Visibility & Detection Gap Analysis: Conduct analyses of Cyber Threat Intelligence (CTI), attack surfaces, and the current detection landscape to identify and prioritize visibility and detection gaps.
Adversary Emulation: Perform adversary emulation and simulations to validate and continuously improve detection coverage.
Rule Development & Tuning: Develop, test, and tune high-fidelity detection rules and preventive controls to strengthen the overall security posture.
SOC Collaboration: Collaborate with SOC and incident response teams to streamline alert triage, optimize playbooks, and reduce false positives.
Professional Experience: Multiple years of experience in detection engineering/content development, threat hunting, or offensive security.
Technical Expertise: Deep expertise in the MITRE ATT&CK® framework, from converting hypotheses into MITRE-mapped adversary TTPs to evaluating potential visibility and coverage gaps.
Programming & Automation: Proficient in scripting and automation languages (e.g., Python, PowerShell, Bash) and proven experience in most commonly used query languages (e.g., KQL, SQL, Splunk SPL).
Certifications (Strong Plus): Offensive security certifications (e.g., OSCP, OSEP, CRTO, GXPN, GPEN, GCIH or other relevant GIAC/offensive certifications).
Bosch’s culture of innovation and digital transformation offers you a fantastic platform to grow your skills and enhance your network. We are dedicated to building a warm, open, transparent, and inclusive work environment for all.
At Bosch, we shape the future by inventing high-quality technologies and services that spark enthusiasm and enrich people’s lives. Our promise to our associates is rock-solid: we enjoy our work, we inspire each other, we provide equal growth opportunities for all team members, all roles are represented in all countries. We grow together!
Apply on Robert Bosch’s careers page