Overview
We Help the World Be Everyday Ready™
Full job description
We Help the World Be Everyday Ready™ Today's threatscape is relentless. So are we. At Cyderes, we build practical Identity & Access Management (IAM), Exposure Management, and risk programs, helping organizations stop active threats fast with Managed Detection & Response (MDR) that integrates with existing tools. Powering it all is Meridian, our entity fabric that connects identities, assets, and access into one trusted reality. Augmented by AI and driven by experienced operators, our tireless global team arms organizations with the people, platforms, and perspectives they need to conquer whatever tomorrow throws their way. 🏆 Great Place to Work® Certified™
Role Summary The Operations Advisor is the primary technical owner of detection outcomes for assigned clients. You improve detection quality, identify gaps in coverage, and advance client security maturity through expert-level advisory and hands-on detection engineering. You lead the technical account relationship, and you deliver measurable outcomes that clients can see and trust. This role reports to Manager, Cyber Defense Operations
Own and maintain detection coverage aligned to the Cyderes Rule Set
Lead tuning and optimization of detection rules across SIEM platforms
Identify, prioritize, and remediate detection gaps
Be a trusted advisor on detection strategy and operational effectiveness
Identify detection improvements based on real-world incident insights
Partner with SOC and DFIR teams during escalations
Oversee the technical account relationship for assigned clients
Lead technical cadence calls focused on detection performance, gaps, and outcomes
Translate technical findings into risk-based, business-relevant insights
Guide clients on prioritization of improvements based on detection impact
Be a trusted advisor on detection strategy and operational effectiveness
3–5 years of experience in detection engineering, security operations, or a related discipline
Hands-on proficiency with one or more enterprise SIEM platforms (Splunk, Microsoft Sentinel, Chronicle, or equivalent)
Demonstrated experience writing and tuning detection rules in production environments
Experience in a managed security services or MSSP environment serving multiple clients
Proficiency in multiple SIEM query languages (SPL, KQL, YARA-L, or similar)
Familiarity with SOAR platforms and automation-assisted detection workflows
Experience with threat hunting methodologies and retrohunt program execution
Relevant certifications: GCIA, GCIH, GCDA, or SIEM vendor certifications
Tips for this job
Practical Job and Scholarship guidance. These tips do not replace official rules or create new eligibility requirements.
- Tailor the CV and application to the responsibilities and required skills stated on the official employer page.
- Use concrete evidence of relevant work, projects and measurable results rather than generic claims.
- Confirm location, work authorization, remote restrictions and sponsorship terms before applying.
- Apply through the original employer or official recruitment destination shown on this page.
Verification notes
laptop-ats-crawler v2
Job and Scholarship is the discovery and verification layer. Confirm eligibility, dates, salary/funding and application instructions on the original source before submitting anything.
Cyderes (lever) ↗Browse current Job and Scholarship listings from Cyderes (lever) →