MisuJob - AI Job Search Platform MisuJob

Senior Threat Detection Engineer

TAWANTECH

Riyadh, Riyadh Province, Saudi Arabia permanent

Posted: March 31, 2026

Interested in this position?

Create a free account to apply with AI-powered matching

Quick Summary

Design and develop threat detection capabilities across security monitoring platforms, utilizing expertise in SIEM engineering, detection logic development, and security monitoring tools such as EDR and NDR.

Job Description

Role Overview

We are seeking a highly skilled and proactive Senior Threat Detection Engineer to join our cybersecurity team. This role is responsible for designing, developing, and continuously improving threat detection capabilities across the organization’s security monitoring platforms. The ideal candidate will have strong hands-on experience in SIEM engineering, detection logic development, and security monitoring tools such as EDR and NDR, with a particular preference for expertise in QRadar.

You will play a critical role in strengthening the organization’s ability to detect, analyze, and respond to advanced cyber threats by building high-quality detection use cases, optimizing alerting mechanisms, and supporting threat hunting initiatives.

Key Responsibilities

1. SIEM Use Case Design & Implementation

• Design, develop, and deploy advanced detection use cases within the SIEM platform to identify potential security threats and anomalies.
• Translate threat intelligence, attack techniques, and business risks into actionable detection logic.
• Ensure use cases align with frameworks such as MITRE ATT&CK and industry best practices.
• Continuously review and enhance existing SIEM content to maintain effectiveness against evolving threats.

2. Correlation Searches & Alert Engineering

• Develop and maintain correlation rules, searches, and alerting logic to identify multi-stage attacks and complex threat scenarios.
• Create meaningful alert conditions that provide actionable insights to SOC analysts.
• Establish thresholds, baselines, and behavioral analytics to improve detection accuracy.
• Ensure alerts are properly enriched with contextual data to facilitate faster investigation and response.

3. Detection Engineering Across Security Tools (EDR, NDR, etc.)

• Build and tune detection use cases across endpoint and network monitoring tools such as EDR and NDR platforms.
• Integrate telemetry from multiple sources to enhance visibility and detection coverage.
• Collaborate with engineering teams to onboard new data sources into the SIEM and other monitoring tools.
• Optimize detection strategies across different layers (endpoint, network, application).

4. Alert Tuning & False Positive Reduction

• Continuously analyze and tune alerts to minimize false positives and reduce alert fatigue within the SOC.
• Conduct root cause analysis of noisy alerts and implement improvements to detection logic.
• Balance sensitivity and accuracy to ensure high-fidelity alerts without missing critical threats.
• Maintain documentation of tuning activities and improvements for audit and knowledge sharing.

5. Threat Hunting Support

• Collaborate with threat hunting teams to develop hypotheses and detection strategies based on emerging threats.
• Convert threat hunting findings into scalable detection use cases.
• Analyze logs and telemetry data to identify indicators of compromise (IOCs) and suspicious behavior.
• Support proactive threat detection initiatives to uncover hidden threats within the environment.

6. Platform Expertise & Optimization (QRadar Preferred)

• Leverage deep expertise in QRadar (or similar SIEM platforms) to build, optimize, and maintain detection content.
• Configure log sources, parsing rules, and event normalization within the SIEM.
• Monitor SIEM performance and ensure optimal system health and efficiency.
• Stay up to date with new features, updates, and best practices related to QRadar and other tools.


Requirements:
• Minimum of 3+ years of experience in cybersecurity, with a strong focus on threat detection engineering or SIEM administration.

• Proven experience designing and implementing SIEM detection use cases.
• Hands-on experience with SIEM platforms (QRadar strongly preferred).
• Experience working with EDR and/or NDR tools and building detection logic within these platforms.
• Strong understanding of security event logs, network traffic, and endpoint telemetry.
• Knowledge of cyber threat landscapes, attack techniques, and adversary behavior.
• Familiarity with frameworks such as MITRE ATT&CK, Cyber Kill Chain, or similar.
• Experience in alert tuning and reducing false positives in a SOC environment.
• Strong analytical and problem-solving skills.

Why Apply Through MisuJob?

AI-Powered Job Matching: MisuJob uses advanced artificial intelligence to analyze your skills, experience, and career goals. Our matching algorithm compares your profile against thousands of job requirements to find positions where you have the highest chance of success. This saves you hours of manual job searching and ensures you only see relevant opportunities.

One-Click Applications: Once you create your profile, applying to jobs is effortless. Your resume and cover letter are automatically tailored to highlight the most relevant experience for each position. You can apply to multiple jobs in minutes, not hours.

Career Intelligence: Beyond job matching, MisuJob provides valuable career insights. See how your skills compare to market demands, identify skill gaps to address, and understand salary benchmarks for your experience level. Make data-driven decisions about your career path.

Frequently Asked Questions

How do I apply for this position?

Click the "Register to Apply" button above to create a free MisuJob account. Once registered, you can apply with one click and track your application status in your dashboard.

Is MisuJob free for job seekers?

Yes, MisuJob is completely free for job seekers. Create your profile, get matched with jobs, and apply without any cost. We help you find your dream job without any hidden fees.

How does AI matching work?

Our AI analyzes your resume, skills, and experience to understand your professional profile. It then compares this against job requirements using natural language processing to calculate a match percentage. Higher matches mean better fit for the role.

Can I apply to jobs in other countries?

Absolutely. MisuJob features jobs from companies worldwide, including remote positions. Filter by location or look for remote opportunities to find jobs that match your preferences.

Ready to Apply?

Join thousands of job seekers using MisuJob's AI to find and apply to their dream jobs automatically.

Register to Apply