Detection Engineer II

Vectra AI

Bengaluru

On-site

INR 1,000,000 - 1,800,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health insurance
Life insurance
Retirement plan
Wellbeing services
Time off
Employee recognition

Job summary

Vectra AI is seeking an experienced Threat Detection Engineer to extend our AI-driven threat detection capabilities. You will work with data scientists and security researchers to develop Suricata-based signatures and detection logic, analyzing network traffic, PCAPs, and cloud logs to identify evolving threats.

The role emphasizes collaboration, innovation, and hands-on security engineering. You will contribute to threat hunting, deploy detections, and help scale our Attack Signal platform

Qualifications

  • 4-6 years of cybersecurity experience, focused on threat detection/response.
  • Expertise in writing signatures with Suricata.
  • Strong communication and teamwork abilities.
  • Knowledge of OS, networking, logging, cloud and SaaS environments.
  • Familiarity with attacker tools (Metasploit, Cobalt Strike).
  • Experience with PCAPs, flow logs, and cloud logs.

Responsibilities

  • Analyze network traffic to identify threat patterns.
  • Develop and maintain network security signatures in Suricata.
  • Use offensive security tools to simulate attacks and generate traffic.
  • Collaborate with data scientists and security researchers to improve detection.
  • Monitor detections and adjust rules for better accuracy.
  • Contribute to threat hunting by identifying new TTPs.
  • Participate in incident response activities as required.

Skills

Suricata signatures
Threat detection
OS & networking knowledge
Metasploit / Cobalt Strike
Scripting: Python / Bash
Git / version control
Team collaboration & communication

Tools

Sigma
YARA-L
Wireshark
Git

Job description

Vectra® is the leader in AI-driven threat detection and response for hybrid and multi-cloud enterprises. The Vectra AI Platform delivers integrated signal across public cloud, SaaS, identity, and data center networks in a single platform. Powered by patented Attack Signal Intelligence, it empowers security teams to rapidly prioritize, investigate and respond to the most advanced cyber-attacks. With 35 patents in AI-driven threat detection and the most vendor references in MITRE D3FEND, organizations worldwide rely on the Vectra AI to move at the speed and scale of hybrid attackers. For more information, visit www.vectra.ai.

Position Overview

We are seeking an experienced Threat Detection Engineer to extend Vectra's detection capabilities in partnership with Data Scientists and Security Researchers who are developing our AI-driven Attack Signal.

Vectra's Attack Signal Production Group is responsible for building Vectra's core threat detection and prioritization technology, leveraging AI and other methods to alert customers to critical threats in their network and cloud environments. Threat Detection Engineers work closely with Data Scientists who are developing AI models, and Security Researchers who are researching the threat landscape and assisting modeling efforts. Detection Engineers focused on Network attack behaviors complement Vectra's coverage by building Suricata signatures, specifying detection logic in python, and utilizing other available methods.

Responsibilities and Accountabilities
  • Analyze network traffic to identify and document threat patterns.
  • Develop and maintain network-based security signatures in Suricata.
  • Use offensive security tools and techniques to simulate attacks and generate sample network traffic.
  • Collaborate with data scientists and security researchers to support detection efforts and improve detection accuracy.
  • Continuously monitor and assess the effectiveness of network detections, making adjustments as needed.
  • Contribute to threat hunting efforts by identifying new tactics, techniques, and procedures (TTPs) used by attackers.
  • Participate in incident response activities as required.
Attitudes and Behaviors
  • Focus on impact and results; work on the right things and get them done
  • Drive and resourcefulness to persevere and overcome obstacles achieving challenging goals
  • Track record of successfully solving complex and ambiguous problems
  • High integrity and ability to positively collaborate with others
Qualifications and Experience
  • 4-6 years of cybersecurity experience (preferably focused on threat detection and response)
  • Expertise in writing signatures with Suricata
  • Excellent people, technical and communication skills, and the ability to work collaboratively in a team environment.
  • Advanced knowledge of common operating systems, services, networking protocols, logging, cloud and SaaS environments
  • Knowledge of attacker techniques and tools (e.g., Metasploit, Cobalt Strike), and prior operational experience leveraging threat intelligence to detect and respond to adversaries
  • Familiarity with data utilized by detection technology, for example PCAPs, flow logs, cloud logs, etc.
  • Proficiency with related languages and frameworks, e.g. bash, python, Sigma, YARA-L, Linux/Unix, Wireshark, etc.
  • Scripting, software development, engineering, and/or devops experience; experience with a source control system, preferably Git
  • Optional certifications - OSCP, GCIA, GCDA, GSEC

Vectra provides a comprehensive total rewards package that supports the financial, physical, mental and overall health of our employees and their families. Compensation includes competitive base pay, incentive plan eligibility, and participation in the employee equity plan (stock options). Specific benefits offered varies by location, but commonly include health care insurance, income protection / life insurance, access to retirement savings plans, behavioral & emotional wellness services, generous time away from work, and a comprehensive employee recognition program.

Vectra is committed to creating a diverse environment and is proud to be an equal opportunity employer.

We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Detection Engineer - Cloud
Senior Detection Engineer - Cloud

Vectra AI, Inc. • Bengaluru

On-site
INR 900,000 - 1,400,000
Health insurance
Life insurance
Retirement savings
+2
Detection Engineer
Detection Engineer

Terralogic • Bengaluru

On-site
INR 1,200,000 - 1,600,000
AI Detection Engineer - SOC Analyst IV
AI Detection Engineer - SOC Analyst IV

Ten Eleven Ventures • Bengaluru

On-site
INR 2,000,000 - 3,000,000
Customer Success Manager
Customer Success Manager

Earn Modes • Bengaluru

On-site
INR 1,800,000 - 3,000,000
Health care insurance
Income protection/ life insurance
Retirement savings plan
+3
Senior / Principal Detection Engineer Overview
Senior / Principal Detection Engineer Overview

Blumberg Capital Company • Pune District

On-site
INR 1,500,000 - 2,000,000
Competitive compensation package including equity
Opportunity to shape autonomous cyber defense
AI Detection Engineer - SOC Analyst IV
AI Detection Engineer - SOC Analyst IV

Medium • Bengaluru

On-site
INR 2,500,000 - 4,500,000
Senior Malware Detection Engineer
Senior Malware Detection Engineer

SentinelOne • India

On-site
INR 2,500,000 - 5,000,000
RSUs
ESPP
Competitive leave benefits
+7
Security Operations Engineer
Security Operations Engineer

Pure Storage India Pvt Ltd • Bengaluru

On-site
INR 2,500,000 - 4,500,000
Senior Detection Engineer
Senior Detection Engineer

Zscaler, Inc. • Pune District

Hybrid
INR 3,500,000 - 6,500,000
Senior Detection Engineer
Senior Detection Engineer

Zscaler • Pune District

Hybrid
INR 1,800,000 - 3,200,000
Health plans
Time off plans
Parental leave options
+2