Relomote
Remote JobsRelocation Jobs
Add companySaved
Relomote

Relomote is a job board for remote, hybrid, and relocation jobs — every listing AI-classified for the countries it actually hires from, or the visa and relocation support it offers.

LinkedInCrunchbase

Remote jobs by category

  • Remote Engineering & Development jobs
  • Remote Customer Support jobs
  • Remote Design jobs
  • Remote Marketing jobs
  • Remote Sales jobs
  • Remote Product jobs
  • Remote Data & Analytics jobs
  • Remote People & Talent jobs
  • Remote Writing & Content Creation jobs
  • Remote Finance jobs
  • Remote Legal & Compliance jobs
  • Remote Operations & Admin jobs
  • Remote Data Entry jobs
  • Remote Virtual Assistant jobs
  • Remote Education/Training jobs
  • Remote Healthcare/Clinical jobs
  • Remote Other jobs

Remote jobs by location

  • Work from anywhere jobs
  • Remote jobs in Africa
  • Remote jobs in Asia
  • Remote jobs in Europe
  • Remote jobs in Latin America
  • Remote jobs in Middle East
  • Remote jobs in North America
  • Remote jobs in Oceania
  • All remote jobs →

Relocation & visa sponsorship

  • Visa sponsorship jobs
  • Relocation package jobs
  • Relocate to Europe
  • Relocate to Germany
  • Relocate to Netherlands
  • Relocate to Spain
  • Relocate to Portugal
  • Relocate to Greece
  • Relocate to United Kingdom
  • Relocate to Canada
  • Relocate to Australia
  • Relocate to Sweden
  • Relocate to Switzerland
  • Relocate to Japan
  • Relocate to United Arab Emirates
  • All relocation jobs →

© 2026 RelomoteAboutPrivacyTerms

Contact [email protected] · Built by Mahmoud

Relomote
Remote JobsRelocation Jobs
Add companySaved
NCC Group logo

Detection Engineer

NCC Group
Posted Jun 17, 2026, 8:40 AM UTC
🇬🇧United Kingdom🏢Hybrid📁Engineering & Development
Is this job info correct?

NCC Group is looking for a Detection Engineer to join the Detection Engineering team. The role will focus on developing, maintaining, and improving Splunk-based security detections across cloud, infrastructure, and custom log sources. The successful candidate will help turn security risks, threat models, assurance requirements, and log sources into practical detections that can be deployed, tuned, and documented. Key Responsibilities Develop and maintain detections using Splunk SPL. Analyse logs from cloud, infrastructure, application, gateway, Linux, SSH, CDN, vulnerability management, and audit sources. Create detections for areas such as: cloud security monitoring and cloud control-plane activity, infrastructure, platform, and access-related security events, bespoke assurance use cases based on customer-specific log sources, suspicious or anomalous activity identified through threat models, security testing. Review existing detection coverage and identify gaps. Assess new log sources and define detection use cases. Map detections to MITRE ATT&CK, risk scenarios, and assurance requirements where relevant. Tune detections to reduce false positives and improve analyst usability. Document detection purpose, logic, alerting criteria, data source, MITRE mapping, false positives, and investigation guidance. Support SOC analysts with alert context and investigation advice. Skills, Knowledge & Expertise Candidates do not need to meet every requirement, but should have experience in some of the following: Splunk SPL or similar query language. Security detection engineering, SIEM engineering, threat hunting, or security monitoring. Cloud audit logs, especially AWS; GCP or OCI experience is also useful. MITRE ATT&CK and common attacker behaviours. Kubernetes or container security monitoring. Cloud security concepts such as IAM, KMS, security groups, route tables, ACLs, object storage, and service accounts. Use of allowlists, thresholds, baselines, aggregation, and anomaly-style detection logic. Regex and basic scripting, e.g. Python, Bash, or PowerShell. Documentation using Jira, JSM, Confluence, or similar tools. Desirable Experience: Experience with Splunk Enterprise Security and Splunk Security Essentials. Experience writing or tuning scheduled alerts.. Experience reviewing threat models, security testing outputs, or assurance requirements. Experience using a detection as code deployment pipeline. Job Benefits Flexible Working : Balance your work and personal life with our flexible working options. Generous Holiday Allowance : Enjoy 25 days of holiday, plus bank holidays, with the option to buy up to 5 additional days of annual leave. Medicash & Critical Illness Scheme Financial & Investment Benefits : Enjoy peace of mind with our Pension, Life Assurance, and Share Save Scheme. Community & Volunteering Programmes : Make a difference in your community with our volunteering opportunities. Green Car Scheme: Drive green and save money with our eco-friendly car scheme. Cycle Schem e: Stay fit and healthy with our cycle-to-work scheme. Special Time Off : Take time off for those big moments in life, like getting married/entering into a civil partnership, becoming a grandparent, and welcoming home a new pet. Family Planning : Benefit from our generous maternity and paternity leave, as well as time off and support for those undergoing fertility treatments.

Similar jobs

Similar jobs

Samsara logo

Senior Software Engineer - Safety Detection Precision

Samsara

🇬🇧United KingdomJun 23, 2026, 7:00 PM UTC
NCC Group logo

AD - Global Detection Engineering

NCC Group

🇬🇧United KingdomJun 15, 2026, 8:24 PM UTC
NCC Group logo

Associate Director - Global Detection Engineering

NCC Group

🇬🇧United KingdomJun 15, 2026, 8:24 PM UTC
Binalyze logo

Detection Engineer

Binalyze

🌍Estonia, Turkey, United KingdomJun 8, 2026, 9:16 PM UTC
Doxy logo

Security Engineer, Detection & Response

Doxy

🇬🇧United KingdomMay 27, 2026, 10:26 PM UTC
WRITER logo

Security engineer, detection and response (UK)

WRITER

🇬🇧United KingdomMay 27, 2026, 7:35 PM UTC