Binalyze
CERT (Customer Experience Response Team)
DetectionEngineer
Neural analysis suggests this role is
optimal for Mid+ candidates.
“Detection Engineer at Binalyze. Skills: Detection engineering, Threat hunting, Cybersecurity investigations, Malware analysis. Build detection logic. Validate detection logic”
What You'll Achieve.
Measurable improvement in detection quality; Improve investigative signal; Faster validation of detections; Reduced friction during investigations; Demonstrable influence on detection roadmap
Industry & Context.
Root cause analysis
What They're Looking For.
Must Have
Bachelor's degree in Computer Science, Equivalent professional experience, Background in cybersecurity investigations, Detection engineering background, Threat hunting background, Security operations background, Hands-on experience developing detections, Hands-on experience validating detections, Hands-on experience tuning detections, Practical experience with YARA, Practical experience with Sigma, Practical experience with SQL, Practical experience with Python, Familiarity with reverse engineering, Familiarity with malware analysis, Familiarity with deep artifact analysis, Deep understanding of attacker techniques, Deep understanding of attacker tradecraft, Deep understanding of investigative workflows, Ability to translate technical findings
Nice to Have
DFIR background, SOC background, Threat detection background in enterprise, Experience contributing detections to platforms, Experience contributing detections to products, Familiarity with endpoint detection systems, Familiarity with log detection systems, Familiarity with telemetry detection systems, Experience in customer-facing security roles
What You'll Do.
Build detection logic
Validate detection logic
Sharpen detection logic
Pressure-test detections
Partner with Product Engineering
Push high-confidence detections
Push investigative insights
Turn attacker behavior into detection
How You'll Work.
Team & Collaboration
CERT team; Product Engineering; Solutions Consulting; Forward Deployed Security Architects
Communication Scope
Translate technical findings
Process & Methodology
Manage multiple concurrent detection workstreams
Full Job Description
[https://app.ashbyhq.com/api/images/user-content/2de35798-eaa0-40a0-aa54-2adb1fe38726/b186ebec-4bab-4234-a9c4-cf751ae65bb2/hero-detection-engineer.png] We’re looking for a Detection Engineer to join our Customer Experience, Research, and Training (CERT) team and take ownership of the hard part of detection engineering. You’ll be the technical specialist who takes detection logic out of the lab and proves it in the wild, validating, tuning, and operationalising detections inside real customer environments where the stakes are real. Working closely with the Lead Detection Engineer, you’ll ensure the detections we ship are investigation-ready, operationally effective, and grounded in how adversaries actually behave. If you’re excited by the challenge of turning real attacker behaviour into detections that actually catch them, and enjoy bridging the gap between research and real-world operations, we’d love to hear from you. + WHAT YOU’LL DO - Build, validate, and sharpen detection logic based on live investigative research and emerging threats - Pressure-test detections against real-world telemetry - Partner directly with Product Engineering to push high-confidence detections and investigative insights into Binalyze AIR, so the platform evolves at the speed of the threat landscape - Turn what we learn from attackers this week into detection capability next week + WHAT GOOD LOOKS LIKE By 3 months: Onboarded with CERT, Product, and Engineering; baseline understanding of Binalyze AIR detection coverage, customer telemetry patterns, and the current detection backlog; validated and tuned a first set of detections in for at least one product type; first structured feedback delivered to CERT on detection efficacy. By 6 months: Established subject-matter ownership of at least one attacker-technique area; consistent flow of validated detection improvements landing in Binalyze AIR; recognised technical escalation point during complex customer investigations; trusted partner to So
Applying for this Detection Engineer role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Ashby
- Ashby is a fast modern ATS — most applications take under 3 minutes.
- The resume parser is strong; verify parsed experience dates and job titles.
- Custom screening questions are often scored algorithmically — answer completely.
- Location field affects geo-based screening; use your actual metro area.
ANONYMOUS · UNFILTERED
What do employees actually say about Binalyze?
Real rants from real employees. Read before you apply.