Senior Threat Detection Engineer
OPC NL, Netherlands
ABOUT US
We’re the world’s leading provider of secure financial messaging services, headquartered in Belgium. We are the way the world moves value – across borders, through cities and overseas. No other organisation can address the scale, precision, pace and trust that this demands, and we’re proud to support the global economy.
We’re unique too. We were established to find a better way for the global financial community to move value – a reliable, safe and secure approach that the community can trust, completely. We’re always striving to be better and are constantly evolving in an ever-changing landscape, without undermining that trust. Five decades on, our vibrant community reflects the complexity and diversity of the financial ecosystem. We innovate diligently, test exhaustively, then implement fast. In a connected and exciting era, our mission has never been more relevant. Swift now has a presence in 200+ countries and legal territories to serve a community of more than 12,000 banks and financial institutions.
What to Expect
In this role, you will:
- Develop Innovative Detection Strategies: Design and implement threat detection strategies and frameworks tailored to our unique environment, enhancing our ability to identify sophisticated threats.
- Develop and Tune Detection Rules: Lead the creation and refinement of high-fidelity detection rules in SIEM and EDR for both on-premises and cloud environments.
- Utilize MITRE ATT&CK Framework: Leverage MITRE ATT&CK Framework to create and analyze threat detection methodologies, ensuring comprehensive coverage of potential attack vectors.
- Automate Detection Processes: Drive the automation of detection lifecycle including development, deployment and validation to improve efficiency and accuracy
- Integrate Threat Intelligence: Ensure seamless integration of Threat Intelligence into detection mechanisms to counter emerging risks
- Collaborate Across Teams: Work closely with incident response, threat hunting, red team, and data engineering teams to enhance detection capabilities and ensure a cohesive security strategy.
- Provide Technical Leadership: Offer mentorship and guidance to team members, fostering a culture of continuous learning and development.
- Maintain Documentation: Maintain detailed documentation for all threat detection content and operation procedures to support operational excellence
We are looking for professionals with:
- A university degree in Computer Science, Information Security, or a related field.
- A minimum of 7 years of experience in cybersecurity, with at least 4 years working hands-on with detection and response across on-premises and cloud environments.
- Expertise in SIEM, EDR and UEBA tooling and an excellent understanding of threat detection methodologies.
- Strong understanding of threat modelling and data engineering.
- Proficiency in source code management, automation tools and scripting languages.
- A strong desire to expand and deepen your cybersecurity knowledge continuously.
- Exceptional problem-solving skills and excellent communication abilities.
- Relevant certifications such as CISSP, CISM, GIAC, or similar (highly desirable).
- A proven track record of taking ownership, delivering results, demonstrating operational excellence, and effectively engaging with stakeholders.
- A mindset that values emotional intelligence, adaptability, and a commitment to professional growth.
What we offer
We put you in control of career
We give you a competitive package
We help you perform at your best
We give you the freedom to be yourself
We give you the freedom to be yourself. We are creating an environment of unique individuals – like you – with different perspectives on the financial industry and the world. A diverse and inclusive environment in which everyone’s voice counts and where you can reach your full potential.
If you believe you require a reasonable accommodation to participate in the job application or interview process, please contact us to request accommodation.
Don’t meet every single requirement? At Swift, we are dedicated to building a workplace where people can bring their full selves and ideas to the team, so if you are excited about this role, we encourage you to apply even if you do not meet every single qualification.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Automation CISM CISSP Cloud Computer Science EDR GIAC Incident response MITRE ATT&CK Red team Scripting Security strategy SIEM Strategy Threat detection Threat intelligence
Perks/benefits: Career development
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.