Hiring.Camp

Senior Detection Engineer (AI-Augumented)

Pg

·

Today

Location
WARSAW PLANT & GO, Poland
Type
Full-time
Department
Engineering
Seniority
Senior
Experience
5+ years
Source
Workday

Description

Job Location

WARSAW PLANT & GO

Job Description

The Senior Detection Engineer plays a vital role in InfoSec's Cyber Defense Technology team, responsible for building, tuning, and scaling detection capabilities across enterprise SIEM platforms. This role operates at the intersection of detection engineering and AI — using agentic AI tooling and LLM-assisted workflows to accelerate threat detection development, validation, and coverage analysis.

You will work within a threat-informed detection pipeline where intelligence drives what we detect, and AI agents assist in rule creation, validation, and optimization. The role is hands-on: writing detection logic, managing detection-as-code via git, collaborating with Threat Intelligence and Threat Hunting teams, and continuously improving alert fidelity.

How success looks like

Your success would be based on operational and project deliverables, which would be reviewed on a quarterly basis. Your manager would provide full-support though continuous mentoring and coaching

  • Detection rules you write catch real threats and generate minimal noise

  • You measurably improve alert fidelity (TP rate) and reduce SOC case volume

  • You operate independently within the detection-as-code workflow (branch → validate → deploy)

  • You leverage AI tooling to work faster — not as a research project, but as a daily force multiplier

  • Quarterly deliverables reviewed with your manager through continuous mentoring and coaching

Job Responsibilities

Detection Engineering (Core):

  • Design, build, test, and tune detection rules mapped to MITRE ATT&CK, prioritized by threat intelligence and business risk

  • Write detection logic across the SIEM and data lake platforms

  • Manage detection content as code — git-based workflows, PR reviews, CI/CD deployment pipelines

  • Investigate and suppress false positives systematically using lookup-based architectures

  • Collaborate with Threat Hunting and Threat Intelligence teams through structured handover processes (TI→TH→DE pipeline)

  • Monitor emerging threats and rapidly develop detections for new TTPs, CVEs, and active campaigns

AI-Augmented Detection (Differentiator):

  • Leverage AI agents and LLM-assisted workflows to accelerate detection rule development, validation, and coverage analysis

  • Use and contribute to MCP (Model Context Protocol) tooling that enables AI-assisted detection validation (e.g., querying telemetry, assessing LOLBAS/GTFOBins, checking coverage gaps)

  • Operate agentic pipelines that triage large rule libraries against live telemetry at scale

  • Apply AI/ML techniques where appropriate for anomaly detection, behavioral analytics, or pattern identification in security datasets

  • Stay current on frontier AI threats (agentic attacks, LLM-assisted exploitation, AI-generated phishing) and translate them into detection opportunities

Collaboration & Operations:

  • Work closely with SOC analysts to understand alert quality feedback and drive fidelity improvements

  • Collaborate with data engineers on telemetry availability, data quality, and log source onboarding

  • Contribute to detection coverage reporting and MITRE ATT&CK posture measurement

  • Document detection logic, tuning rationale, and suppression decisions


 

Job Qualifications

Technical Competencies and Experience:

Required:

  • 5+ years in detection engineering, security operations, or threat detection roles

  • Proven experience writing and tuning SIEM detection rules/analytics (correlation rules, scheduled queries, real-time alerts)

  • Strong understanding of MITRE ATT&CK framework and its application to detection coverage

  • Proficiency in Python for automation, scripting, and tooling

  • Experience with git-based workflows (branching, PRs, CI/CD) for managing security content

  • Familiarity with security log sources: EDR, identity, cloud, network, proxy

  • Strong analytical skills and ability to distinguish true threats from noise in large datasets

  • Bachelor’s degree in Information Systems, Information Technology (IT), Computer Science, Engineering, or other technical / IT field and / or at least 5+ years of relevant experience.

  • Certification *Preferred* Requirements: CISSP, CCSP, OSCP, GIAC Certified Detection Analyst (GCDA), GCIA, Relevant certifications in cloud & ML/AI

Preferred:

  • Experience with multiple query languages

  • Experience with detection-as-code practices and YAML-based rule formats (Sigma, custom schemas)

  • Working knowledge of AI/LLM capabilities and their security implications — both as detection targets and as engineering tools

  • Experience with MCP servers, GitHub Copilot, or other AI-assisted development workflows

  • Familiarity with SOAR platforms and their integration with detection pipelines

  • Understanding of Kubernetes, cloud-native architectures, and OT/ICS environments

We offer

  • P&G-sized projects and access to world leading IT partners and technologies from Day 1.

  • Wide range of self-development possibilities (training and certifications paths).

  • Competitive starting salary and benefits program (private health care, P&G stock, saving plans, sport cards).

  • Regular salary increases and possible promotions - in line with your results and performance.

  • Opportunity to change role every few years to be in the best place for you and best for P&G.

At Procter & Gamble we embrace a hybrid work model that combines the flexibility of remote work with the collaborative benefits of in-office engagement. Employees can enjoy the option to work from home two days a week while also spending time in the office to foster teamwork and enhance communication.

Watch this video to learn more about our full recruiting process: https://www.youtube.com/watch?v=0bicvbpy0gI

Kindly be advised that at P&G, employment is exclusively extended on the basis of an "Umowa o Pracę" (Full-time Employment Contract). Apply only if you agree to these conditions.

About us

We produce globally recognized brands and we grow the best business leaders in the industry. With a portfolio of trusted brands as diverse as ours, it is paramount our leaders can lead with courage the vast array of brands, categories and functions. We serve consumers around the world with one of the strongest portfolios of trusted, quality, leadership brands, including Always®, Ariel®, Gillette®, Head & Shoulders®, Herbal Essences®, Oral-B®, Pampers®, Pantene®, Tampax® and more. Our community includes operations in approximately 70 countries worldwide.

Visit http://www.pg.com to know more.

We are an equal opportunity employer and value diversity at our company. We do not discriminate against individuals on the basis of race, color, gender, age, national origin, religion, sexual orientation, gender identity or expression, marital status, citizenship, disability, HIV/AIDS status, or any other legally protected factor.

Job Schedule

Full time

Job Number

R000155626

Job Segmentation

Experienced Professionals

Skills

PythonKubernetesCI/CDGitGitHubSIEMSOCCISSP

Similar Jobs

30

Senior Detection Engineer

Doordash USA · United States - Remote · Remote

Yesterday

Senior Detection Engineer

Verizon Communications · 22001 Loudoun County Pkwy, Ashburn, VA (VA0045), United States of America +3 · Remote, Hybrid

2 weeks ago

Senior Detection Engineer

Deloitte Netherlands · Amsterdam, NH, Netherlands · Hybrid

3 months ago

Senior Detection Engineer

Deloitte Netherlands · Amsterdam, NH, Netherlands

8 months ago

Senior Detection Engineer (AI-ML Focus)

Pg · CINCINNATI GENERAL OFFICES, United States of America

Today

Sr. Cybersecurity Engineer, Detection & Response

ON.energy · Houston, Texas, United States

2 days ago

SOC Detection and Response - Senior Engineer Cybersecurity Engineer

Unisys · Home Based India · Remote

2 days ago

Senior Developer - Detection Platform

Arcticwolf · Remote - CAN - Ontario, Canada +1 · Remote

4 days ago

Senior Security Engineer, Detection Engineering

Nvidia · CA,US, US +2 · Remote

1 week ago

Sr. Engineer, SDET - AI Detection and Response (AIDR) (Hybrid, Sunnyvale)

Crowdstrike · Sunnyvale, United States of America

1 week ago

Sr. Engineer, Cloud Native - AI Detection and Response (AIDR) (Hybrid, Sunnyvale)

Crowdstrike · Sunnyvale, United States of America · Remote, Hybrid, Onsite

1 week ago

Sr. II Full Stack Engineer, Cloud Native - AI Detection and Response (AIDR) (Hybrid, Sunnyvale)

Crowdstrike · Sunnyvale, United States of America

1 week ago

Senior Full Stack Engineer, Cloud Native - AI Detection and Response (AIDR) (Hybrid)

Crowdstrike · Sunnyvale, United States of America

1 week ago

Sr. Engineer II, Cloud Native - AI Detection and Response (AIDR) (Hybrid, Sunnyvale)

Crowdstrike · Sunnyvale, United States of America · Remote, Hybrid, Onsite

1 week ago

Sr. Engineer, Cloud Native - AI Detection and Response (AIDR) (Hybrid, Sunnyvale)

Crowdstrike · Sunnyvale, United States of America · Remote, Hybrid, Onsite

1 week ago

Senior Security Engineer, Detection Engineering

Nvidia · US, CA, Remote, United States of America +2 · Remote

1 week ago

Sr. Security Engineer - Cloud Threat Detection

Thehartford · Hartford CT- Home Office, United States of America +2 · Hybrid

1 week ago

Senior Security Engineer - Detection & Response

Even Up · Toronto (hybrid) · Hybrid

1 week ago

SR ENGINEER, FE CPIE RAM (RDA & METROLOGY) DETECTION Supplier Engagement

Micron · Fab 10A, Singapore

1 week ago

Senior Security Engineer- Threat Engineering Detection Team

Truist · Atlanta GA - 303 Peachtree Center Avenue - Garden Offices, United States of America +2

2 weeks ago

Senior Information Security Engineer (Detection, Automation & AI)

Zoox · Foster City, CA · Hybrid

2 weeks ago

Senior Security Engineer - Threat Detection

Grab · Petaling Jaya, Malaysia · Onsite

3 weeks ago

Senior Detection Engineer – Splunk (H/F)

Thales · Elancourt-Euclide 2, France · Hybrid

3 weeks ago

Senior Detection Engineer – MS Sentinel (H/F)

Thales · Elancourt-Euclide 2, France · Hybrid

3 weeks ago

Senior Detection and Response Engineer

Northwoodspace · Torrance, CA

4 weeks ago

Senior Backend Engineer - Monitoring and Anomaly Detection (Monetization)

GitLab · Remote, Bangalore · Remote

4 weeks ago

Sr. Security Engineer (Detection)

Solace · United States · Remote

4 weeks ago

Senior Detection & Response Engineer (L3 Security Operations)

Aristocrat · Poland - Krakow · Hybrid

1 month ago

SOC Detection & response - Senior Cybersecurity Engineer

Unisys · Multi-Client Colombia

1 month ago

Threat Detection & Response Engineer, Senior (High Level Clearance Required)

Icf · Virginia Client Office (VA88), United States of America +1

1 month ago