Cyber Threat Detection Analyst / Engineer (f/m)

Bosch

Warszawa

Hybrid

PLN 180,000 - 240,000

Full time

5 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Hybrid work with flexible hours
Private medical care
Life insurance
Cafeteria system

Job summary

Bosch in Warsaw seeks a seasoned detection engineer to analyze CTI, emulate adversaries, and tune detection rules to strengthen security posture. You will collaborate with SOC and IR teams to streamline alerts and reduce false positives while applying MITRE ATT&CK mappings and automation with Python, PowerShell, or Bash.

The role requires deep CTI/SOC familiarity, strong English, and experience in automating detection workstreams within a multinational tech environment.

Qualifications

  • Professional Experience: Multiple years of experience in detection engineering/content development, threat hunting, or offensive security.
  • Technical Expertise: Deep expertise in the MITRE ATT&CK framework, mapping hypotheses to adversary TTPs.
  • Programming & Automation: Proficient in scripting/automation languages (Python, PowerShell, Bash) and query languages (SQL, Splunk SPL).
  • Certifications (Strong Plus): Offensive security certifications (e.g., OSCP, OSEP, CRTO, GXPN, GPEN, GCIH or GIAC).
  • Threat Intelligence & SOC: Familiarity with CTI/SOC Analyst concepts is a strong asset.
  • Soft Skills & Language: Analytical, structured mindset; fluent English; German or other European languages are a plus.

Responsibilities

  • Visibility & Detection Gap Analysis: Analyze CTI, attack surfaces, and detection landscape to identify gaps.
  • Adversary Emulation: Perform adversary emulation to validate and improve detection coverage.
  • Rule Development & Tuning: Develop, test, and tune high-fidelity detection rules and preventive controls.
  • SOC Collaboration: Work with SOC and incident response to streamline alert triage and reduce false positives.

Skills

Detection engineering
Threat hunting
Offensive security
MITRE ATT&CK
Python
PowerShell
Bash
SQL
Splunk SPL

Tools

MITRE ATT&CK framework

Job description

Company Description

At Bosch, we shape the future by inventing high-quality technologies and services that spark enthusiasm and enrich people’s lives. Our promise to our associates is rock-solid: we enjoy our work, we inspire each other, we provide equal growth opportunities for all team members, all roles are represented in all countries. We grow together!

  • Visibility & Detection Gap Analysis: Conduct analyses of Cyber Threat Intelligence (CTI), attack surfaces, and the current detection landscape to identify and prioritize visibility and detection gaps.
  • Adversary Emulation: Perform adversary emulation and simulations to validate and continuously improve detection coverage.
  • Rule Development & Tuning: Develop, test, and tune high-fidelity detection rules and preventive controls to strengthen the overall security posture.
  • SOC Collaboration: Collaborate with SOC and incident response teams to streamline alert triage, optimize playbooks, and reduce false positives.
Company Description

At Bosch, we shape the future by inventing high-quality technologies and services that spark enthusiasm and enrich people’s lives. Our promise to our associates is rock-solid: we enjoy our work, we inspire each other, we provide equal growth opportunities for all team members, all roles are represented in all countries. We grow together!

Job Description
  • Visibility & Detection Gap Analysis: Conduct analyses of Cyber Threat Intelligence (CTI), attack surfaces, and the current detection landscape to identify and prioritize visibility and detection gaps.
  • Adversary Emulation: Perform adversary emulation and simulations to validate and continuously improve detection coverage.
  • Rule Development & Tuning: Develop, test, and tune high-fidelity detection rules and preventive controls to strengthen the overall security posture.
  • SOC Collaboration: Collaborate with SOC and incident response teams to streamline alert triage, optimize playbooks, and reduce false positives.
Qualifications
  • Professional Experience: Multiple years of experience in detection engineering/content development, threat hunting, or offensive security.
  • Technical Expertise: Deep expertise in the MITRE ATT&CK® framework, from converting hypotheses into MITRE-mapped adversary TTPs to evaluating potential visibility and coverage gaps.
  • Programming & Automation: Proficient in scripting and automation languages (e.g., Python, PowerShell, Bash) and proven experience in most commonly used query languages (e.g., KQL, SQL, Splunk SPL).
  • Certifications (Strong Plus): Offensive security certifications (e.g., OSCP, OSEP, CRTO, GXPN, GPEN, GCIH or other relevant GIAC/offensive certifications).
  • Threat Intelligence & SOC: Familiarity with or formal training in Cyber Threat Intelligence (CTI) and/or SOC Analyst experience (e.g., Microsoft SC-200) is a strong asset
  • Soft Skills & Language: Analytical, structured, and investigative mindset; fluent English is a must (German or other European languages are a plus).
Additional Information

Bosch’s culture of innovation and digital transformation offers you a fantastic platform to grow your skills and enhance your network. We are dedicated to building a warm, open, transparent, and inclusive work environment for all.

Work LikeABosch:
  • Employment Contract
  • Competitive salary + annual bonus
  • Hybrid work with flexible working hours
  • Referral Bonus Program
  • Copyright costs for IT employees
Grow LikeABosch:
  • Complex environment of working, professional support and possibility to share knowledge and best practices
  • Ongoing development opportunities in a multinational environment
  • Broad access to professional trainings (incl. language courses), conferences and webinars
Live LikeABosch:
  • Private medical care and life insurance
  • Cafeteria System with multiple benefits (incl. MultiSport, shopping vouchers, cinema tickets, etc.)
  • Prepaid Lunch Card
  • Number of benefits for families (for instance summer camps for kids)
  • Non-working day on the 31st of December
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Threat Detection Analyst / Engineer (f/m)
Cyber Threat Detection Analyst / Engineer (f/m)

SmartRecruiters, Inc. • Warszawa

On-site
PLN 180,000 - 300,000
Hybrid work with flexible hours
Referral Bonus Program
Private medical care
+3
Cybersecurity Engineer (Cloud Malware Protection) (f/m)
Cybersecurity Engineer (Cloud Malware Protection) (f/m)

Bosch • Warszawa

On-site
PLN 180,000 - 280,000
Hybrid work
Referral Bonus Program
Private medical care
+3
Export Control Officer (f/m)
Export Control Officer (f/m)

Robert Bosch Group • Warszawa

On-site
PLN 90,000 - 130,000
Hybrid work with flexible hours
Annual bonus
Referral bonus program
+3
System Engineer (f/m)
System Engineer (f/m)

Bosch Group • Województwo łódzkie

Hybrid
PLN 180,000 - 240,000
Hybrid work with flexible hours
Private medical care and lifeinsurance
Cafeteria system with benefits
+2
System Engineer (f/m)
System Engineer (f/m)

Joinimagine • Łódź

Hybrid
PLN 180,000 - 240,000
Hybrid work with flexible hours
Private medical care
Life insurance
+2
Senior Stibo STEP Platform Specialist (f/m)
Senior Stibo STEP Platform Specialist (f/m)

Bosch Polska • Warszawa

Hybrid
PLN 180,000 - 240,000
Annual bonus
Hybrid work with flexible hours
Referral program
+1
TARIFF/CUSTOMS CLASSIFICATION SPECIALIST (f/m)
TARIFF/CUSTOMS CLASSIFICATION SPECIALIST (f/m)

Bosch • Warszawa

Hybrid
PLN 65,000 - 95,000
Hybrid work with flexible hours
Annual bonus
Private medical care
+3
Lead Product Manager for MyComputer (f/m)
Lead Product Manager for MyComputer (f/m)

SmartRecruiters, Inc. • Łódź

On-site
PLN 240,000 - 420,000
Competitive salary + annual bonus
Hybrid work with flexible hours
Referral Bonus Program
+1
Lead Product Manager for MyComputer (f/m)
Lead Product Manager for MyComputer (f/m)

Joinimagine • Łódź

Hybrid
PLN 200,000 - 320,000
Hybrid work with flexible hours
Annual bonus
Private medical care
+1
Global Lead of Financial Process Optimization & Digitalization - Bosch Mobility (f/m)
Global Lead of Financial Process Optimization & Digitalization - Bosch Mobility (f/m)

Bosch Group • Województwo mazowieckie

Hybrid
PLN 420,000 - 620,000
Hybrid work
Annual bonus
Referral bonus
+5