Intercontinental Exchange Holdings, Inc.
London, United Kingdom
Job Description:
Job Purpose The ICE Cybersecurity Threat Detection team is responsible for detecting malicious behavior across ICE's global infrastructure quickly and reliably enough to contain it. We build, tune, and maintain the detection content that security operation teams depend on, and hunt proactively for threats that existing controls do not catch, working alongside threat intelligence, incident response, and red team functions to keep coverage grounded in real adversary behavior. Responsibilities Detection Engineering - Design, build, test, and maintain detection content across SIEM, EDR, and NDR platforms, and document the intent, data source, and expected behavior of each detection Detection Tuning and Health - Own false positive rates, alert volume, and rule health for assigned detection areas, including retiring logic that no longer earns its place Detection Coverage - Map detection coverage to the MITRE ATT&CK framework, identify gaps, and propose...
