Staff Detection Engineer
full-time
lead
Posted 2 months ago
Apply Now
Stand out: build a proof-of-work pitch →
Free GitHub-based preview. Direct apply stays one click away.
Get weekly job alerts like this →Hiring for this role?
About this role
About Zscaler
Zscaler accelerates digital transformation to ensure our customers can be more agile, efficient, resilient, and secure. As an AI-forward enterprise , we are constantly pushing the envelope, leveraging the world’s largest security data lake to power our cloud-native Zero Trust Exchange platform. This innovation protects our customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location.
Here, impact in your role matters more than title and trust is built on results. We say, impact over activity. We seek innovators who actively use AI to amplify their impact and who thrive in an environment where we leverage intelligent systems to stay ahead of evolving threats. We believe in transparency and value constructive, honest debate —we’re focused on getting to the best ideas, faster. We build high-performing teams that can make an impact quickly and with high quality. To do this, we are building a culture of execution centered on customer obsession , collaboration, ownership, and accountability.
We value high-impact, high-accountability with a sense of urgency where you’re enabled to do your best work and embrace your potential. If you’re driven by purpose, thrive on solving complex challenges, and want to be part of the team that’s helping to secure the AI age, we invite you to bring your talents to Zscaler and help shape the future of cybersecurity.
Role
We are looking for a Staff Detection Engineer to join our team. This is a Hybrid (Pune, India) role, reporting to the Senior Manager in the Threat Hunting department. You will combine threat research and engineering expertise to build the next generation of detections across AWS and cloud infrastructures. By leveraging big data platforms like Hadoop and Athena, you will design scalable hunting logic and automated pipelines to defend our global footprint and enhance threat visibility.
What you’ll do (Role Expectations)
Combine threat research and engineering expertise to develop advanced detections and hunting logic using Python and AWS infrastructure
Design, scale, and maintain engineering projects, including GitLab pipelines and repeatable deployment steps to improve hunting efficiency
Develop YAML-based detections and SIGMA-like rule technologies while migrating existing hunting detections to next-generation systems
Utilize data platforms like Hadoop, Athena, and data lakes to monitor and test new intelligence sources for enhanced threat visibility
Independently write detections and playbooks while supporting operational demands, including weekend night shifts and on-call rotations
Who You Are (Success Profile)
You thrive in ambiguity. You're comfortable building the path as you walk it. You thrive in a dynamic environment, seeing ambiguity not as a hindrance, but as the raw material to build something meaningful.
You act like an owner. Your passion for the mission fuels your bias for action. You operate with integrity because you genuinely care about the outcome. True ownership involves leveraging dynamic range: the ability to navigate seamlessly between high-level strategy and hands-on execution.
You are a problem-solver. You love running towards the challenges because you are laser-focused on finding the solution, knowing that solving the hard problems delivers the biggest impact.
You are a high-trust collaborator. You are ambitious for the team, not just yourself. You embrace our challenge culture by giving and receiving ongoing feedback—knowing that candor delivered with clarity and respect is the truest form of teamwork and the fastest way to earn trust.
You are a learner. You have a true growth mindset and are obsessed with your own development, actively seeking feedback to become a better partner and a stronger teammate. You love what you do and you do it with purpose.
What We’re Looking for (Minimum Qualifications)
Foundational understanding of AI/ML technologies and experience leveraging, securing, or positioning AI-driven solutions to optimize outcomes within your functional domain
Proven experience in detection engineering, threat hunting, security operations, or malware analysis
Hands-on experience developing and implementing detection rules in SIEM tools such as Splunk, Microsoft Sentinel, or ElasticSearch
Deep familiarity with the MITRE ATT&CK framework and experience translating TTPs into actionable detection logic
Bachelor’s or graduate degree in Computer Science, Engineering, or a related discipline, or equivalent security industry experience, combined with the ability to work flexible schedules, including weekend night shifts, to meet global operational demands
What Will Make You Stand Out (Preferred Qualifications)
Experience leveraging AI/ML models, large language models (LLMs), or natural language processing (NLP) to automate threat intelligence synthesis, accelerate detection
Similar Jobs
Related searches:
Get jobs like this delivered weekly
Free AI jobs newsletter. No spam.