Cyber Detection Engineering Lead (d/f/m)

Airbus Defence and Space

München

Vor Ort

EUR 90.000 - 130.000

Vollzeit

Vor 5 Tagen
Sei unter den ersten Bewerbenden
Bewerbungsgenerator

Hebe dich für diese Rolle von der Masse ab — erstelle in etwa einer Minute einen maßgeschneiderten Lebenslauf und ein Anschreiben.

Schaffe es an den ATS-Filtern vorbei

Benefits dieser Stelle

Fair compensation & extras
30 days annual leave
Flexible working hours
Mobile working
Company pension schemes

Zusammenfassung

Airbus Defence and Space GmbH in Germany seeks a Cyber Detection Engineering Lead to architect high-fidelity detection logic and drive the detection ecosystem. You will translate threat intelligence into proactive detections and lead a hands-on, security-critical team across Windows and Linux environments.

The role emphasizes strategic vision, mentorship, and cross-functional collaboration with Incident Response and SOC teams to rapidly contain threats while advancing Detection-as-Code practices.

Qualifikationen

  • Degree in Computer Science, Cybersecurity, Information Technology, or equivalent practical experience.
  • Proven track record in developing use cases and detection logic within a SOC environment, including leadership or mentorship experience.
  • Strong proficiency in Python and hands-on experience with automation frameworks to streamline operations.
  • Deep technical expertise in Windows and Linux operating systems, including OS internals, system logging, and telemetry analysis.
  • Practical background in Red Teaming, Penetration Testing, or an offensive mindset to anticipate attacker methodologies.
  • Advanced expertise with the MITRE ATT&CK framework and Detection-as-Code concepts.
  • Strong communication skills with an empathetic, collaborative approach to leading cross-functional teams and technical initiatives.

Aufgaben

  • Lead Detection Strategy: Define the long-term vision for detection engineering, aligning technical roadmaps with organizational risk profiles while standardizing the development lifecycle.
  • Engine & Rule Lifecycle Management: Architect, develop, maintain, and optimize high-fidelity detection rules for the SOC while expanding framework coverage against MITRE ATT&CK and Sigma standards.
  • Threat Intelligence Translation: Analyze Cyber Threat Intelligence (CTI) and translate complex TTPs into proactive, resilient detection logic.
  • Automation & Orchestration: Drive Detection-as-Code initiatives and engineer automated response playbooks to streamline incident response and minimize manual intervention.
  • Technical Mentorship & Escalation: Act as the primary escalation point for complex technical issues, mentoring junior detection engineers and SOC analysts.
  • Cross-Functional Collaboration: Partner closely with Incident Response and SOC teams to ensure deployment of context-rich detections that enable rapid threat containment.

Kenntnisse

Python
MITRE ATT&CK
Detection-as-Code
Leadership
SOC experience

Ausbildung

Bachelor's degree in Computer Science or related

Tools

Sigma
Automation frameworks

Jobbeschreibung

Job Description:
Job Description:
Cyber Detection Engineering Lead (d/f/m)
Role Overview

To support our Digital Security Team, Airbus Defence and Space division is seeking a highly skilled Leader Role for Detection Engineer (d/f/m) . This is a critical, high-impact role designed to actively protect our entire organization and our world-class products. This is a technical, hands‑on position that sits at the heart of our defense strategy. You will not simply respond to alerts; you will be the architect of our detection ecosystem-transforming threat intelligence into high-fidelity detection logic and bridging the gap between raw telemetry and actionable security intelligence.

Your location

Our site is just a stone's throw away from Munich, the beautiful capital of Bavaria. You are into sports and other outdoor activities? The Alps and Lake Starnberg are within an hour’s reach, offering a multitude of recreational options. Possible work locations include Manching, Taufkirchen/Ottobrunn, Immenstaad am Bodensee, and Ulm.

Our Benefits for You
  • Fair Compensation & Extras: Attractive remuneration and individual additional benefits, such as company pension schemes, mobility offers (e.g., bike leasing), or corporate discounts with partner companies in accordance with our current guidelines.
  • Time for You (and Your Loved Ones): 30 days of annual leave based on our collective agreement (35-hour week); work-life balance through flexible working hours (flextime), mobile working, part-time options, job sharing, and sabbatical opportunities.
  • Growth Made Easy: Excellent professional development opportunities and international, group-wide career perspectives.
  • Feel Good at Work: On-site company doctor; comprehensive health programs (sports courses, preventive care, etc.), canteen and cafeteria, and local childcare facilities at selected locations.
  • Diversity Connects: Work in a diverse environment with more than 140 nationalities, where exchange, mutual support, and inclusion are part of our DNA.
Your tasks and responsibilities
  • Lead Detection Strategy: Define the long‑term vision for detection engineering, aligning technical roadmaps with organizational risk profiles while standardizing the development lifecycle.
  • Engine & Rule Lifecycle Management: Architect, develop, maintain, and optimize high‑fidelity detection rules for the SOC while expanding framework coverage against MITRE ATT&CK® and Sigma standards.
  • Threat Intelligence Translation: Analyze Cyber Threat Intelligence (CTI) and translate complex TTPs into proactive, resilient detection logic.
  • Automation & Orchestration: Drive "Detection-as-Code" initiatives and engineer automated response playbooks to streamline incident response and minimize manual intervention.
  • Technical Mentorship & Escalation: Act as the primary escalation point for complex technical issues, mentoring junior detection engineers and SOC analysts.
  • Cross-Functional Collaboration: Partner closely with Incident Response and SOC teams to ensure deployment of context‑rich detections that enable rapid threat containment.
Desired Skills And Qualifications
  • Degree in Computer Science, Cybersecurity, Information Technology, or equivalent practical experience.
  • Proven track record in developing use cases and detection logic within a Security Operations Center (SOC) environment, including leadership or mentorship experience.
  • Strong proficiency in Python and hands‑on experience with automation frameworks to streamline operations.
  • Deep technical expertise in Windows and Linux operating systems, including OS internals, system logging, and telemetry analysis.
  • Practical background in Red Teaming, Penetration Testing, or an offensive mindset to anticipate attacker methodologies.
  • Advanced expertise with the MITRE ATT&CK® framework and Detection-as-Code concepts.
  • Strong communication skills with an empathetic, collaborative approach to leading cross‑functional teams and technical initiatives.

Not a 100% match? No worries! Airbus supports your personal growth with customized development solutions.

#MYCYM

This job requires an awareness of any potential compliance risks and a commitment to act with integrity, as the foundation for the Company’s success, reputation and sustainable growth.

Company:

Airbus Defence and Space GmbH

Employment Type:

Permanent

Experience Level:

Professional

Job Family:

Cyber Security

By submitting your CV or application you are consenting to Airbus using and storing information about you for monitoring purposes relating to your application or future employment. This information will only be used by Airbus.

Airbus is committed to achieving workforce diversity and creating an inclusive working environment. We welcome all applications irrespective of social and cultural background, age, gender, disability, sexual orientation or religious belief.

Airbus is, and always has been, committed to equal opportunities for all. As such, we will never ask for any type of monetary exchange in the frame of a recruitment process. Any impersonation of Airbus to do so should be

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Cyber Detection Engineering Lead (d/f/m)
Cyber Detection Engineering Lead (d/f/m)

Airbus • München

Vor Ort
EUR 90.000 - 130.000
Company pension
Bike leasing
Flexible hours
+6
Cyber Detection Engineering Lead (d/f/m)
Cyber Detection Engineering Lead (d/f/m)

Airbus • Immenstaad am Bodensee

Vor Ort
EUR 110.000 - 150.000
Fair compensation
Work-life balance
Professional development
+2
Cybersecurity Researcher (d/f/m)
Cybersecurity Researcher (d/f/m)

Airbus Defence and Space • München

Vor Ort
EUR 90.000 - 130.000
Attraktives Gehalt und Sonderzahlungen
30 Tage Urlaub
Weiterbildungsmöglichkeiten
+2
Cyber Security Test Engineer (d/f/m)
Cyber Security Test Engineer (d/f/m)

Airbus Defence and Space • München

Vor Ort
EUR 70.000 - 95.000
30 Tage Urlaub
Weiterbildungsmöglichkeiten
Betriebsarzt & Gesundheitsangebot
+3
Cybersecurity Researcher (d/f/m)
Cybersecurity Researcher (d/f/m)

Airbus • München

Vor Ort
EUR 80.000 - 105.000
Attraktives Gehalt und Sonderzahlungen
30 Tage Urlaub + Sonderurlaubstage
Weiterbildungsmöglichkeiten
+2
Cyber-Security-Engineer (d/m/w)
Cyber-Security-Engineer (d/m/w)

Airbus Defence and Space • Immenstaad am Bodensee

Vor Ort
EUR 70.000 - 90.000
Attraktive Vergütung
30 Tage Urlaub
Weiterbildungsmöglichkeiten
+2
Senior Cyber Security Specialist (D/F/M)
Senior Cyber Security Specialist (D/F/M)

Airbus • Deutschland

Hybrid
EUR 110.000 - 190.000
Mobiles Arbeiten
30 Tage Urlaub
Attraktive Vergütung
CYBER SECURITY GRC SENIOR CONSULTANT (D/F/M)
CYBER SECURITY GRC SENIOR CONSULTANT (D/F/M)

Airbus • Deutschland

Hybrid
EUR 70.000 - 90.000
Mobile working and flexible hours
30 days holiday
Employer-financed pension scheme
+1
Cyber-Security-Engineer (d/m/w)
Cyber-Security-Engineer (d/m/w)

Airbus • Deutschland

Vor Ort
EUR 70.000 - 100.000
Attraktive Vergütung
30 Tage Urlaub
Weiterbildungsmöglichkeiten
+7
Software Architect for Weapons Simulation (d/f/m)
Software Architect for Weapons Simulation (d/f/m)

Airbus Defence and Space • Manching

Vor Ort
EUR 60.000 - 80.000
Attractive salary and special payments
30 days paid vacation
Excellent upskilling opportunities
+2