Skip to main content
AfterDuty

Detection & Response Engineer

Future Secure AI · Sydney, New South Wales

Type
Full-time
Posted
15 days ago

Overview

Your incident response and digital forensics experience from policing provides a foundation, but deep coding and cloud security skills are required.

About this role

About the Company

At Future Secure AI, we're building something genuinely new — and we're looking for people bold enough to build it with us. We work at the frontier of AI, tackling big, real-world problems for global enterprises across multiple industries, armed with state-of-the-art technology and a culture that prizes courage, rigor, and relentless curiosity. Our BRAVER values aren't just words on a wall — they describe the kind of people we are and the standard we hold ourselves to every day. Our leadership team is entrepreneurial, experienced, and accessible, with an open-door policy that means you'll never be just a number here. We invest seriously in your growth because we know our success depends on yours. If you're ready to work alongside some of the brightest minds in the industry, push into uncharted territory, and do work that genuinely matters, Future Secure AI is the place for you.

We are hiring a Detection & Response Engineer to help build FSAI's security program from the ground up. As one of our founding hires, you will own an entire domain, not just a slice of someone else's project. You'll serve as an incident handler on our on-call rotation, balanced across Australia and North American time zones so that coverage follows the sun rather than asking you to work off-hours. We treat security as a systems problem: our default is to solve problems smartly through automation and scale, engineering our way out of manual toil rather than accepting a baseline of endless ticket processing. We seek out industry-leading vendors and approaches rather than defaulting to what is slow and safe, and we design controls that protect the business without degrading the engineering or end-user experience. This is all new, so expect it to be bumpy while we build it out.

Responsibilities

  • Design, build, test, and tune high-fidelity detections across endpoints, cloud, identity, and infrastructure, aligned to attacker TTPs
  • Build and improve log onboarding, enrichment, and the pipelines that feed detection and investigation on our logging platform (e.g., Scanner)
  • Build automation (e.g., Tines) that scales triage, investigation, and response, wired directly into our on-call and paging systems (e.g., incident.io, PagerDuty)
  • Translate raw intel and security research into actionable, automated detection logic
  • Investigate alerts, drive incidents to resolution, and coordinate with the endpoint stack (e.g., CrowdStrike, Microsoft Defender, Huntress), feeding lessons learned back into detections and runbooks

Minimum Qualifications

  • 5+ years of experience in detection engineering, security operations, or security engineering
  • Strong scripting and development skills in Python and/or Go
  • Proven experience building detections against large-scale log data and working with a logging or SIEM-style platform
  • Deep knowledge of operating-system internals, cloud (AWS) security concepts, and common attacker techniques
  • A strong bias toward automating recurring problems rather than absorbing them

Preferred Qualifications

  • Depth in threat hunting, digital forensics, malware analysis, or threat intelligence
  • Experience with detection-as-code and building CI/CD pipelines for detections
  • Familiarity with automation/SOAR platforms and case management systems
  • Experience applying ML/LLM techniques to detection (e.g., enrichment, correlation, risk-based alerting)

Why Join Us?

  • A high-performance culture
  • State-of-the-art technology
  • Experience world-class leadership
  • Scale of impact and purpose
  • A competitive salary and a huge growth trajectory
  • Work with the best in the industry
  • Flexible work environment
  • Diversity and creativity

Future Secure AI Privacy Policy At Future Secure AI, we are committed to protecting your privacy and adhering to the principles of the General Data Protection Regulation (GDPR) and the Australian Privacy Principles (APPs) under the Privacy Act 1988 (Cth). Our Privacy Policy outlines how we collect, use, share, and protect your personal data when you visit our website at www.futuresecure.ai (the "Website") and use our services.

About cyber security & digital forensics roles for ex-police

Cyber security, digital forensics and incident-response roles. DMIs, cybercrime investigators and digital forensics officers bring evidential discipline and investigative judgement that DFIR and security teams struggle to hire.

See all cyber security & digital forensics jobs in Sydney

Why this fits a police background

  • Intelligence & OSINT
  • Investigative casework
  • Digital forensics & cybercrime
  • Working to legislation & regulation
  • Security operations

More cyber security & digital forensics jobs for ex-police