← Back to opportunities

Lead - Platform Engineer

📍 Location
kuala lumpur
⏰ Job Type
Full-time
📅 Posted
June 06, 2026

About the Role

Key Responsibilities

  • Threat-Informed Detection Engineering
    • Convert Red Team and adversary simulation insights into formal detection enhancements
    • Map detections to MITRE ATT&CK, define telemetry requirements, and validate log sources & enrichments (ASIM-aligned where applicable)
    • Perform post-engagement gap analysis, prioritize fixes in a transparent detection backlog
    • Ensure each finding results in:
      • Improved/validated use case (KQL logic + entity mapping + suppression)
      • Updated triage guidance and analyst notes
      • Logic Apps playbook enhancement (if applicable)
      • Re-testing with Red Team
  • Full Use Case Development & Improvement Lifecycle
    • Design: data requirements, ASIM mapping, entity model, severity, rationale, ATT&CK coverage
    • Build: KQL logic, enrichment (watchlists/UEBA/context), suppression thresholds, incident settings
    • Test: ...

Ready to Join Through a Referral?

Apply now and get connected directly with the hiring team

Apply for this Position