Solstice Logo

Solstice

Senior Advanced Cybersecurity Detection & Threat Intelligence Engineer

Posted One Month Ago
Be an Early Applicant
In-Office or Remote
Hiring Remotely in Bengaluru, Bengaluru Urban, Karnataka, IND
Senior level
In-Office or Remote
Hiring Remotely in Bengaluru, Bengaluru Urban, Karnataka, IND
Senior level
Design, implement, and tune threat detections across SIEM, EDR/XDR, cloud, OT/ICS, and identity. Translate threat intelligence and IOCs into detection rules, hunt hypotheses, and SOAR automation. Manage IOC feeds and TIPs, improve telemetry coverage, onboard log sources, and own the full detection lifecycle from hypothesis through production deployment.
The summary above was generated by AI

Location: Remote (this role is approved for India-based candidates only)
We are seeking a Sr. Advanced Cybersecurity Engineer based in India to serve as a detection and threat intelligence engineer within our Threat Detection & Response (TDR) program. This role focuses on detection engineering, threat intelligence operationalization, and SOAR automation across IT enterprises, cloud, OT/ICS, and identity environments. The ideal candidate will design and tune detection logic, drive security telemetry coverage improvements, build automated enrichment and detection workflows, and own the full detection development lifecycle from hypothesis through production deployment.
 

Responsibilities

Key Responsibilities

  • Design, implement, and continuously tune threat detections across SIEM, EDR/XDR, OT security platforms, and cloud-native security tooling.
  • Own the end-to-end detection engineering lifecycle — hypothesis development, rule authoring, validation, deployment, tuning, and retirement — aligned to MITRE ATT&CK across IT, OT, cloud, and identity environments.
  • Operationalize threat intelligence by translating finished intel, IOCs, and adversary TTPs into actionable detection rules, hunt hypotheses, and automated enrichment workflows.
  • Manage and maintain threat intelligence feeds and platforms, including ingestion, validation, confidence scoring, and expiration of IOC libraries.
  • Build, maintain, and improve SOAR automation playbooks, enrichment pipelines, and detection workflows to increase alert fidelity and reduce analyst toil.
  • Develop and maintain detection content for OT/ICS environments, including industrial protocol anomaly detection, Purdue model segmentation visibility, and OT-specific threat actor TTPs.
  • Improve security telemetry quality and coverage by collaborating with infrastructure, network, cloud, OT, and platform engineering teams to onboard new log sources and validate data fidelity.
Qualifications

Required Skills & Experience

  • 7–10+ years of experience in cybersecurity with a focus on detection engineering, security operations, or threat intelligence.
  • Strong hands-on experience with SIEM platforms such as Microsoft Sentinel, Splunk, Elastic, or QRadar — including rule authoring, query development, and data onboarding. 
  • Deep understanding of adversary tactics, techniques, and procedures with applied experience mapping detections to MITRE ATT&CK.
  • Hands-on experience developing detection rules, correlation logic, behavioral analytics, and threshold-based alerting across multiple telemetry sources. 
  • Demonstrated experience with SOAR platforms for building automated enrichment pipelines, detection workflows, and threat intel operationalization.
  • Strong scripting and automation skills in Python, PowerShell, or KQL for detection development, data parsing, and workflow automation.
  • Experience with threat intelligence platforms (TIP) for IOC lifecycle management, feed integration, and intel-to-detection operationalization. 
     

Preferred Qualifications 

  • Experience building or maturing a detection engineering program including detection backlog management, coverage gap analysis, and ATT&CK heatmap maintenance. 
  • Experience with OT/ICS security monitoring. 
  • Familiarity with threat intelligence integration and threat hunting methodologies. 
  • Familiarity with detection-as-code practices, version control for detection content, and automated rule testing pipelines. 
  • Knowledge of cloud-native security monitoring and identity telemetry. 
  • Relevant certifications such as GDAT, GCDE, GCIA, GCED, or equivalent credentials.
About Us

About Solstice Advanced Materials

Solstice Advanced Materials is a leading global specialty materials company that advances science for smarter outcomes. Solstice offers high-performance solutions that enable critical industries and applications, including refrigerants, semiconductor manufacturing, data center cooling, nuclear power, protective fibers, healthcare packaging and more. Solstice is recognized for developing next-generation materials through some of the industry's most renowned brands such as Solstice®, Genetron®, Aclar®, Spectra®, Fluka™, and Hydranal™. Partnering with over 3,000 customers across more than 120 countries and territories and supported by a robust portfolio of over 5,700 patents, Solstice’s approximately 4,000 employees worldwide drive innovation in materials science. For more information, visit Advanced Materials.


Similar Jobs

Yesterday
In-Office or Remote
Bengaluru, Bengaluru Urban, Karnataka, IND
Senior level
Senior level
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Partner with enterprise sales teams and channel partners to understand customer challenges, identify expansion opportunities, and map needs to Atlassian solutions. Deliver compelling product demonstrations, lead technical evaluations, provide implementation guidance, solve customer problems, and support deal closure. Act as a product expert and customer advocate by sharing feedback and competitive insights with product teams.
Top Skills: Artificial IntelligenceAtlassian Software SuiteCloud Software
Yesterday
Remote
India
Expert/Leader
Expert/Leader
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Own the architecture, technical direction, reliability, cost efficiency, and adoption of Atlassian’s analytical data platform. Build foundational ingestion, transformation, orchestration, compute, and consumption components; establish multi-tenant standards and SLOs; and lead cross-team technical initiatives. The role requires hands-on development, distributed systems expertise, batch and streaming architecture design, cloud experience, and mentorship of senior engineers.
Top Skills: Amazon Web ServicesApache IcebergApache PinotSparkClickhouseDbtDelta LakeDruidJavaKotlinKubernetesPythonStarrocks
3 Days Ago
Remote
India
Expert/Leader
Expert/Leader
Artificial Intelligence • Productivity • Software • Automation
Leads Zapier’s India entity as statutory Board Director and General Manager. Owns local operations, governance, legal, tax, audit, transfer pricing, regulatory compliance, risk management, vendor relationships, and people decisions. Serves as the bridge between India-based teams and global leadership, translating strategy into execution and establishing operating rhythms for a fully remote workforce. Partners with Deloitte, HR, finance, auditors, regulators, and global executives while overseeing hiring, performance, compensation, employee relations, and compliance with Indian labor requirements.

What you need to know about the Bengaluru Tech Scene

Dubbed the "Silicon Valley of India," Bengaluru has emerged as the nation's leading hub for information technology and a go-to destination for startups. Home to tech giants like ISRO, Infosys, Wipro and HAL, the city attracts and cultivates a rich pool of tech talent, supported by numerous educational and research institutions including the Indian Institute of Science, Bangalore Institute of Technology, and the International Institute of Information Technology.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account