10d ago
New

Cybersecurity Engineering Specialist

Rou - Bucuresti - Bucuresti (ana Tower)mid
OtherEngineering Specialist
0 views0 saves0 applied

Quick Summary

Key Responsibilities

Platform Engineering & Operations Engineer, operate, and continuously optimize Microsoft Sentinel and Microsoft Defender XDR (Defender for Endpoint, Identity, Office, and Cloud).

Technical Tools
OtherEngineering Specialist

Job Description

We are seeking for Engineering Senior Specialist to design, engineer, and operate enterprise-scale XDR and SIEM platforms across Microsoft and Google security ecosystems. This role operates at the intersection of security platform engineering, detection engineering, and operational resilience, with a clear mandate to improve threat detection quality, response effectiveness, data fidelity, and platform reliability in a global enterprise environment.

The ideal candidate brings deep hands-on engineering expertise, an operations-first mindset, and the ability to collaborate effectively with SOC (CFC), cloud, identity, and infrastructure teams.

Responsibilities

~2 min read

Platform Engineering & Operations

  • →

    Engineer, operate, and continuously optimize Microsoft Sentinel and Microsoft Defender XDR (Defender for Endpoint, Identity, Office, and Cloud).

  • →

    Engineer and operate Google Security Operations (Chronicle SIEM) to support high-volume security telemetry ingestion, analytics, and long-term retention.

  • →

    Design and maintain scalable ingestion architectures, including normalization, enrichment, routing, and retention across hybrid and multi-cloud environments.

  • →

    Ensure platform reliability, performance, cost awareness, and operational stability.

Detection Engineering & Threat Response Enablement

  • →

    Support detection tuning activities to reduce false positives, improve signal-to-noise ratio, and align with SOC workflows.

  • →

    Provide deep platform and data expertise to support incident investigation, threat hunting, and response activities.

  • →

    Align detection logic with MITRE ATT&CK and threat-informed defense principles.

Data Quality, Telemetry & Observability

  • →

    Support onboarding, validation, parsing, and ongoing quality monitoring of security telemetry sources.

  • →

    Partner with application, platform, and infrastructure teams to identify and close logging and visibility gaps.

  • →

    Establish and enforce data quality standards to ensure reliable detection, investigation, and reporting.

  • →

    Ensure logging and monitoring practices meet internal security standards and regulatory requirements.

Automation & Continuous Improvement

  • →

    Implement automation for detection lifecycle management, enrichment, and response orchestration using SOAR and native platform capabilities.

  • →

    Drive standardization, documentation, and runbook development to improve operational maturity and resiliency.

  • →

    Contribute to platform roadmaps, reliability improvements, and technical debt reduction initiatives.

Collaboration & Governance

  • →

    Work closely with CFC/SOC, Cloud Security, Identity, Infrastructure, and Compliance teams.

  • →

    Support audit and compliance activities, including SOX and regulatory log‑retention requirements.

  • →

    Provide technical input into onboarding decisions, platform changes, and security architecture reviews.

Requirements

~1 min read
  • 5+ years of experience in security engineering, detection engineering, or SOC engineering roles.

  • Strong hands-on experience with Microsoft Sentinel and Microsoft Defender XDR.

  • Experience with Google Security Operations (Chronicle SIEM) or equivalent large-scale cloud SIEM platforms.

  • Proficiency in KQL and experience authoring structured detection logic.

  • Solid understanding of cloud security (Azure and/or GCP), identity, endpoint, and network telemetry.

  • Experience operating security platforms in large, complex enterprise environments.

No Travel Required

Certificate Services, Certificate Services, Cloud Security, Cyber Defense, Cybersecurity, Cybersecurity Analytics, Cybersecurity Operations, Data Quality Control, Delivery of Security Applications, Design Applications, Enterprise Resource Planning (ERP), Identity Access Management (IAM), Incident Investigations, Incident Response, Information Security, Microsoft Azure, Network Segmentation, Operational Technology (OT) Security, Regulatory Requirements, Security Analytics, Security Architecture Design, Security Architecture Review, Security Engineering, SLA Management, System Designs {+ 3 more}

Nice to Have

~1 min read

Current Employees apply HERE

Current Contingent Workers apply HERE

Regular

Domestic

No

Hybrid

Not Indicated

No

n/a

10/4/2026

Location & Eligibility

Where is the job
Rou - Bucuresti - Bucuresti (ana Tower)
On-site at the office
Who can apply
Same as job location

Listing Details

Posted
September 21, 2026
First seen
October 1, 2026
Last seen
October 2, 2026

Posting Health

Days active
0
Repost count
0
Trust Level
28%
Scored at
October 2, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

Cybersecurity Engineering Specialist