Bucharest, RO
9 days ago
Security Content Engineer

Bitdefender

Bitdefender is a cybersecurity leader delivering best-in-class threat prevention, detection, and response solutions worldwide. Guardian over millions of consumer, enterprise, and government environments, Bitdefender is one of the industry’s most trusted experts for eliminating threats, protecting privacy, digital identity and data, and enabling cyber resilience. With deep investments in research and development, Bitdefender Labs discovers hundreds of new threats each minute and validates billions of threat queries daily. The company has pioneered breakthrough innovations in antimalware, IoT security, behavioral analytics, and artificial intelligence and its technology is licensed by more than 180 of the world’s most recognized technology brands. Founded in 2001, Bitdefender has customers in 170+ countries with offices around the world. For more information, visit https://www.bitdefender.com

Our mission at Bitdefender is to reduce risk to our customers’ business so they can confidently pursue their goals. We are committed to delivering real, effective cybersecurity value — no fluff, no gimmicks. To support this mission, we are expanding our team with a Security Content Engineer role. 

About Us 
Bitdefender’s Managed Detection & Response (MDR) service is a rapidly growing division dedicated to protecting customers from real-world threats. Our team is composed of passionate cybersecurity professionals from across the globe, including seasoned defenders from military, intelligence, and top-tier cyber organizations. We operate in a 24/7 environment, managing high-impact security incidents and continuously improving our defenses. 
We believe in trust, accountability, and process. Our team prioritizes collaboration and fosters a culture of ownership and problem-solving. If you’re passionate about security and want to work with others who take the mission seriously, this is the place for you. 

About the Role :
The Security Content Engineer plays a critical role in proactively identifying and mitigating threats across customer environments by developing and maintaining high-quality detection and response content. 
This is a full-time position aligned with a four-day, ten-hour shift schedule (Monday–Friday), with occasional on-call or weekend coverage depending on team needs. 

You will: 
Design and develop detection content that drives high-fidelity alerts and investigations. 
Create and refine analytics rules to identify emerging threats and suspicious behavior. 
Maintain and tune customer environment baselines to reduce false positives and improve alert accuracy. 
Conduct quality assessments on operational data to ensure reliability and relevance. 
Develop threat hunting queries and custom detection content based on threat intelligence. 
Collaborate with MDR analysts to gather feedback and refine content accordingly. 
Define and maintain data parsers and ensure consistent data normalization and availability. 
Support investigations by providing ad hoc content development and detection tuning. 
Review and respond to content-related tickets and feature requests. 

About You:
You are a hands-on engineer with a passion for security, detection engineering, and threat hunting. You thrive on solving hard problems and making a tangible impact on customer security outcomes. 
You bring: 
Experience working with detection and response platforms (e.g., SIEM, EDR, SOAR). 
Strong understanding of threat detection logic, signal-to-noise tuning, and false positive reduction. 
Familiarity with common attacker techniques (MITRE ATT&CK) and defensive countermeasures. 
Knowledge of log data formats and telemetry across multiple operating systems and security tools. 
Experience designing and implementing parsers for structured and unstructured data. 
Ability to work across teams and communicate technical information effectively. 
Comfortable with scripting and automation for detection and content development. 

Bonus if you have: 
Experience with Bitdefender GravityZone, Devo, or Swimlane. 
Background in SOC operations or content management for MDR or MSSP environments. 
Familiarity with developing and refining detection KPIs (e.g., baseline adherence, false positive rates). 

What We Offer:
This role combines the energy of a fast-moving team with the support of a globally recognized security company.

We offer: 
Comprehensive health and wellness benefits 
Competitive salary and performance bonuses 
Career growth through training and certifications 
Flexible work schedule 
Collaborative and mission-driven culture 

Confirm your E-mail: Send Email