An application made for this job — a tailored resume and cover letter that speak straight to the posting.
Bosch is seeking a Cyber Threat Detection Analyst / Engineer (f/m) for a full-time, hybrid role. You will analyze CTI, identify detection gaps, emulate adversaries, and develop high-fidelity rules to strengthen security coverage.
Collaborate with SOC and incident response, apply MITRE ATT&CK, and automate with Python, PowerShell, and SQL/KQL. Fluent English required; German or other languages are a plus. Employment contract with benefits.
At Bosch, we shape the future by inventing high-quality technologies and services that spark enthusiasm and enrich people’s lives. Our promise to our associates is rock-solid: we enjoy our work, we inspire each other, we provide equal growth opportunities for all team members, all roles are represented in all countries. We grow together!
Visibility & Detection Gap Analysis: Conduct analyses of Cyber Threat Intelligence (CTI), attack surfaces, and the current detection landscape to identify and prioritize visibility and detection gaps.
Adversary Emulation: Perform adversary emulation and simulations to validate and continuously improve detection coverage.
Rule Development & Tuning: Develop, test, and tune high-fidelity detection rules and preventive controls to strengthen the overall security posture.
SOC Collaboration: Collaborate with SOC and incident response teams to streamline alert triage, optimize playbooks, and reduce false positives.
Professional Experience: Multiple years of experience in detection engineering/content development, threat hunting, or offensive security.
Technical Expertise: Deep expertise in the MITRE ATT&CK® framework, from converting hypotheses into MITRE-mapped adversary TTPs to evaluating potential visibility and coverage gaps.
Programming & Automation: Proficient in scripting and automation languages (e.g., Python, PowerShell, Bash) and proven experience in most commonly used query languages (e.g., KQL, SQL, Splunk SPL).
Certifications (Strong Plus): Offensive security certifications (e.g., OSCP, OSEP, CRTO, GXPN, GPEN, GCIH or other relevant GIAC/offensive certifications).
Bosch’s culture of innovation and digital transformation offers you a fantastic platform to grow your skills and enhance your network. We are dedicated to building a warm, open, transparent, and inclusive work environment for all.
Grow LikeABosch:
By clicking the link above or any third-party link within this posting, you are leaving this site and going to a third-party website where the third-party website's terms and privacy policy apply