Nejo Logo
Jobs finden
nach Anstellungsart

Finde Jobs nach Arbeitszeit

  • Geringfügige Jobs
  • Teilzeit Jobs
  • Lehrstellen
  • Praktikumsplätze
nach Stadt

Jobs in deiner Nähe finden

  • Jobs in Wien
  • Jobs in Graz
  • Jobs in Linz
  • Jobs in Salzburg
  • Jobs in Innsbruck
  • weitere Städte
nach Beruf

Erkunde Jobs nach Berufsfeld

  • Fahrer Jobs
  • IT Jobs
  • Feuerwehr Jobs
  • Hausmeister Jobs
  • Vertrieb Jobs
  • weitere Berufe
nach Erfahrungslevel

Jobs passend zu deiner Erfahrung

  • Quereinsteiger Jobs
  • Berufseinsteiger Jobs
  • Manager Jobs
nach Arbeitsweise

Wähle deine bevorzugte Arbeitsweise

  • Remote Jobs
  • Home Office Jobs
Studenten
Schüler
Blog
Jobs finden
nach Anstellungsart

Finde Jobs nach Arbeitszeit

  • Geringfügige Jobs
  • Teilzeit Jobs
  • Lehrstellen
  • Praktikumsplätze
nach Stadt

Jobs in deiner Nähe finden

  • Jobs in Wien
  • Jobs in Graz
  • Jobs in Linz
  • Jobs in Salzburg
  • Jobs in Innsbruck
  • weitere Städte
nach Beruf

Erkunde Jobs nach Berufsfeld

  • Fahrer Jobs
  • IT Jobs
  • Feuerwehr Jobs
  • Hausmeister Jobs
  • Vertrieb Jobs
  • weitere Berufe
nach Erfahrungslevel

Jobs passend zu deiner Erfahrung

  • Quereinsteiger Jobs
  • Berufseinsteiger Jobs
  • Manager Jobs
nach Arbeitsweise

Wähle deine bevorzugte Arbeitsweise

  • Remote Jobs
  • Home Office Jobs
StudentenSchülerBlogNejo LinkedIn

Cyber Detection Engineer(m/w/x)

Airbus
Manching

In this role, you analyze cyber threats and develop actionable intelligence while collaborating with teams to enhance detection capabilities and respond to incidents effectively.

Anforderungen

  • •Understanding of security tools like EDR
  • •Deep knowledge of Operating System insights
  • •Experience with Python, PowerShell/Bash preferred
  • •Understanding of DevOps and git
  • •Strong knowledge of threat actor TTPs
  • •Proficiency with SIEM tools and threat intelligence platforms
  • •Experience building code-based hunting automation playbooks
  • •Familiarity with scripting for IOC enrichment
  • •Ability to correlate data sources for investigation
  • •Understanding of threat modeling or detection engineering preferred
  • •Fluent in written and spoken English and German

Deine Aufgaben

  • •Leverage CTI as a strategic asset, integrating external intel with internal context.
  • •Conduct in-depth analysis of cyber threats relevant to Airbus operations.
  • •Translate complex threat data into actionable intelligence for all stakeholders.
  • •Produce regular and ad hoc threat intelligence reports and dashboards.
  • •Proactively hunt for signs of adversary presence in enterprise environments.
  • •Design and execute structured threat hunting playbooks based on known TTPs.
  • •Develop code-based playbooks integrating threat intelligence and detection logic.
  • •Collaborate with engineers to convert hunt findings into long-term detections.
  • •Refine and document hunt processes for knowledge sharing across teams.
  • •Maintain situational awareness of the evolving threat landscape.
  • •Detect early indicators of potential cyber campaigns targeting relevant sectors.
  • •Assist in developing and fine-tuning detection rules for security systems.
  • •Contribute to telemetry log sources specification and data normalization.
  • •Develop tools to identify patterns and anomalies indicating security incidents.
  • •Implement adversary emulation tests for rules quality assessment.
  • •Build relationships with CTI peers to share best practices and threat profiles.
  • •Ensure timely dissemination of threat data to internal stakeholders.
  • •Design workflows for rapid delivery of intelligence to incident response teams.
  • •Support post-incident analysis with relevant threat intelligence context.

Deine Vorteile

Attractive salary with payments
30 days paid vacation
Upskilling opportunities
Employer-funded pension benefits
On-site medical and health services
Family-work compatibility options
Diverse work environment

Original Beschreibung

# Cyber Detection Engineer (d/f/m) **Manching** | **Full time** ****Job Description:**** Airbus Defense and Space is looking for a passionate and talented Cyber Security **Detection Engineer**to join our international Incident Response Team (CSIRT), in **MANCHING.** A mission critical part for us in order to secure our world-class business. This is a technical, hands-on role that will work with a variety of security tools and technologies protecting our whole enterprise. The successful candidate will be responsible for managing our Cyber Threat Intelligence (CTI) research and Threat Hunting activities, the entire lifecycle of our detection rules repository and SOC automation stack. You will be responsible for technical evolution of our SOC blueprint and managing enhancement projects to integrate new features and solutions into our Security Operation Centers (SOC). This is a fantastic opportunity to join a team who live and breath for cyber security and to work for a company with great products and technologies around the globe. ****Your location**** Located about an hour’s drive north of Munich, Manching is an up-and-coming market town that offers a wide range of leisure and cultural activities. Here, you can enjoy the quality of life in the countryside while the pleasures of near-by cities are still within easy reach. ****Your benefits**** * Attractive salary and special payments * 30 days paid vacation and extra days-off for special occasions * Excellent upskilling opportunities and great international, group wide development prospects * Special benefits: employer-funded pension, employee stock options, discounted car leasing, special conditions for insurances, subsidies for public transport, employee benefits at cooperating companies * On-site-facilities: Medical officer for check-ups and other health-related services, canteen and cafeteria, kindergarten close to the site * Compatibility of family & work (job sharing, part-time models, flexible working hours, individual timeout) * Working in a diverse environment, with more than 140 nationalities, where every voice is heard ****Key Responsibilities:**** **1. Threat Analysis** * **Leverage the organization’s CTI provider as a strategic asset**, not just a data source—integrating external intel with internal context to assess real impact and relevance. * Conduct in-depth analysis of cyber threats (APT groups, malware campaigns, zero-days, etc.) and assess their relevance to Airbus operations, especially the aerospace and defense-related. * Translate complex threat data into **clear, actionable intelligence** for technical and non-technical stakeholders. * Produce regular and ad hoc **threat intelligence reports**, briefings, and dashboards tailored to specific business units or leadership needs **2. Threat Hunting** * Proactively hunt for signs of adversary presence within enterprise environments using threat intelligence, telemetry, and hypothesis-driven methods. * Design and execute structured **threat hunting playbooks** based on known TTPs (e.g., MITRE ATT&CK) and emerging threats, enabling consistent, repeatable hunts. * Develop **code-based playbooks (e.g., Jupyter Notebooks or Python scripts)** that integrate threat intelligence, log sources, and detection logic—making them reusable by SOC, IR, and detection engineering teams. * Collaborate with detection engineers to convert hunt findings into **long-term detections** and **SIEM use cases**, contributing to continuous monitoring improvements. * Continuously refine and document hunt processes and hypotheses for knowledge sharing across cyber defense teams. **3. Monitoring & Anticipation** * Maintain situational awareness of the evolving threat landscape through **open-source intelligence (OSINT), commercial feeds, dark web monitoring**, and collaboration with national cybersecurity bodies. * Detect and flag early indicators of potential cyber campaigns targeting aerospace or defense sectors. * Assist in the development and fine-tuning of detection rules and alerts for monitoring security systems (e.g., SIEM, EDR). * Contribute in the specification of telemetry log sources and data normalization for its processing in Cyber Detection. * Develop tools and techniques to identify patterns and anomalies in network traffic, system logs, and application data that could indicate security incidents (Threat Hunting). * Implement adversary emulation tests to assess the quality of the detection rules **4. Stakeholder Engagement** * Build relationships with external CTI peers in industry and government to share **best practices, TTPs (tactics, techniques, procedures), and threat actor profiles**. * Ensure timely and accurate dissemination of threat data to internal stakeholders across the organization, including CISO-level reports. **5. Rapid Response Enablement** * Design and maintain workflows for the **rapid delivery of intelligence** to incident response and risk teams, enabling faster decision-making and containment. * Support post-incident analysis by enriching forensic investigations with relevant threat intelligence context. **Required Skills:** * **Technical Skills:** * Understanding of security tools such as EDR, Windows Logging,  firewalls, intrusion detection/prevention systems (IDS/IPS).. * Deep knowledge of Operating System insights (Windows/Linux) * Experience with Python is a requirement, PowerShell/Bash are a plus. * Understanding of DevOps, git.. * **Analytical Skills:** * Strong knowledge of **threat actor tactics, techniques, and procedures (TTPs)** and frameworks like **MITRE ATT&CK**, Kill Chain, and Diamond Model. * Proficiency with **SIEM tools** (e.g., Splunk, ELK), **threat intelligence platforms** (e.g., MISP, ThreatConnect), and **endpoint detection tools** (e.g., EDR/XDR). * Experience building **code-based hunting or automation playbooks** (e.g., **Python, Jupyter Notebooks, PowerShell**). * Familiarity with scripting or automation for **IOC enrichment, API integrations**, and telemetry analysis. * Ability to correlate multiple data sources and pivot across logs, alerts, and CTI for deeper investigation. * Understanding of **threat modeling, detection engineering**, or purple teaming is a plus. * Fluent written and spoken in English and German are a must Not a 100% match? No worries! Airbus supports your personal growth with customized development solutions. This job requires an awareness of any potential compliance risks and a commitment to act with integrity, as the foundation for the Company’s success, reputation and sustainable growth. ********Company:******** Airbus Defence and Space GmbH **Employment Type:** Permanent ------- **Experience Level:** Professional **Job Family:** Cyber Security <JF-CG-ST>
Lade Jobdetails..
Über UnsProdukteKontaktImpressumDatenschutzNutzungsbedingungenCookie-Einstellungen
© 2025 Nejo
© 2025 nejo jobs