Security Detection Engineer (x/f/m) - DKB
Berlin, Germany
We’reexcited to share that our hiring process is now led by Code Factory (CoFa), DKB’s sister tech company, bringing a more agile and collaborative approach to building our cross-functional teams. Whileyou’llgo through the hiring journey withCoFa, your employment will be with DKB, combining the stability of a leading bank with the speed and innovation of a tech-driven environment. Join us to be part of a team where collaboration and impact come first.
How do you turn a current threat into reliable detection?
As aSecurity Detection Engineer (m/f/d), this is exactly the question you will focus on. You will analyze threat landscapes and attack techniques, derive relevant detection use cases, and develop the corresponding detection logic for our security systems.
You will support the entire detection lifecycle – from analyzing potential attack paths and developing and documenting detections to testing and continuously optimizing existing detection rules.
With your experience, you will actively help shape and advance DKB’s approach to cyberattack detection.
- You develop use cases and detection rules to continuously improve attack detection across our SIEM, EDR, cloud, and other security systems.
- You analyze current threats, attack techniques, and TTPs (Tactics, Techniques and Procedures) and translate them into suitable detection use cases, systematically applying the MITRE ATT&CK framework.
- You analyze log and telemetry data and assess which data sources are relevant for detecting attack techniques and suspicious behavior.
- You test and validate detection rules for effectiveness and continuously optimize them to reduce false positives while maintaining strong detection coverage.
- You assess our existing detection coverage using MITRE ATT&CK, identify gaps in our attack detection capabilities, and develop appropriate measures to close them.
- You work closely with colleagues in Threat Intelligence, Threat Hunting, and Incident Response, translating insights from security incidents and threat hunts into new or improved detection rules.
- Together with your team, you further develop our Detection-as-Code processes and contribute to versioning, reviews, testing, and the automated deployment of detection content.
- You contribute your ideas and experience to continuously improve our detection strategy, processes, measures, and tools.
- You have several years of professional experience in IT security and solid hands-on experience in Detection Engineering, ideally complemented by experience in Threat Hunting or a SOC environment.
- You have strong knowledge of the MITRE ATT&CK framework and experience translating attack techniques and TTPs into concrete detection use cases.
- You have experience with SIEM, EDR, or comparable detection platforms and are familiar with the relevant query and detection languages.
- You have a good understanding of relevant security telemetry and log sources, for example from endpoint, identity, network, cloud, Windows, and Linux environments.
- You work in a structured, analytical, and solution-oriented way and demonstrate a high degree of initiative and teamwork.
- You have very good German skills and good written and spoken English skills.
For us, your practical expertise matters most: a specific university degree is not required. Whether you have completed vocational training or come from another professional background, you are welcome to apply if you have the relevant Detection Engineering experience.
By the way: At our company, every person matters. We embrace fairness and diversity—no matter where you’re from, how old you are, or your sex, gender identity, sexual orientation, or religion, whether you have a disability or not—we genuinely look forward to every application!
#J-18808-Ljbffr
Security Detection Engineer (x/f/m) - DKB in Berlin Arbeitgeber: DKB Code Factory GmbH
Als Arbeitgeber bieten wir Ihnen die Möglichkeit, in einem dynamischen und unterstützenden Umfeld zu arbeiten, das auf Zusammenarbeit und persönlichem Wachstum basiert. Unsere Unternehmenskultur fördert Teamgeist und offene Kommunikation, während wir gleichzeitig zahlreiche Vorteile wie flexible Arbeitszeiten und regelmäßige Teamevents anbieten. Bei uns haben Sie die Chance, an bedeutenden Projekten im Bereich Investmentprodukte zu arbeiten und Ihre Fähigkeiten in einem innovativen Team weiterzuentwickeln.