Senior Threat Detection Engineer

2 days ago


Riyadh, Ar Riyāḑ, Saudi Arabia COGNNA Full time

As a Senior Threat Detection Engineer at COGNNA, you'll design high-impact detection strategies, build powerful automation, and elevate SOC operations to a world-class standard. You'll also mentor rising cyber talent and collaborate with teams across threat intel, incident response, and platform engineering.

Advanced Threat Detection Engineering

  • Build high-fidelity correlation rules and behavioral detections within the COGNNA security platforms.
  • Translate adversary TTPs (MITRE ATT&CK), threat intel, and vulnerability data into actionable logic.
  • Identify detection gaps and introduce new data sources to cover evolving threat landscapes.
  • Automate detection testing and maintain detection quality over time.

Platform Engineering & Optimization

  • Lead architecture and optimization of XDR, SIEM, and SOC tech stacks for scale and resilience.
  • Streamline log ingestion pipelines — from parsing to normalization and enrichment.
  • Build scripts and automations (Python, PowerShell) to enhance SOC efficiency.
  • Integrate tools across the SOC stack to enable seamless workflows and response.

Threat Hunting & Incident Response

  • Collaborate with intel and IR teams to enrich detection use cases and support threat hunts.
  • Provide Tier-3+ support for incident investigations and post-mortem analysis.

Mentorship & SOC Maturity

  • Mentor junior engineers, review detection logic, and provide hands-on training.
  • Improve SOC playbooks, SOPs, and detection engineering workflows.
  • Stay updated on global and regional threats — and evolve detection accordingly.
  • Ensure compliance alignment (e.g., NCA ECC, SAMA CSF).
Education
  • Bachelor's in Computer Science, Cybersecurity, or related field.
Experience
  • 4+ years in Threat Detection, SOC Engineering, or Advanced SecOps.
  • Hands-on expertise in developing and maintaining complex detection use cases.
  • Strong understanding of attacker behavior, IR fundamentals, and digital forensics.
Technical Skills (You're a Power User)
  • SIEM: Expert in SIEM queries (SPL, KQL, Lucene), rule tuning, UEBA, and scaling.
  • EDR: Deep knowledge of EDR tools and endpoint detection tactics.
  • Network Security: Pro at packet analysis (Wireshark), IDS/IPS, and NetFlow.
  • Scripting: Advanced skills in Python and/or PowerShell for automation and integration.
  • OS Internals: Mastery of Windows/Linux/macOS logging, artifacts, and forensic value.
  • Threat Intelligence: Skilled in turning threat intel into real-time detection logic.
  • Cloud Security: Strong command of monitoring IaaS/PaaS/SaaS environments.
Certifications (Highly Preferred)
  • SANS GIAC (GDAT, GMON, GCIA, GCTI, GCIH)
  • Offsec (OSDA)
  • INE (eCTHP, eCIR)
  • (ISC)² CISSP, CSSLP
Soft Skills
  • Exceptional analytical thinking and creative problem-solving.
  • Excellent communication (English & Arabic), including technical reporting.
  • Strong mentorship abilities and a collaborative spirit.
  • Self-motivated, focused, and passionate about cyber defense.
  • Capable of juggling priorities under high-pressure situations.

Impact that Matters – Build products that shape the future of cybersecurity and protect organizations globally.

On-Site Collaboration – Be at the heart of innovation in our Riyadh office, working side by side with passionate experts.

Continuous Growth – Access to certifications, trainings, and opportunities to sharpen your expertise.

Ownership Mindset – Benefit from our ESOP program and grow with COGNNA's success.

Culture of Trust – We empower talent, encourage ownership, and celebrate real outcomes.



  • Riyadh, Ar Riyāḑ, Saudi Arabia COGNNA Full time

    As a Senior Threat Detection Engineer at COGNNA, you'll design high-impact detection strategies, build powerful automation, and elevate SOC operations to a world-class standard. You'll also mentor rising cyber talent and collaborate with teams across threat intel, incident response, and platform engineering. Advanced Threat Detection EngineeringBuild...


  • Riyadh, Ar Riyāḑ, Saudi Arabia HALA Full time $1,000,000 - $1,500,000 per year

    Who Are WeHALA is a leading fintech player in the MENAP region that aims to redefine financial services and build the future bank of SMEs. HALA aims at empowering SMEs to start, run, and grow their businesses by providing them with cutting-edge financial and technological tools.HALA currently holds multiple entities in UAE, Saudi Arabia and Egypt (including...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Lucid Motors Full time

    Leading the future in luxury electric and mobility At Lucid, we set out to introduce the most captivating, luxury electric vehicles that elevate the human experience and transcend the perceived limitations of space, performance, and intelligence. Vehicles that are intuitive, liberating, and designed for the future of mobility.   We plan to lead in this new...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Lucid Motors Middle East Full time

    Leading the future in luxury electric and mobilityAt Lucid, we set out to introduce the most captivating, luxury electric vehicles that elevate the human experience and transcend the perceived limitations of space, performance, and intelligence. Vehicles that are intuitive, liberating, and designed for the future of mobility.We plan to lead in this new era...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Rackspace Technology Full time

    Rackspace Technology is a leading provider of expertise and managed services across all the major public and private cloud technologies. We've evolved Fanatical Support to encompass the entire customer journey — providing Fanatical Experience from first consultation to daily operations. Our passionate experts combine the power of proactive, always-on...


  • Riyadh, Ar Riyāḑ, Saudi Arabia 2P Perfect Presentation Full time

    We are looking for a highly skilledCybersecurity Threat Detection Specialistto join our team and play a key role in identifying, analyzing, and responding to cyber threats across our environment.Key Responsibilities:Collect and analyze incident data from multiple sources to detect threats and generate detailed reports.Analyze confirmed threats across the...

  • Senior Manager

    1 week ago


    Riyadh, Ar Riyāḑ, Saudi Arabia D360 Bank Full time 120,000 - 180,000 per year

    Job DescriptionThe role is responsible for overseeing cyber monitoring and response activities, managing major incidents, and coordinating emergency response efforts that necessitate thorough investigation. This role involves analysing and responding to cyber-attacks and data breaches, as well as conducting internal investigations to identify...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Safe Decision Co. Full time 120,000 - 180,000 per year

    Summary: The Network and Security Engineer is responsible for safeguarding the organization's network infrastructure and sensitive data by managing, monitoring, and optimizing robust security systems. This role involves continuous monitoring of network security, identifying potential vulnerabilities, and responding to threats in real time. The engineer will...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Rasēd | راصد Full time 100,000 - 120,000 per year

    Company DescriptionRasēd is pioneering solutions in digital fraud detection, prevention, and risk management to protect financial institutions, fintech companies, and payment service providers from evolving cyber fraud and financial crime. Using cutting-edge technologies such as device intelligence, AI-powered fraud detection, behavioral biometrics, and...

  • Senior Specialist

    2 days ago


    Riyadh, Ar Riyāḑ, Saudi Arabia Qiddiya Investment Company Full time

    Qiddiya Investment Company is looking for a highly skilled Senior Specialist - Corporate IT Security Operation to join our innovative team. In this critical role, you will oversee our corporate IT security operations, ensuring the protection of our digital resources and infrastructure against cyber threats. You will work actively to maintain the...