Back to Signal
Obsidian Helix

Detection Engineer

SeniorIdentity and Machine IdentityRemoteSydney, NSW
$200k
Open to Right Opportunity

Quick Match Check

Key Skills

SAST/DAST Tooling (e.g., Checkmarx, Burp Suite Enterprise)Cloud Security (AWS, Azure)Python/Go (for automation and rule development)Kubernetes/Docker SecuritySIEM/SOAR (Splunk, Cortex XSOAR)OWASP Top 10Threat ModelingAPI Security

Roles Worked

Senior Application Security Engineer
Security Consultant
Software Engineer

Industry Experience

TechSaaSDeveloper Tools

CyberSec People will make the introduction

Skills Assessment

1st PrinciplesCode BiasTech DepthCuriosityWar Stories8.09.08.08.09.0
1st Principles8/10

Breaks down complex problems into fundamental truths and builds solutions from the ground up

Code Bias9/10

Prefers building and shipping code over meetings and documentation

Tech Depth8/10

Deep technical expertise across security domains, tools, and architectures

Curiosity8/10

Constantly learning, experimenting, and staying ahead of emerging threats

War Stories9/10

Battle-tested experience solving real-world security incidents and challenges

Profile Summary

This Senior Detection Engineer builds robust application security detection and response capabilities, integrating security seamlessly into the SDLC. They are passionate about shifting left and empowering development teams to produce secure code at scale, significantly reducing vulnerabilities in production environments.

Problems Solved

  • Architected and deployed a custom SAST rule engine that reduced critical application vulnerabilities by 45% across 50+ microservices at a major Australian fintech.
  • Developed an automated DAST pipeline for pre-production environments, identifying and remediating 70% of high-severity OWASP Top 10 issues before deployment, saving an estimated 200 developer hours per quarter.
  • Integrated security telemetry from WAFs and application logs into a centralized SIEM, improving detection accuracy for common web attacks (e.g., SQLi, XSS) by 60% and reducing false positives by 30%.

What They Build

They build and operationalize application security detection rules, automated vulnerability scanning pipelines, and security-as-code solutions. Their work focuses on enhancing the security posture of web applications and APIs throughout their lifecycle.

What Would Make Them Move

Looking for a senior AppSec role at a company building developer-facing products. I want to be the security person developers actually want to talk to — threat modeling workshops, secure design reviews, not just gate-keeping. Need a team that values teaching over blocking.

Mission & Values

Driven to help teams build security into the development lifecycle. Believe in shifting left and empowering developers to write secure code.

Growth Areas

LeadershipStrategic ThinkingTeam Building

Open to

Senior Application Security RoleSecurity LeadershipTechnical Architecture