drjobs Founding Detection Engineer Cloud Security Azure KQL

Founding Detection Engineer Cloud Security Azure KQL

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Rotterdam - Netherlands

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

What if you could build detection systems that protect critical national infrastructure and shape the entire security stack from day one

Cybersecurity is more than compliance it s infrastructure. We re launching a new cybersecurity startup to protect cloudnative systems behind critical public services. As our first detection engineer you ll help define how we identify threats respond to them and build smart defenses from the ground up.

This isn t about joining an existing team you ll shape the team. You ll have full influence on how detection is built automated and scaled with the freedom to choose the best tools for the job.

What you ll do:

  • Build and finetune threat detection strategies using Microsoft Sentinel and Defender tools

  • Write and iterate on KQL queries to hunt signals and reduce alert fatigue

  • Design and automate incident response workflows using scripting and playbooks

  • Work in Azurebased cloud environments where security is core not bolted on

  • Translate threat intel into real detection logic and share insights with team and clients

  • Help shape how we think about Blue Team practices from first draft to future roadmap

What you ll bring

  • Strong experience with Microsoft Sentinel and Defender for Cloud Endpoint or XDR

  • Confidence writing KQL from scratch and tuning it to reduce noise and improve signal

  • Handson knowledge of MITRE ATT&CK and how it maps to realworld threats

  • Experience scripting in PowerShell or Python

  • An ownership mindset youre proactive technically curious and comfortable building in the unknown

Bonus if you have

  • Microsoft certifications (SC200 AZ500 or SC100

  • Experience in startup freelance or earlystage environments

  • A passion for sharing knowledge (brownbags tooling experiments blog posts)

  • Experience helping shape SOC processes or automation tooling

What we offer

  • A gross annual salary between 58000 and 93600 based on your experience

  • 8 holiday allowance and a performancebased bonus

  • Mobility budget or lease car option

  • Hybrid working setup: remote flexibility with office access when needed

  • 25 vacation days solid pension scheme and travel reimbursement

  • 2500 annual learning & development budget to stay current with the security landscape

  • Access to professional hacker tools cyber ranges and internal labs

  • Freedom to explore your ideas contribute to open source and participate in internal hackathons

  • The chance to build from scratch influencing not just tooling but culture process and future hires

  • A real mission: helping protect nationallevel systems and making a measurable societal impact

Our process

  • Step 1: Intro call

  • Step 2: Meeting founder partners

  • Step 3: Team interview Technical deepdive

  • Step 4: Offer

We aim to complete the process within 5 working days of your first call.

Let s talk

Interested but not sure if you check every box We d still love to hear from you. No formal cover letter needed just reach out and let s start a conversation.

Employment Type

Full Time

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.