Unlock Full Resume Report

New offer - be the first one to apply!

September 2, 2026

Senior Detection & Response Engineer (L3 Security Operations)

Senior • On-site

22,000 - 26,000 PLN/yr

Krakow, Poland

This role follows a hybrid working model and requires onsite attendance at the Kraków office three days per week.

What You’ll Do

  • Build and maintain security automation workflows using Tines and other approved automation platforms to improve investigation, containment, and response processes.
  • Develop, tune, and optimize detections, correlation logic, searches, and analytics across SIEM, EDR, cloud, identity, email, and SaaS security platforms, including identifying detection gaps and opportunities for improved coverage.
  • Develop and operationalize AI-enabled workflows that improve analyst efficiency and response effectiveness.
  • Build automations and integrations using no-code and low-code platforms, APIs, and security tooling to eliminate repetitive manual work.
  • Assist advanced investigations and response activities through detection engineering, automation, and technical analysis.
  • Seek opportunities to raise detection quality, minimize alert noise, quicken response, and strengthen operational consistency among threat analysts, external security partners, and automated processes.
  • Collaborate with Security Operations, Security Engineering, IT, and Product Security teams to improve detection and response capabilities.
  • Measure and continuously boost the efficiency of detections, workflows, and operational processes.

What We’re Looking For

  • Experience improving threat detection, incident response, security operations, or related cybersecurity capabilities in a production environment.
  • Strong ability to develop and tune detections, searches, analytics, or threat-hunting content using security-focused query languages.
  • Experience building and maintaining security automations using Tines, SOAR platforms, or similar workflow automation technologies.
  • Ability to translate operational challenges into scalable detections, automations, and workflow improvements.
  • Experience connecting security tools and operational activities through APIs, workflow automation, or platform-native capabilities.
  • Solid grasp of threat detection, investigation, and incident response concepts.
  • Ability to cooperate efficiently with analysts, MSSP partners, engineers, and other associates to advance security performance.
  • Proven success through a combination of professional experience, technical expertise, education, certifications, military service, or equivalent practical experience. Candidates typically possess a bachelor’s degree or equivalent experience and approximately five years in a related cybersecurity role.

Bonus Points

  • Experience with Tines.
  • Experience implementing AI-enabled security operations or response automation workflows.
  • Experience with CrowdStrike, Microsoft security technologies, or cloud-native security platforms.
  • Experience working within a hybrid SOC/MSSP framework.
  • Experience with threat hunting, threat intelligence automation, or threat-informed defense practices.

Benefits

  • Robust benefits package.
  • Global career opportunities.

Similar jobs you might like