Dev/Null Security
Detection Engineer (MS Sentinel / Splunk)

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Role Overview
Dev/Null Security is seeking a hands-on Detection Engineer with strong experience in Microsoft Sentinel to design, build and optimise threat detections across enterprise environments. This role focuses on developing, maintaining and continuously improving high-quality security detections that enhance monitoring, incident response and security visibility.
The successful candidate will have strong Microsoft Sentinel experience and be comfortable working within a modern Security Operations environment. Experience with Splunk is also required, with at least one Splunk certification and the ability to discuss Splunk architecture, SPL, data ingestion and detection engineering concepts at a high level.
This position is ideal for someone who enjoys translating threat intelligence into actionable detections, improving detection coverage and collaborating with SOC, Infrastructure and Compliance teams.
Key Responsibilities
- Design, build and optimise detection rules and analytics within Microsoft Sentinel.
- Develop and maintain KQL queries for threat detection, threat hunting and operational reporting.
- Onboard and optimise log sources, data connectors and analytics rules.
- Create and tune correlation rules to reduce false positives and improve detection fidelity.
- Support incident investigations by developing detections based on emerging threats and attack techniques.
- Apply threat intelligence and the MITRE ATT&CK framework to detection engineering activities.
- Collaborate with SOC analysts, Infrastructure and Compliance teams to improve monitoring capabilities.
- Contribute to Detection-as-Code and DevOps practices using Git, GitLab or BitBucket.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Required Skills & Experience
- Strong hands-on experience with Microsoft Sentinel (primary SIEM).
- Advanced knowledge of Kusto Query Language (KQL).
- Experience onboarding log sources, data connectors and building analytics rules.
- Commercial experience designing and tuning security detections.
- Experience with Splunk including at least one Splunk certification.
- Ability to discuss Splunk architecture, SPL, data ingestion and detection engineering concepts.
- Good understanding of Security Operations, incident response and threat detection.
- Knowledge of the MITRE ATT&CK framework.
- Experience using Git, GitLab or BitBucket.
- Strong analytical, troubleshooting and communication skills.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Preferred / Nice-to-Have Skills
- Python and/or Shell scripting.
- Detection-as-Code experience.
- Threat hunting experience.
- Security automation.
- Compliance and governance awareness.
- Cloud security experience within Microsoft Azure.
Working at DevNull Security
Whilst DevNull Security is a remote-first company, our consulting team may be required to travel to client sites up to 3 times per week, depending on project and customer needs.
We believe that a career in cybersecurity should be accessible to everyone. We actively welcome applicants from all walks of life, regardless of race, ethnicity, gender identity, age, sexual orientation, disability, neurodiversity, socioeconomic background, or any other aspect of identity.
As a growing company, we’re committed to fostering an inclusive, equitable, and accessible hiring experience. We proactively offer adjustments during application and assessment - tell us what you need.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Skills