Solstice Logo

Solstice

Senior Advanced Cybersecurity Detection & Threat Intelligence Engineer

Posted 10 Days Ago
Be an Early Applicant
In-Office or Remote
Hiring Remotely in Bengaluru, Bengaluru Urban, Karnataka
Senior level
In-Office or Remote
Hiring Remotely in Bengaluru, Bengaluru Urban, Karnataka
Senior level
Design, implement, and tune threat detections across SIEM, EDR/XDR, cloud, OT/ICS, and identity. Translate threat intelligence and IOCs into detection rules, hunt hypotheses, and SOAR automation. Manage IOC feeds and TIPs, improve telemetry coverage, onboard log sources, and own the full detection lifecycle from hypothesis through production deployment.
The summary above was generated by AI

Location: Remote (this role is approved for India-based candidates only)
We are seeking a Sr. Advanced Cybersecurity Engineer based in India to serve as a detection and threat intelligence engineer within our Threat Detection & Response (TDR) program. This role focuses on detection engineering, threat intelligence operationalization, and SOAR automation across IT enterprises, cloud, OT/ICS, and identity environments. The ideal candidate will design and tune detection logic, drive security telemetry coverage improvements, build automated enrichment and detection workflows, and own the full detection development lifecycle from hypothesis through production deployment.
 

Responsibilities

Key Responsibilities

  • Design, implement, and continuously tune threat detections across SIEM, EDR/XDR, OT security platforms, and cloud-native security tooling.
  • Own the end-to-end detection engineering lifecycle — hypothesis development, rule authoring, validation, deployment, tuning, and retirement — aligned to MITRE ATT&CK across IT, OT, cloud, and identity environments.
  • Operationalize threat intelligence by translating finished intel, IOCs, and adversary TTPs into actionable detection rules, hunt hypotheses, and automated enrichment workflows.
  • Manage and maintain threat intelligence feeds and platforms, including ingestion, validation, confidence scoring, and expiration of IOC libraries.
  • Build, maintain, and improve SOAR automation playbooks, enrichment pipelines, and detection workflows to increase alert fidelity and reduce analyst toil.
  • Develop and maintain detection content for OT/ICS environments, including industrial protocol anomaly detection, Purdue model segmentation visibility, and OT-specific threat actor TTPs.
  • Improve security telemetry quality and coverage by collaborating with infrastructure, network, cloud, OT, and platform engineering teams to onboard new log sources and validate data fidelity.
Qualifications

Required Skills & Experience

  • 7–10+ years of experience in cybersecurity with a focus on detection engineering, security operations, or threat intelligence.
  • Strong hands-on experience with SIEM platforms such as Microsoft Sentinel, Splunk, Elastic, or QRadar — including rule authoring, query development, and data onboarding. 
  • Deep understanding of adversary tactics, techniques, and procedures with applied experience mapping detections to MITRE ATT&CK.
  • Hands-on experience developing detection rules, correlation logic, behavioral analytics, and threshold-based alerting across multiple telemetry sources. 
  • Demonstrated experience with SOAR platforms for building automated enrichment pipelines, detection workflows, and threat intel operationalization.
  • Strong scripting and automation skills in Python, PowerShell, or KQL for detection development, data parsing, and workflow automation.
  • Experience with threat intelligence platforms (TIP) for IOC lifecycle management, feed integration, and intel-to-detection operationalization. 
     

Preferred Qualifications 

  • Experience building or maturing a detection engineering program including detection backlog management, coverage gap analysis, and ATT&CK heatmap maintenance. 
  • Experience with OT/ICS security monitoring
  • Familiarity with threat intelligence integration and threat hunting methodologies
  • Familiarity with detection-as-code practices, version control for detection content, and automated rule testing pipelines
  • Knowledge of cloud-native security monitoring and identity telemetry. 
  • Relevant certifications such as GDAT, GCDE, GCIA, GCED, or equivalent credentials.
About Us

About Solstice Advanced Materials

Solstice Advanced Materials is a leading global specialty materials company that advances science for smarter outcomes. Solstice offers high-performance solutions that enable critical industries and applications, including refrigerants, semiconductor manufacturing, data center cooling, nuclear power, protective fibers, healthcare packaging and more. Solstice is recognized for developing next-generation materials through some of the industry's most renowned brands such as Solstice®, Genetron®, Aclar®, Spectra®, Fluka™, and Hydranal™. Partnering with over 3,000 customers across more than 120 countries and territories and supported by a robust portfolio of over 5,700 patents, Solstice’s approximately 4,000 employees worldwide drive innovation in materials science. For more information, visit Advanced Materials.


Similar Jobs

2 Hours Ago
In-Office or Remote
Senior level
Senior level
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
The Senior Data Engineering Manager will lead a team of data engineers, provide technical guidance, improve processes, and foster collaboration across departments while ensuring high-quality data services.
Top Skills: AWSDatabricksDbtGraph DatabasesPythonS3SparkSpark StreamingSQL
2 Hours Ago
In-Office or Remote
Senior level
Senior level
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Lead a distributed design team to define and execute design vision for IT Services in Jira Service Management. Partner with product, engineering, research, and content to ship AI-enabled experiences, recruit and mentor designers, introduce AI-driven design practices, and drive multiple initiatives from idea to launch while communicating impact to leadership.
Top Skills: AIJira Service ManagementRovo
2 Hours Ago
Remote or Hybrid
India
Entry level
Entry level
Fintech • Legal Tech • Software • Financial Services • Cybersecurity • Data Privacy
Processes client orders and legal documents across multiple jurisdictions and systems. Responsibilities include responding to customer inquiries, maintaining records, managing portfolios, coordinating project updates, reviewing filings, fulfilling orders, and resolving documentation issues. The role requires accurate, timely work, strong customer service, communication, organization, and problem-solving skills in a fast-paced environment.
Top Skills: MS OfficeSalesforceSalesforce Chatter

What you need to know about the Chennai Tech Scene

To locals, it's no secret that South India is leading the charge in big data infrastructure. While the environmental impact of data centers has long been a concern, emerging hubs like Chennai are favored by companies seeking ready access to renewable energy resources, which provide more sustainable and cost-effective solutions. As a result, Chennai, along with neighboring Bengaluru and Hyderabad, is poised for significant growth, with a projected 65 percent increase in data center capacity over the next decade.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account