Randstad Digital - Senior Detection Engineer & Threat Hunting Lead
Must-have:PythonCI/CDFinTechSecuritySeniorLead
Are you a cybersecurity expert who thinks like an attacker? At Randstad Digital, we are looking for a Senior Detection Engineer & Threat Hunting Lead to drive our threat detection and hunting programmes. This is a high-ownership, hands-on role where you will design elite detections, lead incident responses, and eventually build a team around you to secure leading organizations.
Your responsibilities
- Detection Engineering: Design and maintain SIEM/XDR detection rules with full lifecycle ownership.
- Gap Analysis: MAP coverage blind spots against threat actor Ttps (MITRE ATT&CK).
- Incident Response: Lead L2/L3 incident response, containment, and remediation efforts.
- Purple Teaming: Run breach & attack simulations to validate detection coverage.
- Detection-as-Code: Build and manage frameworks using CI/CD pipelines and Version Control.
- Threat Hunting & Intel: Execute hunting hypotheses and translate threat feeds into actionable alerts.
- Testing & Compliance: Act as the blue team counterpart for red team, Tiber, and DORA testing.
- Community: Represent the company in industry groups (Isacs, Csirts).
- Experience: Several years of hands-on experience in Detection Engineering, SOC, or CSIRT roles.
- Tech Stack: Deep knowledge of SIEMs (Sentinel, Splunk, QRadar) and Soar automation.
- Skills: Expert in attacker Ttps, digital forensics, and incident handling.
- Languages: Trilingual in English, Dutch, and French.
- Leadership: Ready to lead a functional working group or mentor a growing team.
Nice to have:
- Background in Government, Defense, Banking, or Critical Infrastructure (OT/ICS).
- Python scripting for security automation.
- Certifications: CISSP, CISM, or specialized Threat Hunting/Intel tracks.