Haleon
DetectionEngineer
Neural analysis suggests this role is
optimal for Senior candidates.
“Detection Engineer at Haleon. Skills: Detection engineering, Cyber security, SIEM, EDR. Design detection rules. Develop detection rules”
What You'll Achieve.
Reduce false positives; Improve signal quality; Ensure threats are detected quickly; Ensure threats are detected accurately
Industry & Context.
Analytical skills; Problem-solving skills
What They're Looking For.
Must Have
Three years' experience in security operations, Three years' experience in detection engineering, Three years' experience in threat hunting, Understanding of log sources, Hands-on experience with SIEM platforms, Familiarity with EDR/XDR tools
Nice to Have
Bachelor's degree in Computer Science, Bachelor's degree in Cyber Security, Equivalent experience to Bachelor's degree, Analytical and problem-solving skills, Knowledge of query languages, Understanding of attacker TTPs, Experience with MITRE ATT&CK framework, Attention to detail, Quality of detection logic, Ability to balance detection fidelity, Ability to balance operational efficiency, Effective communication skills, Effective collaboration skills, Experience with scripting, Experience with automation, Knowledge of cloud security monitoring, Familiarity with detection engineering methodologies, Familiarity with detection-as-code
What You'll Do.
Design detection rules
Develop detection rules
Maintain detection rules
Identify suspicious activity
Identify detection opportunities
Improve detection coverage
Reduce false positives
Improve signal quality
Collaborate with analysts
Validate detection logic
Refine detection logic
Translate threat intelligence
Create detection analytics
Develop detection-as-code practices
Maintain detection-as-code practices
Support incident response
Create rapid detections
Map detections to frameworks
Recommend improvements
Ensure threats are detected
How You'll Work.
Team & Collaboration
Security operations analysts; Security Operations teams; Threat Intelligence teams; Incident Response teams
Communication Scope
Effective communication
Process & Methodology
Detection-as-code practices
Full Job Description
Welcome to Haleon. We’re a purpose-driven, world-class consumer company putting everyday health in the hands of millions. In just three years since our launch, we’ve grown, evolved and are now entering an exciting new chapter – one filled with bold ambitions and enormous opportunity. Our trusted portfolio of brands – including Sensodyne®, Panadol®, Advil®, Voltaren®, Theraflu®, Otrivin®, and Centrum® – lead in resilient and growing categories. What sets us apart is our unique blend of deep human understanding and trusted science. Now it’s time to fully realise the full potential of our business and our people. We do this through our Win as One strategy. It puts our purpose – to deliver better everyday health with humanity – at the heart of everything we do. It unites us, inspires us, and challenges us to be better every day, driven by our agile, performance-focused culture. _**About the role**_ This position is critical to protecting Haleon’s corporate assets and managing its day-to-day operational cyber security defences. It involves the design, development and optimisation of the company’s detection capabilities in order to identify cyber threats at the earliest opportunity. It requires the building of high-quality detection logic and the reduction of false positives to strengthen overall security posture. _**Role Responsibilities**_ * Design, develop, and maintain detection rules and use cases across SIEM, EDR, and other security platforms. * Analyse logs and telemetry to identify suspicious activity and detection opportunities. * Continuously improve detection coverage based on emerging threats and intelligence. * Tune and optimise alerts to reduce false positives and improve signal quality. * Collaborate with security operations analysts to validate and refine detection logic. * Translate threat intelligence into actionable detection rules and analytics. * Develop and maintain detection-as-code practices, including version control and testing. * Support inciden
Applying for this Detection Engineer role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Workday
- Workday has a multi-step form — save your progress after every section.
- "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
- Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
- Job requisition numbers are useful when following up with HR by email.
ANONYMOUS · UNFILTERED
What do employees actually say about Haleon?
Real rants from real employees. Read before you apply.