Senior Detection & Threat Engineer in London

Senior Detection & Threat Engineer in London

London Full-Time 70000 - 90000 £ / year (est.) Home office (partial)
Checkout.com

At a Glance

  • Tasks: Engineer high-fidelity threat detections and conduct proactive threat hunting.
  • Company: Join Checkout.com, powering digital experiences for global brands like eBay and Spotify.
  • Benefits: Flexible hybrid work model, competitive salary, and opportunities for personal growth.
  • Other info: Collaborative culture with a focus on ownership and meaningful challenges.
  • Why this job: Make a real impact in cybersecurity and shape the future of fintech.
  • Qualifications: Experience in detection engineering and strong understanding of attacker techniques.

The predicted salary is between 70000 - 90000 £ per year.

We’re Checkout.com. You might not know our name, but companies like eBay, Spotify, Klarna, Uber, and Sony do, because we’re behind many of the digital experiences you use every day. We are where the world checks out, enabling over 10 billion transactions daily for more than one billion global shoppers. Our platform helps the most ambitious businesses deliver effortless digital experiences, at scale.

The role involves owning and evolving the company’s threat detection and threat-hunting capability. This role defines what “good” looks like for detection and increasingly engineers it directly as capability shifts into Cyber Security. You will understand attacker behaviour, convert it into high-fidelity detection logic, and raise the security baseline for the entire organisation.

You will partner closely with Security Operations, GRC and Engineering—setting standards, direction, and expectations—while progressively taking ownership of the most complex and high-value detection and threat engineering work.

What you’ll be responsible for:

  • Engineering high-fidelity threat detections across endpoint, identity, cloud, and SaaS
  • Defining detection standards, principles, and quality thresholds for Security Operations
  • Conducting proactive threat hunting based on attacker behaviour, not vendor alerts
  • Translating threat intelligence and incident learnings into durable, reusable detections
  • Mapping detections to MITRE ATT&CK and real-world attack paths
  • Reducing alert fatigue through logic refinement, correlation, and contextual enrichment
  • Advising and supporting during high-severity security incidents; contribute to runbooks and escalation playbooks
  • Driving the transition of advanced detection capability into Cyber Security ownership

What we’re looking for:

  • Proven experience in detection engineering, threat hunting, or advanced SOC roles
  • Deep understanding of modern attacker tradecraft and intrusion techniques across the attack lifecycle
  • Hands-on experience building detection logic in modern SIEM platforms (e.g Sentinel)
  • Proficiency with scripting and programming (e.g. Python, KQL) to build detection pipelines and automation
  • Willingness to challenge bad detections, weak assumptions, and vanity metrics
  • Pragmatic mindset: precision and impact beat coverage theatre
  • Experience operating beyond traditional SOC or MSSP models
  • Hands-on cloud detection experience (identity, control plane, SaaS)
  • Familiarity with threat intelligence platforms and frameworks such as PCI DSS, NIST CSF, SOC 2, ISO27001, CIS Benchmarks, and MITRE ATT&CK for Cloud.

Additional Information:

We create the conditions for high performers to thrive, through real ownership, fewer blockers, and work that makes a difference from day one. Here, you’ll move fast, take on meaningful challenges, and be recognised for the impact you deliver. It’s a place where ambition gets met with opportunity, and where your growth is in your hands.

We work as one team, and we back each other to succeed. So whatever your background or identity, if you’re ready to grow and make a difference, you’ll be right at home here.

It’s important we set you up for success and make our process as accessible as possible. So let us know in your application, or tell your recruiter directly, if you need anything to make your experience or working environment more comfortable.

We understand that work is just one part of your life. Our hybrid working model offers flexibility, with three days per week in the office to support collaboration and connection.

Senior Detection & Threat Engineer in London employer: Checkout.com

At Checkout.com, we pride ourselves on being an exceptional employer that empowers our employees to take ownership of their work and make a meaningful impact from day one. With a dynamic hybrid working model based in London, we foster a collaborative culture that values ambition and personal growth, offering numerous opportunities for professional development in the fast-paced fintech sector. Join us to be part of a diverse team that supports each other and thrives on innovation, all while shaping the future of digital payments.

Checkout.com

Contact Details:

Checkout.com Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Senior Detection & Threat Engineer in London

Tip Number 1

Network like a pro! Reach out to folks in the industry, especially those at Checkout.com. A friendly chat can open doors and give you insights that a job description just can't.

Tip Number 2

Show off your skills! If you've got a portfolio or any projects related to threat detection and engineering, make sure to highlight them during interviews. We love seeing real-world applications of your expertise.

Tip Number 3

Prepare for the unexpected! Brush up on your knowledge of modern attacker tradecraft and be ready to discuss how you would tackle real-world scenarios. We want to see your problem-solving skills in action!

Tip Number 4

Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you're genuinely interested in being part of our team at Checkout.com.

We think you need these skills to ace Senior Detection & Threat Engineer in London

Threat Detection Engineering
Threat Hunting
Understanding of Attacker Behaviour
Detection Logic Development
Experience with SIEM Platforms (e.g. Sentinel)
Scripting and Programming (e.g. Python, KQL)
Cloud Detection Experience

Some tips for your application 🫡

Show Your Passion:When you're writing your application, let your enthusiasm for the role shine through! We want to see that you’re genuinely excited about the opportunity to work in threat detection and engineering. Share why this role at Checkout.com speaks to you and how you can contribute.

Tailor Your CV:Make sure your CV is tailored to highlight your experience in detection engineering and threat hunting. We love seeing specific examples of your work, especially if they relate to the skills mentioned in the job description. Don’t just list your responsibilities; show us your achievements!

Be Clear and Concise:Keep your application clear and to the point. We appreciate well-structured applications that are easy to read. Use bullet points where necessary and avoid jargon unless it’s relevant to the role. Remember, clarity is key!

Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, you’ll get a feel for our culture and values while you’re there!

How to prepare for a job interview at Checkout.com

Know Your Stuff

Make sure you brush up on your knowledge of detection engineering and threat hunting. Familiarise yourself with the latest attacker tradecraft and intrusion techniques, as well as the tools and platforms mentioned in the job description, like SIEMs and scripting languages. This will show that you're not just a fit for the role, but genuinely passionate about the field.

Showcase Your Experience

Prepare to discuss specific examples from your past work where you've successfully built detection logic or conducted proactive threat hunting. Use the STAR method (Situation, Task, Action, Result) to structure your answers, making it easy for the interviewers to see the impact of your contributions.

Understand the Company’s Mission

Research Checkout.com and understand their role in the fintech space. Be ready to discuss how your skills can help them achieve their goals, especially in enhancing their threat detection capabilities. This shows that you’re not just looking for any job, but are genuinely interested in contributing to their mission.

Ask Insightful Questions

Prepare thoughtful questions that demonstrate your curiosity and understanding of the role. Inquire about their current challenges in threat detection or how they measure success in this area. This not only shows your interest but also helps you gauge if the company is the right fit for you.