Stand out for this role — generate a tailored resume and cover letter in about a minute.
Bosch is seeking a Cyber Threat Detection Analyst/Engineer to strengthen its detection capabilities. The role focuses on CTI analysis, adversary emulation, and rule development to enhance security posture.
Qualified candidates will have strong experience in detection engineering, threat hunting, and offensive security, with proficiency in MITRE ATT&CK, Python, PowerShell, and SQL/KQL. The position offers hybrid work and opportunities for growth in a multinational team.
Full-time
At Bosch, we shape the future by inventing high-quality technologies and services that spark enthusiasm and enrich people’s lives. Our promise to our associates is rock-solid: we enjoy our work, we inspire each other, we provide equal growth opportunities for all team members, all roles are represented in all countries. We grow together!
Visibility & Detection Gap Analysis: Conduct analyses of Cyber Threat Intelligence (CTI), attack surfaces, and the current detection landscape to identify and prioritize visibility and detection gaps.
Adversary Emulation: Perform adversary emulation and simulations to validate and continuously improve detection coverage.
Rule Development & Tuning: Develop, test, and tune high-fidelity detection rules and preventive controls to strengthen the overall security posture.
SOC Collaboration: Collaborate with SOC and incident response teams to streamline alert triage, optimize playbooks, and reduce false positives.
Professional Experience: Multiple years of experience in detection engineering/content development, threat hunting, or offensive security.
Technical Expertise: Deep expertise in the MITRE ATT&CK® framework, from converting hypotheses into MITRE-mapped adversary TTPs to evaluating potential visibility and coverage gaps.
Programming & Automation: Proficient in scripting and automation languages (e.g., Python, PowerShell, Bash) and proven experience in most commonly used query languages (e.g., KQL, SQL, Splunk SPL).
Certifications (Strong Plus): Offensive security certifications (e.g., OSCP, OSEP, CRTO, GXPN, GPEN, GCIH or other relevant GIAC/offensive certifications).
Bosch’s culture of innovation and digital transformation offers you a fantastic platform to grow your skills and enhance your network. We are dedicated to building a warm, open, transparent, and inclusive work environment for all.
Grow LikeABosch:
By clicking the link above or any third-party link within this posting, you are leaving this site and going to a third-party website where the third-party website's terms and privacy policy apply