
COGNNA
Medina, Saudi ArabiaPosted 6 days ago
As a Threat Detection Engineer at COGNNA, you’ll design high-impact detection strategies, build powerful automation, and elevate SOC operations to a world-class standard. You’ll also mentor rising cyber talent and collaborate with teams across threat intel, incident response, and platform engineering. 🔐 Advanced Threat Detection Engineering - Build high-fidelity correlation rules and behavioral detections within the COGNNA security platforms. - Translate adversary TTPs (MITRE ATT&CK), threat intel, and vulnerability data into actionable logic. - Identify detection gaps and introduce new data sources to cover evolving threat landscapes. - Automate detection testing and maintain detection quality over time. ⚙️ Platform Engineering & Optimization - Lead architecture and optimization of XDR, SIEM, and SOC tech stacks for scale and resilience. - Streamline log ingestion pipelines — from parsing to normalization and enrichment. - Build scripts and automations (Python, PowerShell) to enhance SOC efficiency. - Integrate tools across the SOC stack to enable seamless workflows and response. 🕵️♂️ Threat Hunting & Incident Response - Collaborate with intel and IR teams to enrich detection use cases and support threat hunts. - Provide Tier-3+ support for incident investigations and post-mortem analysis. 👥 Mentorship & SOC Maturity - Improve SOC playbooks, SOPs, and detection engineering workflows. - Stay updated on global and regional threats — and evolve detection accordingly. - Ensure compliance alignment (e.g., NCA ECC, SAMA CSF). Benefits 🚀 Impact that Matters – Build products that shape the future of cybersecurity and protect organizations globally. 🏢 On-Site Collaboration – Be at the heart of innovation in our Almadina office, working side by side with passionate experts. 💡 Continuous Growth – Access to certifications, trainings, and opportunities to sharpen your expertise. 📈 Ownership Mindset – Benefit from our ESOP program and grow with COGNNA’s success. 🤝 Culture of Trust – We empower talent, encourage ownership, and celebrate real outcomes.
Advanced Threat Detection Engineering: Build high-fidelity correlation rules and behavioral detections; translate MITRE ATT&CK, threat intel, and vulnerability data into actionable logic; identify detection gaps and add data sources; automate detection testing and maintain detection quality. Platform Engineering & Optimization: Lead architecture and optimization of XDR, SIEM, and SOC stacks; streamline log ingestion pipelines; build scripts and automations (Python, PowerShell); integrate tools across SOC stack. Threat Hunting & Incident Response: Collaborate with intel and IR teams to enrich detection use cases; support threat hunts; provide Tier-3+ support for investigations and post-mortems. Mentorship & SOC Maturity: Improve SOC playbooks, SOPs, and workflows; stay updated on threats; ensure compliance alignment (e.g., NCA ECC, SAMA CSF).
Not sure you fit this role?
Upload your CV and see how you score against COGNNA and every other live job. It's free.
Get my free matchesAED 24,500 – 44,100 a monthest.
AED 24,500 – 41,160/mo