This job is no longer available
This job expired on 21/08/2026. It no longer accepts applications.
Threat Detection Co-op – Cybersecurity Internship
COGNNA · Riyad
Job description
About the role
As a Threat Detection Co‑op you will join COGNNA’s Security Operations Center to design and implement high‑impact detection strategies, automate workflows and help raise the SOC to a world‑class level. You will work closely with threat intel, incident response and platform engineering teams while mentoring junior talent.
Key responsibilities
- Develop high‑fidelity correlation rules and behavioral detections within COGNNA’s XDR and SIEM platforms.
- Translate MITRE ATT&CK techniques, threat intel and vulnerability data into actionable detection logic.
- Identify detection gaps, add new data sources and automate testing to maintain detection quality.
- Lead architecture and optimisation of XDR, SIEM and SOC tech stacks for scalability and resilience.
- Build and maintain log ingestion pipelines, including parsing, normalization and enrichment.
- Write automation scripts in Python and PowerShell to improve SOC efficiency.
- Integrate tools across the SOC stack to enable seamless response workflows.
- Collaborate with intel and incident response teams on threat‑hunting use cases and provide Tier‑3 support for investigations.
- Improve SOC playbooks, SOPs and detection engineering workflows.
Required profile
- Enrolled in the final year of a Bachelor’s degree in Computer Science, Cybersecurity, Information Technology or a related field, with graduation expected within the 6‑month co‑op period.
- Basic understanding of cybersecurity concepts, Windows and Linux operating‑system internals, and common network protocols.
- Familiarity with writing simple scripts in Python or PowerShell.
- Basic knowledge of log types such as Windows Event Logs and Syslog.
- Availability for a full‑time, 6‑month continuous co‑op assignment.
Required skills
- Python
- PowerShell
- MITRE ATT&CK framework
- SIEM/XDR platforms (e.g., Splunk, Elastic)
- Wireshark
- Windows and Linux operating‑system fundamentals
- Network protocol basics
- Log collection and analysis (Windows Event Logs, Syslog)
What we offer
- Hands‑on experience with real‑world security operations and detection engineering.
- Mentorship from senior security engineers.
- Opportunity to contribute to the evolution of COGNNA’s SOC capabilities.
Questions fréquentes
Why are you reporting this job?
Explore further
Salaries, guides and searches in Saudi Arabia.
Salaries by job title
A question about this job?
Ask it here: you will get the full job summary by e-mail, right away.
Boost your chances
Upload your CV — we will match you with relevant openings.
Analyzing your CV...
COGNNA
Riyad