Develop and operationalize AI/ML-based threat detection models across endpoint, identity, network, and cloud environments.
Operationalise threat intelligence feeds into AI-driven detection pipelines, ensuring alignment with MITRE ATT&CK TTPs.
Design, develop, and deploy detection use cases across SIEM and XDR platforms.
Build, maintain, and continuously tune detection rules, KQL queries, and analytics for improved detection fidelity.
Design and enhance UEBA (User and Entity Behaviour Analytics) models to detect anomalies, insider threats, and advanced persistent threats (APTs).
Collaborate with red team and adversary simulation functions to validate detection coverage against real-world attack scenarios.
Drive proactive threat hunting by developing automated workflows leveraging AI-assisted query generation and anomaly detection.
Continuously evaluate detection effectiveness, reduce false positives, and improve signal-to-noise ratio.
Integrate multiple threat intelligence sources and contextual data to enrich detections and improve response outcomes.
Contribute to the development of threat detection standards, frameworks, and best practices.
Maintain up-to-date knowledge of evolving threats, adversary techniques, and detection technologies to continuously strengthen the organization’s cyber defense capabilities.
Act as an ambassador for DP World at all times when working; promoting and demonstrating positive behaviours in harmony with DP World’s Principles, values and culture; ensuring the highest level of safety is applied in all activities; understanding and following DP World’s Code of Conduct and Ethics policies.
Perform other related duties as assigned.