xelys jobs xelys jobs

Sr. Detection Engineer - Logflow - Security Lake

Colossus Technologies Group

full-remoteseniorpermanentsecuritybackend United States 8 days ago via LinkedIn

See how well this job matches your profile

Sign up to get an AI match score and generate a tailored application in seconds.

Get your match score

Tags

Security TelemetryDetection EngineeringLog IngestionLog NormalizationDetection TuningSIEMSecurity AnalyticsSQLPythonDetection-as-Code

About the role

Role Overview

Senior Detection Engineer for LogFlow (Security Lake) in the Detection Engineering / Security Data Platform team. You will design and build detections that run on top of large-scale security log pipelines, working directly with raw security telemetry and shaping how detection-ready data is ingested and normalized.

Responsibilities

  • Design and build detections on top of large-scale security log pipelines
  • Work with raw security telemetry (e.g., cloud logs, audit logs, infra logs, identity logs)
  • Define normalization and enrichment logic to make detections reliable and portable
  • Author and tune detection logic to balance signal quality vs. noise (false positives)
  • Partner with ingestion and platform engineers to improve log quality at the source
  • Help shape how the Security Lake stores, queries, and exposes data for detection use cases

Requirements

  • 5+ years in detection engineering, security analytics, or security data engineering
  • Hands-on experience writing detections on log-based security data
  • Deep familiarity with security telemetry (cloud audit logs, identity logs, infra logs, EDR, network, etc.)
  • Understanding of tradeoffs between normalized vs. raw logs
  • Ability to handle messy/inconsistent data and make it detection-ready
  • Reasoning about detections at scale (e.g., performance, cost, and false positives)

Nice to Have

  • Experience with SIEMs, security lakes, or custom detection platforms
  • Familiarity with log ingestion pipelines or log shippers/collectors
  • Experience working close to data platforms / security data infrastructure
  • Scripting/query experience (e.g., SQL-like languages, Python)
  • Exposure to detection-as-code and version-controlled detection logic

About Colossus Technologies Group

Colossus Technologies Group builds security-first data and detection platforms focused on ingesting and processing large volumes of security telemetry. The team is creating a Security Lake (LogFlow) that normalizes log data in real time and enables high-fidelity detections for security analytics use cases.

Scraped 4/19/2026

xelys jobs xelys jobs

Built for remote job seekers. Powered by AI.