Detection Engineer

Atea

Luleå kommun

On-site

SEK 650,000 - 1,100,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Atea's Cyber Security Operations Center is seeking a Detection Engineer to develop, test and continuously improve detection content across SIEM platforms. You will translate threat intelligence, attacker techniques and customer needs into practical detections that are reliable and actionable.

You will work in a Detection as Code environment, collaborate with SOC, Incident Response, Threat Intelligence and Automation teams, and contribute to engineering pipelines.

Qualifications

  • Experience in cyber security or security operations.
  • Hands-on with SIEM platforms (e.g., Microsoft Sentinel).
  • Knowledge of attacker techniques and MITRE ATT&CK.

Responsibilities

  • Develop, test and improve detection content across SIEM and security platforms.
  • Translate threat intelligence and attacker techniques into detections.
  • Tune, validate and maintain detections for reliability and operational value.
  • Contribute to Detection as Code pipelines and best practices.
  • Collaborate with Security Operations, Incident Response and Threat Intelligence teams.
  • Identify detection gaps and participate in security exercises and incidents.

Skills

Cyber security experience
Security operations
Detection engineering

Education

Bachelor's degree in Information Technology / Information Security / Cyber Security / Data Science

Tools

Microsoft Sentinel
Splunk
EDR
NDR
SOAR
Sigma
YARA
Git
Terraform
Ansible

Job description

Build the detections that help stop tomorrow's cyber threats!

Are you interested in understanding how attackers operate and turning that knowledge into practical security capabilities?

As a Detection Engineer in Atea's Cyber Security Operations Center (CSOC), you will develop, test and improve detection content across SIEM and security platforms. You will work closely with Detection & Response specialists, Security Operations, Incident Response, Threat Intelligence and Automation Engineers to transform threat intelligence, attacker behaviour and customer needs into effective detection capabilities.

You will join a Security Operations Center that is experiencing strong growth and has ambitious goals for the future. We are a positive, collaborative and highly motivated team with a shared focus on continuous development, teamwork and delivering the best possible security outcomes for our customers.

Absout the role

As a Detection Engineer, you will be responsible for developing, testing and continuously improving detection content that helps protect our customers against emerging threats.

Your work will be driven by threat intelligence, customer requirements, attacker behaviours and frameworks such as MITRE ATT&CK. You will help ensure that detections are reliable, relevant and operationally valuable before they are released into production.

Detection engineering at Atea is built around a Detection as Code methodology. Detection content is developed, reviewed, tested, version controlled and deployed through structured engineering pipelines. This allows us to maintain high-quality detections while continuously improving and scaling our detection capabilities across customers and technologies.

This role is broader than the title might suggest. While Detection Engineering is at the core of the position, you will work across multiple areas of cyber security and develop an understanding of technologies, attack techniques and security operations. We are not looking for someone who knows everything from day one, but someone who is eager to learn, collaborate and continuously develop their expertise.

In this role, you will:

  • Develop, test and improve detection content across SIEM and security platforms.
  • Translate threat intelligence, attacker techniques and customer needs into effective detection capabilities.
  • Tune, validate and maintain detections to improve reliability and operational value.
  • Contribute to Detection as Code pipelines and detection engineering best practices.
  • Collaborate with Security Operations, Incident Response, Threat Intelligence and Automation teams to strengthen detection and response capabilities.
  • Identify detection gaps, contribute to security exercises and incidents, and share knowledge across the security community.
Who are you?

We believe you will enjoy this role if you are curious about how threats evolve, like solving technical challenges and are motivated by building capabilities that make a real difference.

You enjoy learning, sharing knowledge and working closely with others to solve complex security problems. You understand that strong detection engineering combines technical expertise with collaboration, testing and continuous improvement.

Must-have qualifications

  • Experience within cyber security, security operations, detection engineering or a related security discipline.
  • Experience with Microsoft Sentinel or other SIEM platforms.
  • Strong understanding of cloud security, attacker behaviour and frameworks such as MITRE ATT&CK.

Nice-to-have qualifications

  • Experience with scripting or automation, such as Python.
  • Experience with Splunk, EDR, NDR or SOAR technologies.
  • Experience with Detection as Code, Git, Terraform or Ansible.
  • Experience writing Sigma or YARA rules.
  • Relevant security certifications.

Education

  • Bachelor's degree in Information Technology, Information Security, Cyber Security, Data Science or a related field.
  • Relevant experience may compensate for formal education.
  • Requirements

Applicants must be citizens of Norway, Sweden or Denmark.

Why Atea?

Atea's Cyber Security Operations Center is in a phase of strong growth, with ambitious goals and a clear vision for the future.

You will join a highly motivated team that values collaboration, learning and continuous improvement. We believe the best security outcomes are created when talented people work together, share knowledge and challenge each other to grow.

As a Detection Engineer, you will have the opportunity to influence how we develop our detection capabilities, work with a wide range of security technologies and contribute directly to helping our customers respond to an evolving threat landscape.

At Atea, you will also benefit from:

  • A strong professional community within Security Operations, Incident Response, Threat Intelligence and Cyber Security.
  • Training, certifications and continuous learning opportunities.
  • Modern security platforms and technologies.
  • Opportunities for personal and professional development.
  • Competitive compensation and attractive benefits.

At Atea, we stand shoulder to shoulder with IT professionals. That means you will have experienced colleagues around you, opportunities to learn and the chance to provide security services that truly matter.

Contact and Information

Practical information

  • Employment type: Permanent

Interested?

This recruitment is handled exclusively by Atea. We kindly but firmly decline any contact from recruitment agencies, staffing agencies, or other suppliers of recruitment services.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Detection Engineer
Detection Engineer

Atea Sverige • Luleå kommun

On-site
SEK 650,000 - 900,000
Training & certifications
Professional development
Modern security platforms
+1
Detection Engineer – SIEM & Threat Detection
Detection Engineer – SIEM & Threat Detection

Atea Sverige • Luleå kommun

On-site
SEK 650,000 - 900,000
Training & certifications
Professional development
Modern security platforms
+1
Detection Engineer
Detection Engineer

SCIBER • Malmö kommun

On-site
SEK 600,000 - 800,000
Personal development opportunities
Collaborative work environment
Career growth
Cyber Security Solutions Engineer
Cyber Security Solutions Engineer

Detectify AB • Stockholms kommun

Hybrid
SEK 800,000 - 1,000,000
Hybrid work
Stockholm office
Cyber Defence Expert - Incident Management & Response
Cyber Defence Expert - Incident Management & Response

Electrolux Group • Stockholms kommun

Hybrid
SEK 900,000 - 1,500,000
Hybrid work flexibility
Senior Cloud Engineer
Senior Cloud Engineer

Detectify AB • Stockholms kommun

Hybrid
SEK 800,000 - 1,000,000
Data Engineer with strong Microsoft Fabric focus
Data Engineer with strong Microsoft Fabric focus

Atea Sverige • Hjo kommun

On-site
SEK 720,000 - 1,000,000
Security Analyst specializing in Operational Technology (OT)
Security Analyst specializing in Operational Technology (OT)

Orange Cyberdefense • Sweden

On-site
SEK 650,000 - 950,000
Information Security & IT Manager
Information Security & IT Manager

Detectify AB • Stockholms kommun

Hybrid
SEK 600,000 - 800,000
Security Engineer
Security Engineer

Nordic Choice Commercial Services AB • Stockholms kommun

Hybrid
SEK 550,000 - 750,000
Great employee discounts at all our hotels
Continuous skill enhancement opportunities
Vibrant work environment with social events