Outstanding presentation, leadership, and problem-solving skills.
  • Nice to have: experience with SOAR platforms, security workflow automation, or complex API/tool integrations.
  • Nice to have: working knowledge of KQL, SQL, and Python.
  • Nice to have: experience with AI capabilities in SIEM, SOAR, EDR, or XDR platforms; MITRE ATT&CK, NIST CSF, and incident response lifecycles; or cloud security monitoring across Azure, AWS, or GCP.
  • Nice to have: security certifications such as CISSP, CISM, or GCIH, management consulting experience, or proficiency in German, French, or Spanish.

Responsibilities

  • Design and execute solutions for security monitoring, detection engineering, incident response, automation, and SOC/CSIRT operations.
  • Apply AI-driven technologies to improve detection, investigation, response workflows, and operations, with validation and human oversight.
  • Guide SIEM, SOAR, EDR, XDR, log management, integration, migration, and detection content operations.
  • Translate business requirements and security risks into operating models, architectural designs, and improvement roadmaps.
  • Facilitate workshops, present recommendations, and align technical teams with executive stakeholders.
  • Lead, coach, and review consultants’ work.
  • Develop proposals, RFP responses, effort estimates, solution designs, and client presentations.
  • Develop reusable CDR frameworks, accelerators, service offerings, and delivery methodologies.
View Full Description & ApplyYou'll be redirected to the employer's site
160 - 175 PLN per hour net b2b
Apply Now