Remote Dev Jobs
33 jobs available
Computer Merchant, Ltd., The · 🇺🇸 United StatesRemote1w ago
JOB TITLE: Network Security Engineer JOB LOCATION: Remote WAGE RANGE*: $50-$53 JOB NUMBER: 25-03828 JOB DESCRIPTION: Strong network engineering background (routing/switching, VLANs, firewalls, NAC/802.1X, traffic flow understanding). Security fundamentals including vulnerability management, identity integrations, endpoint visibility, log sources, and interpreting security events. Experience with asset inventory tools or security platforms (SIEM, EDR, CMDB, scanners, or agentless discovery tools…
StratEdge It consulting INC · 🇺🇸 United StatesRemote1w ago
Title: Remote Mainframe Security Engineer with strong expertise in CA Top Secret (TSS) Location: REMOTE Duration: 12 Months Contract Client: IBM Rate: $60/hr on C2C Visa: Native Video Interviews Manager Notes We are looking someone with a little deeper knowledge such as Reporting to SIM/Soc, MFA and SSO experience and some ICSF skills. However, they can be learned with the right guidance. The customer is also looking for AS 400 skills handling the QSECOFR role. Plus point- Those who can speak S…
Insight Global · 🇺🇸 United StatesRemote2w ago
Job Description This position will require you to use technical knowledge and organizational skills to advance desktop security, management, and functionality across the enterprise. You will be collaborating within a self-managing Agile SCRUM team of Windows and macOS Engineers. This position is part of EUC Platform Engineering, and the candidate will have the opportunity to work with other Platform, Network and Security engineering teams to maintain operational aspects around process and techn…
AbnormalRemote3w ago
Headquarters: Remote - USA About the Role Abnormal AI is looking for an Application Security Engineer II to secure the AI-powered systems at the core of our AWS-based platform (LLM-integrated features, agentic workflows, MCP connectors, and the model supply chain) against threats like prompt injection at production scale. This is an individual contributor role that blends deep application security expertise with strong engineering fundamentals. You'll focus on integrating security into every phase of our software development lifecycle, conducting comprehensive security reviews, and partnering with engineering teams to build defensible architectures. You will own the security architecture and development of secure coding practices while ensuring security is a foundational partner to our engineering stakeholders. You'll coach developers across the engineering organization on application security principles, act as a technical liaison across teams, and contribute directly to keeping our applications and customers secure. This role reports to the Director of Security Engineering. What you will do Lead threat modeling and security architecture reviews with engineering teams by translating security risks into concrete development actions, with particular focus on AI-powered features (LLM integrations, agentic workflows, MCP connectors). Architect, build, and maintain security tooling and integrations that make secure development the default in our CI/CD pipelines. Design and deploy automated security testing to identify vulnerabilities early in the development process. Serve as a hands-on technical contributor during security incidents by analyzing application-level behavior and enhancing response processes. Coach developers on secure coding, security architecture, and threat modeling for AI-native systems. Define and track key security posture metrics, building dashboards or reports to visualize security coverage and vulnerability trends. Must Haves 5+ years of experienc
Temporal TechnologiesRemote3w ago
Headquarters: United States or Canada - Remote Opportunity About Us Temporal is an open source programming model that can simplify code, make applications more reliable, and help developers focus on the important things like delivering features faster. We are on a mission to be the reliable foundation of every developer’s toolbox, and are building the team that will make that happen. Our values guide us —they are present in how we show up, make decisions, and work together to make an impact. We’re curious, driven, collaborative, genuine and humble. Temporal is growing and we are looking for those who share our values, challenge 'standard' thinking, and want to influence our future. If you have a passion for improving the developer experience, building world-class open-source software and communities, and want to be a part of our amazing team, we'd love to hear from you! Summary Join our dynamic team as a Senior Application Security Engineer , where you'll play a pivotal role in securing the Temporal development pipeline, product, and customer execution environment. In this position, you'll work closely with software engineering teams and customers to build security deeply into our platform across multiple clouds. You'll also help shape how we use AI responsibly in both our product and our engineering processes. We're looking for individuals who are passionate about enabling engineering teams to build and ship securely, serving as trusted security partners across the organization. What You’ll Do Collaborate with product and engineering teams to integrate security principles into the design and architecture of products. Conduct threat modeling and risk assessments to identify vulnerabilities and potential attack vectors across the full product surface. Manage the Secure Development pipeline including code security and 3rd party library supply chain security. Stay current on emerging standards and guidance (e.g. OWASP Top 10 for LLMs, MCP security specifications) and t
Map Ssg · 🇺🇸 United StatesRemote3w ago
This is a technical position where the candidate will manage, provide technical support, implement, maintain and troubleshoot all security products used by the Firm. The candidate must have significant hands-on experience with security technologies and solutions. The candidate will also perform daily investigation of security incidents, security assessments and audits. The job duties include: Responsibilities Manage Intruder Detection sensors, firewalls, Anti-Virus, Web Filtering Solutions, DLP…
Zenara HealthRemote3w ago
Headquarters: India About the Company Zenara Health is a mental healthcare organization driven by technology, aiming to improve the accessibility and quality of mental wellness services. By integrating AI-driven platforms with professional clinical care, we deliver personalized and effective mental health solutions, creating a smooth digital experience for both patients and providers. We operate as a startup, distinct from a mere department. Why This Role Exists This position serves as the company's foremost line of defense. You will operate under the assumption that systems are constantly under threat, crafting infrastructure that is resilient, auditable, and inherently secure. You will be the most risk-aware individual in the startup — and that’s exactly what we require. While others concentrate on feature rollout, you will prioritize the security of patient data, regulatory compliance, and system integrity. About the Role If your understanding of DevOps is limited to "I occasionally execute kubectl apply," this position is likely not for you. This role is not suited for those who prioritize speed over safety or view security as an afterthought to be addressed later. At Zenara, safeguarding patient data and maintaining system integrity takes precedence over rapid deployment. Our team is in the process of developing a platform that manages clinical data, operates AI workflows, and processes insurance billing — all within a HIPAA-regulated environment catering to real psychiatric practices. Our infrastructure is operational; however, we lack an individual who will take ownership with a security-first perspective. We currently do not have a dedicated CI/CD owner, a comprehensive security posture, or monitoring that extends beyond simple uptime checks. If HIPAA auditors were to arrive tomorrow, we could withstand the scrutiny — but it wouldn’t be a pleasant experience. You will be responsible for Zenara’s infrastructure, security posture, and compliance engineering —
Insight Global · 🇺🇸 United StatesRemote4w ago
Job Description An employer is seeking a remote OT Network Contractor for a contract role supporting their OT Stabilization effort. The primary objective of this engagement is to replace existing Cisco ASA firewalls with Cisco Firepower Threat Defense (FTD) firewalls and establish or strengthen IT/OT segregation, while ensuring compliance with company cybersecurity standards, OT security requirements, and industry best practices. Responsibilities will include: - Cisco ASA to Cisco FTD migration…
Searchability · 🇬🇧 London, United KingdomRemote1mo ago
Head of Security Engineering (Product Security) Salary: 100,000 - 110,000 + Excellent Benefits Location: UK (Remote-first with occasional travel to London) Employment: Full Time, Permanent This is an opportunity to join a high-growth, PE-backed cybersecurity software company where security isn't simply something the business does - it's the product itself. Trusted by Government, Defence, Financial Services and Critical National Infrastructure or...
Oscar Technology · 🇬🇧 London, United KingdomRemote1mo ago
Zscaler DLP Engineer | 550- 585 per day (Inside IR35) | Fully Remote | 6-Month Initial Contract (Long-Term Programme) Our client is looking for an experienced Zscaler DLP Policy Engineer to join a major enterprise security transformation programme. This will be supporting the migration from an existing DLP platform to ZScaler DLP. This is a hands-on engineering role where you'll be responsible for analysing existing DLP policies, designing and b...
Primer.io · 🇬🇧 United KingdomRemote57y ago
An Introduction to Primer Primer is the unified infrastructure for global payments. We give finance and payments teams the visibility and control to reduce complexity, improve performance, and capture more revenue - all from a single platform. Backed by Sofina, Peak XV Partners, ICONIQ, Tencent, Accel, and Balderton, we're building the payments layer the world's best companies rely on. Watch our showcase > Read up on our $100m Series C Learn more about our culture > Which team will you be joining? You’ll be joining the ProdSec/AppSec team to help build the entire product security surface for a company processing payments at scale: threat modelling, security review, compliance, incident escalation, and the multi-year AppSec roadmap. You'd be the second hire, and the person that function finally gets to share the work with. This is a hands-on delivery role, and a genuinely formative one. You’ll help set the security strategy and architecture; you take real ownership of the work that turns it into reality, reviews, research, automation, and the day-to-day partnership with engineering teams. You'll have a clear direction to work within and someone senior to learn from, while still owning your projects end to end. Security at Primer sits close to the engineering teams it protects rather than off to one side, so you'll spend real time embedded with the people building Cloud, Infra, and product. For someone who wants to go deep in product security with room to grow, there are few better seats than being the second engineer in a function that's only now scaling. What will you be doing? Running security reviews and threat modelling on features and systems across Primer's product, and turning findings into clear, actionable guidance for the teams shipping them Independently planning and delivering your own security projects, from initial design through to rollout Building tooling and automation that makes future reviews faster and cheaper to run Coordinating penetration testi
Primer.io · 🇬🇧 United KingdomRemote57y ago
An Introduction to Primer Primer is the unified infrastructure for global payments. We give finance and payments teams the visibility and control to reduce complexity, improve performance, and capture more revenue - all from a single platform. Backed by Sofina, Peak XV Partners, ICONIQ, Tencent, Accel, and Balderton, we're building the payments layer the world's best companies rely on. Watch our showcase > Read up on our $100m Series C Learn more about our culture > Primer is looking for a Security Engineer to help us detect, investigate, and respond to threats across our cloud infrastructure. You'll take ownership of a meaningful slice of our detection and response capability — tuning what our SIEM catches, building the automation that speeds up how we react, and being a first responder when something looks wrong. What you'll be doing Plan and deliver detection and response work end-to-end — from a new detection rule to a fully automated response — within your area of ownership. Build, tune and maintain detections across our SIEM (Elastic) and AWS environment, closing gaps that existing coverage misses. Own an investigation queue: triage, investigate, escalate and resolve security incidents, and write up findings clearly enough to stand on their own. Build runbooks and automations (Python, and no-code tools like Zapier or Tines) to cut manual work out of triage and response. Make and document risk decisions in your area, and know when to pull in others. Support our compliance programme by keeping the controls you own audit-ready and contributing evidence for audits (e.g. SOC 2, PCI DSS). Use Terraform and Python to build and maintain the infrastructure behind your detections and tooling. Join our on-call rotation for incident response and monitoring. What we're looking for Hands-on experience building and tuning detections in a SIEM (Elastic preferred; Splunk, Sentinel or similar also welcome) Experience with AWS and cloud-native detection and response Comfortable
HackerOne · 🇬🇧 London, United KingdomRemote57y ago
HackerOne is a global leader in Continuous Threat Exposure Management (CTEM). The HackerOne Platform unites agentic AI solutions with the ingenuity of the world’s largest community of security researchers to continuously discover, validate, prioritize, and remediate exposures across code, cloud, and AI systems. Through solutions like bug bounty, vulnerability disclosure, agentic pentesting, AI red teaming, and code security, HackerOne delivers measurable, continuous reduction of cyber risk for enterprises. Industry leaders, including Anthropic, Crypto.com , General Motors, Goldman Sachs, Lufthansa, Uber, UK Ministry of Defence, and the U.S. Department of Defense, trust HackerOne to safeguard their digital ecosystems. HackerOne was recognized in Gartner’s Emerging Tech Impact Radar: AI Cybersecurity Ecosystem report for its leadership in AI Security Testing and has been named a Most Loved Workplace for Young Professionals (2024). HackerOne is at a pivotal inflection point in the security industry. Offensive security is no longer optional – it is the standard for forward-thinking companies that want to build trust and resilience in a world where AI-driven innovation and adversaries are moving faster than ever. With the industry shifting, HackerOne stands apart: we combine the ingenuity of the largest security research community with a best-in-class AI-powered platform, trusted by the world’s top organizations. HackerOne Values HackerOne is dedicated to fostering a strong and inclusive culture. HackerOne is Customer Obsessed and prioritizes customer outcomes in our decisions and actions. We Default to Disclosure by operating with transparency and integrity, ensuring trust and accountability. Employees, researchers, customers, and partners Win Together by fostering empowerment, inclusion, respect, and accountability. Senior Security Engineer, Detection and Response Remote Location: Austin TX, Seattle, WA, Washington, DC, San Francisco, CA, Boston, MA Position Summary At
Distribusion Technologies · 🇩🇪 Berlin, GermanyRemote57y ago
Distribusion is the world’s leading ground transportation marketplace and gives travellers seamless access to ground transportation online, from search to ticket purchase. We have built a cutting-edge B2B technology platform that connects bus, rail and ferry operators in 70+ countries with the biggest online retailers including Google Maps and Booking.com. We are shaping the future of travel and building the largest global network of transport providers and retailers. We are one of the fastest growing startups in travel, backed by leading venture capital investors including TQ Ventures, Lightrock, Creandum, and Northzone, and are headquartered in Berlin, Germany. Following our recent $80m Series C funding, we are ready to push beyond. We are looking for our first dedicated Application Security Engineer to build our AppSec practice from the ground up. This is a greenfield opportunity with a real attack surface: public partner-facing APIs, payment flows, and active bug bounties. You will own secure development, define what gets reviewed, implement security gates, build the "paved road" for ~150 engineers, and see the impact of your work in production within weeks. What you will do: Lead threat modeling and secure design reviews for high-risk changes, partner integrations, and payment flows. Implement, tune, and enforce security gates in GitLab CI/CD (SAST, SCA, secrets scanning, and DAST) while minimizing developer friction. Act as the primary technical owner for triaging, reproducing, and prioritizing findings from bug bounties, partner pentests, and automated scanners. Work hands-on with the DevOps team to implement GCP organizational policies, IAM least-privilege architectures, and Cloud Armor (WAF/rate limiting). Establish a security-champions network across engineering squads and leverage automation/AI-assisted tooling to scale code reviews effectively. Workplace: We are a remote-first company with teams located around the Globe. Also, the HQ office is in Berlin,
Ygo · Remote EURemote57y ago
YGO.ai is a VC-funded AI tourism platform. We are hiring a Cloud Security Engineer to own the security of our cloud platform, the APIs our enterprise clients run on and the company itself. 🛡️ About this role. The role carries two things at once. You own security engineering directly and hands-on. You build the security function around it as we grow. At YGO a pod lead is a squad leader and a spokesperson, close to the work and close to the client, rather than a full-time manager. You will not stop being an engineer. The work is broad. You might review source code in the morning, investigate an endpoint alert after lunch and help design a new authentication flow the next day. You identify the highest-risk problems, decide what happens first and execute. We serve major travel enterprises and we have enterprise commitments going live from the start of 2027. Security is a condition of that business, not a layer added afterwards. 🧑💻 What you'll own Application security. Hands-on code and architecture review across our APIs, backend services and internal tooling. Targeted penetration testing to validate issues yourself. Working with engineers on root causes and practical fixes rather than handing over reports. Vulnerability management and the external penetration tests we commission Detection and response. Knowing we are under attack while it is happening and what happens next. Alerting, intrusion detection, incident process and the on-call path Cloud and platform hardening. Access control, network boundaries, secrets management, containers and the deployment pipeline. Security through the SDLC: CI/CD, repositories and dependencies The security of our APIs. Authentication and authorization, tenant isolation, token scoping and lifecycle, abuse prevention, enterprise SSO and the audit trail our clients and our own accountability depend on The security of our AI systems. Prompt injection, tool and agent permissions, our MCP server, retrieval and data ingestion. The data-r
Samsara · 🇬🇧 London, United KingdomRemote57y ago
Who we are Samsara (NYSE: IOT) is the pioneer of the Connected Operations™ Cloud, which is a platform that enables organizations that depend on physical operations to harness Internet of Things (IoT) data to develop actionable insights and improve their operations. At Samsara, we are helping improve the safety, efficiency and sustainability of the physical operations that power our global economy. Representing more than 40% of global GDP, these industries are the infrastructure of our planet, including agriculture, construction, field services, transportation, and manufacturing — and we are excited to help digitally transform their operations at scale. Working at Samsara means you'll help define the future of physical operations and be on a team that's shaping an exciting array of product solutions, including Video-Based Safety, Vehicle Telematics, Apps and Driver Workflows, and Equipment Monitoring. As part of a recently public company, you'll have the autonomy and support to make an impact as we build for the long term. About the role: Samsara sits at the center of hardware, software, AI, and the physical world, processing 25+ trillion data points annually across thousands of connected devices. The Samsara Application Security team protects this vast footprint end-to-end, spanning cloud services, internal systems, and firmware running on IoT hardware in the field. As a Staff Application Security Engineer, you'll drive the overarching technical direction for our application security and vulnerability management programs. This is a high-visibility role where you'll influence a broad surface area while retaining the flexibility to dive deep into critical domain focus areas as security priorities evolve. This is a remote position, open to candidates residing in the UK. Relocation assistance will not be provided for this role. You should apply if: You want to impact the industries that run our world: Your efforts will result in real-world impact—helping to keep the lig
Prima · 🇬🇧 London, United KingdomRemote57y ago
Are you looking for a new challenge? Fancy helping us shape the future of motor insurance? Prima could be the place for you. Since 2015, we’ve been using our love of data and tech to rethink motor insurance and bring drivers a great experience at a great price. Our story began in Italy, where we’ve quickly become the number one online motor insurance provider. In fact, we’re trusted by over 5 million drivers. And now we’re expanding to help millions more drivers in the UK and Spain. To help fuel that growth, we need a Application Security Engineer to join our Security Engineering Team . The Engineering Department is the beating heart of Prima. You’ll be joining over 350 engineers across software development, infrastructure, operations and security: fueled by curiosity, experimentation and collaboration, you’ll help deliver scalable, impactful solutions that shape the future of insurance. Excited to make an impact? Here are the details What you'll do Define security requirements and design application architectures following a secure-by-default approach. Conduct threat modeling, code reviews, and penetration testing on cloud-based web and mobile apps to proactively identify vulnerabilities. Implement, manage, and automate SAST/DAST/SCA security controls and WAF rules to enforce protection at scale. Partner with Product teams to ensure robust protection and foster a security-first development culture. Participate in the investigation, management, and resolution of security alerts. Collaborate on all core activities and initiatives of the Security Engineering team. What we're looking for Strong knowledge of web/mobile security vulnerabilities, AI security risks, and industry standards (e.g., OWASP Top 10, CWE). Hands-on experience with threat modeling frameworks (e.g., STRIDE), code reviews, penetration testing, and SAST/DAST/SCA tools. Proficiency in scripting/programming (e.g., Python, Rust) and experience with CI/CD systems and Infrastructure as Code (e.g., Pulumi).
Vivenu · 🇩🇪 GermanyRemote57y ago
Redefine the future of live entertainment tech Welcome to vivenu, the global leader in event ticketing tech and one of the world’s fastest-growing live entertainment tech firms. We are transforming event ticketing for global leaders like the Grammys, the Golden Globes, Stanford University and the Hockenheimring turning what was once a simple transaction into a strategic business advantage. Backed by over $65 million in funding, our platform empowers event organizers to own their brand experience, unlock deep data insights, and seamlessly integrate ticketing into their digital infrastructure. With six offices worldwide and growing, we deliver a customizable, intuitive solution and industry-leading support that simplify even the most complex ticketing challenges – helping organizers deliver exceptional experiences and drive real growth. Join us and build the future of live entertainment. With over 10 million end users and usage quadrupling annually, our infrastructure now handles over 1 billion requests per month — and counting. Our API-first platform solves complex system challenges at scale — delivering performance, flexibility, and reliability for the world’s leading live entertainment brands. This isn't just a maintenance role – it is a blank canvas to build, scale, and architect a state-of-the-art AppSec program from the ground up. We are currently operating at a fraction of our ultimate potential, which means you have an immense, blank-canvas opportunity to fundamentally shape our security culture, processes, and tooling across the entire global engineering organization. You will drive the entire AppSec lifecycle: from offensive red teaming and threat modeling to risk-based vulnerability management and pioneering a true shift-left culture. What Makes This Role Challenging and Engaging: High-Impact Technical Environment: You won't just follow blueprints; you will holistically influence a shift-left architecture across both application and platform layers. Modern
APT-ONE GmbH · 🇩🇪 Berlin, GermanyRemote57y ago
Die APT-ONE GmbH in Berlin ist ein auf Cyber Security spezialisiertes Beratungshaus. Wir schützen die IT-, OT-, Cloud- und KI-Systeme unserer Kunden wirksam vor digitalen Bedrohungen. Unser Ansatz ist anders: KI-gestützte Werkzeuge übernehmen Discovery, Routine-Analysen und Mustererkennung – unsere Berater:innen validieren, interpretieren und konzentrieren sich auf Strategie und maßgeschneiderte Lösungen. Das ergibt tiefere Analysen und belastbare Entscheidungsgrundlagen in kürzerer Zeit, bei 40–60 % weniger Aufwand für Routinearbeit. KI nur mit höchster Sensibilität für Kundendaten: Datenschutz steht über jedem Effizienzgewinn. KI ausschließlich auf vertraglich abgesicherten, datenschutzkonformen Plattformen, minimierte und anonymisierte Daten, niemals Kundendaten im Modelltraining. Diesen Umgang – und die Bereitschaft, unsere Prozesse und Produkte kontinuierlich mit KI weiterzuentwickeln – erwarten wir von allen Berater:innen. Bei uns bist du richtig, wenn: du ein attraktives Fixgehalt plus überdurchschnittliche Gewinnbeteiligung willst. du ortsunabhängig an hochrelevanten Projekten in Security Operations und KI-Sicherheit arbeiten willst. du KI als Hebel siehst und Sicherheitsberatung neu denken willst – ohne Kompromisse beim Datenschutz. du deine Expertise in SOC-Plattformen, Detection Engineering und Automatisierung ausbauen willst. Aufgaben Entwurf und Weiterentwicklung von Sicherheitsarchitekturen über IT-, OT-, Cloud- und KI-Systeme hinweg Design sicherer Cloud- und Hybrid-Architekturen (Azure, AWS, GCP) inkl. Landing Zones, Identity- und Netzwerkdesign, Verschlüsselung und Security Baselines Erstellung von Zielarchitekturen, Security-Roadmaps und Migrationspfaden – insbesondere für Cloud-Transformationen und Multi-Cloud-Szenarien Durchführung von Threat Modeling, Architektur-Reviews und Risikoanalysen für Anwendungen, Netzwerke, Cloud-Workloads und Plattformen Design von Netzwerk- und Perimetersicherheit inkl. Segmentierung, Firewalling und Zero Trust Netwo
APT-ONE GmbH · 🇩🇪 Berlin, GermanyRemote57y ago
Die APT-ONE GmbH in Berlin ist ein auf Cyber Security spezialisiertes Beratungshaus. Wir schützen die IT-, OT-, Cloud- und KI-Systeme unserer Kunden wirksam vor digitalen Bedrohungen. Unser Ansatz ist anders: KI-gestützte Werkzeuge übernehmen Discovery, Routine-Analysen und Mustererkennung – unsere Berater:innen validieren, interpretieren und konzentrieren sich auf Strategie und maßgeschneiderte Lösungen. Das ergibt tiefere Analysen und belastbare Entscheidungsgrundlagen in kürzerer Zeit, bei 40–60 % weniger Aufwand für Routinearbeit. KI nur mit höchster Sensibilität für Kundendaten: Datenschutz steht über jedem Effizienzgewinn. KI ausschließlich auf vertraglich abgesicherten, datenschutzkonformen Plattformen, minimierte und anonymisierte Daten, niemals Kundendaten im Modelltraining. Diesen Umgang – und die Bereitschaft, unsere Prozesse und Produkte kontinuierlich mit KI weiterzuentwickeln – erwarten wir von allen Berater:innen. Schwerpunkt dieser Rolle ist Detection Engineering: SIEM- und XDR-Plattformen, Log-Qualität, Detectionas-Code und Automatisierung – sicher in KQL, Sigma und MITRE ATT&CK. Bei uns bist du richtig, wenn: du ein attraktives Fixgehalt plus überdurchschnittliche Gewinnbeteiligung willst. du ortsunabhängig an hochrelevanten Projekten in Security Operations und KI-Sicherheit arbeiten willst. du KI als Hebel siehst und Sicherheitsberatung neu denken willst – ohne Kompromisse beim Datenschutz. du deine Expertise in SOC-Plattformen, Detection Engineering und Automatisierung ausbauen willst. Aufgaben Aufbau, Betrieb und Weiterentwicklung von SOC-Plattformen (SIEM, SOAR, EDR/XDR) Onboarding neuer Logquellen inklusive Parsing, Normalisierung und Sicherstellung der Datenqualität Entwicklung und Optimierung von Detection-Regeln und Use Cases (Sigma, KQL, SPL) auf Basis von MITRE ATT&CK Automatisierung von Analyse- und Response-Prozessen durch Playbooks und Skripting (Python, PowerShell) Aufbau von Detection-as-Code-Pipelines inkl. Versionierung, Testing un