Job Description:
In order to support our international Incident Response Team, Airbus Defence and Space is looking for a
Detection & Automation Engineer (d/f/m)either in Ottobrunn/Taufkirchen, Ulm or Manching - with flexible working policy.
A mission critical part for us in order to secure our world-class business. This is a technical, hands-on role that will work with a variety of security tools and technologies protecting our whole enterprise.
The successful candidate will be responsible for managing the entire lifecycle of our detection rules repository and SOC automation stack. You will be responsible for technical evolution of our SOC blueprint and managing enhancement projects to integrate new features and solutions into our Security Operation Centers (SOC).
Your benefitsAttractive salary and special payments
30 days holidays and extra days-off for special occasions
Excellent upskilling opportunities and great international, group wide development prospects
Special benefits: employer-funded pension, employee stock options, discounted car leasing, special conditions for insurances, subsidies for public transport, employee benefits at cooperating companies
On-site-facilities: Kindergarten close to the site, medical officer for check-ups and other health-related services, canteen and cafeteria, gym
Compatibility of family & work (job sharing, part-time models, flexible working hours, individual timeout)
Working in a diverse environment, with more than 140 nationalities, where every voice is heard
Your tasks and responsibilitiesAssist in the end to end development, normalization and fine-tuning of detection rules and alerts for monitoring security systems (e.g., SIEM, EDR, including telemetry and response procedures).
Work closely with other security teams (e.g., red team, application security) to improve threat detection and response strategies.
Collaboration in the improvement of our CTI Processes and tools.
Support threat intelligence operationalization efforts.
Participate actively in the development and implementation of tools and artifacts to support the Security Operations activities, within the scope of the Detection Engineering Team.
Supporting the definition and execution of Purple Teaming activities, to improve the Cyber Detection and Response capabilities.
Participate in supporting the Incident Response Team in investigation and analysis of potential security incidents and vulnerabilities.
Desired skills and qualificationsWorking experience in Cyber Security Operations
Proven experience in Detection Engineering and Automation
Understanding of security tools such as EDR, Windows Logging, firewalls, intrusion detection/prevention systems (IDS/IPS)
Deep knowledge of Operating System insights (Windows/Linux)
Knowledge of security frameworks (e.g., MITRE ATT&CK) and common attack vectors
Experience with Python is a requirement, PowerShell/Bash are a plus
Analytical Skills: Ability to investigate and analyze security events
Fluent written and spoken English and German are a must
Not a 100 match? No worries! Airbus supports your personal growth with customized development solutions.
Take your career to a new level and apply online now!
This job requires an awareness of any potential compliance risks and a commitment to act with integrity, as the foundation for the Company’s success, reputation and sustainable growth.
Company:
Airbus Defence and Space GmbHEmployment Type:
Permanent-------
Experience Level:
ProfessionalJob Family:
Cyber Security By submitting your CV or application you are consenting to Airbus using and storing information about you for monitoring purposes relating to your application or future employment. This information will only be used by Airbus.
Airbus is committed to achieving workforce diversity and creating an inclusive working environment. We welcome all applications irrespective of social and cultural background, age, gender, disability, sexual orientation or religious belief.
Airbus is, and always has been, committed to equal opportunities for all. As such, we will never ask for any type of monetary exchange in the frame of a recruitment process. Any impersonation of Airbus to do so should be reported to emsom&64;airbus.com.
At Airbus, we support you to work, connect and collaborate more easily and flexibly. Wherever possible, we foster flexible working arrangements to stimulate innovative thinking.