Jobiglo

No results.

Senior Threat Detection Engineer - Madinah

COGNNA · Madinah

New
Onsite Senior 🇬🇧 English
SIEM queries SPL KQL Lucene rule tuning UEBA EDR tools packet analysis Wireshark IDS IPS NetFlow Python PowerShell macOS logging threat intelligence

Job description

About the role

As a Senior Threat Detection Engineer at COGNNA you will design high‑impact detection strategies, build powerful automation, and raise the SOC to a world‑class standard. You will also mentor rising cyber talent and work closely with threat intel, incident response and platform engineering teams.

Key responsibilities

  • Develop high‑fidelity correlation rules and behavioral detections across COGNNA security platforms.
  • Translate MITRE ATT&CK techniques, threat intel and vulnerability data into actionable detection logic.
  • Identify detection gaps, introduce new data sources and automate detection testing.
  • Lead architecture and optimisation of XDR, SIEM and SOC tech stacks for scale and resilience.
  • Streamline log ingestion pipelines, build automation scripts (Python, PowerShell) and integrate tools across the SOC stack.
  • Collaborate with intel and IR teams to enrich use cases, support threat hunts and provide Tier‑3 incident investigation support.
  • Improve SOC playbooks, SOPs and detection engineering workflows while staying current on global and regional threats.
  • Ensure compliance with regional frameworks such as NCA ECC and SAMA CSF.

Required profile

  • Bachelor’s degree in Computer Science, Cybersecurity or a related field.
  • Minimum 3 years of hands‑on experience developing and maintaining complex detection use cases.
  • Strong understanding of attacker behaviour, incident response fundamentals and digital forensics.
  • Relevant certifications are highly preferred (e.g., SANS GIAC, OSDA, CISSP, CSSLP).

Required skills

  • SIEM query languages: SPL, KQL, Lucene.
  • Rule tuning, UEBA and scaling of SIEM platforms.
  • EDR tools and endpoint detection tactics.
  • Packet analysis with Wireshark, IDS/IPS, NetFlow.
  • Scripting and automation in Python and PowerShell.
  • Windows, Linux and macOS logging, artifacts and forensic analysis.
  • Threat intelligence integration and cloud environment monitoring (IaaS/PaaS/SaaS).

What we offer

  • Impactful work shaping the future of cybersecurity for global organisations.
  • On‑site collaboration in our Al‑Madinah office with passionate experts.
  • Continuous growth through certifications, trainings and development opportunities.
  • Ownership mindset supported by an ESOP program.
  • Culture of trust that empowers talent and celebrates real outcomes.

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec COGNNA.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Explore further

Salaries, guides and searches in Saudi Arabia.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

By continuing, you accept our terms of use.

Already have an account? Login

💬 Chat with us on Telegram Chat on WhatsApp

Published 1 day ago

Expires 1 month from now

4 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

COGNNA

Madinah