workinengineering
BrowseField notes
workinengineering

Curated engineering jobs in Europe. Built to support the career path of engineering people at European companies across the EU, UK and EMEA.

Jobs

  • Browse all jobs
  • Remote jobs
  • Jobs in Germany
  • Jobs in Netherlands
  • Jobs in the UK
  • Field notes

About us

  • About
  • Contact
  • Privacy
  • Terms
  • Cookies

© 2026 workinengineering.eu — Made in Europe.

  • Email
workinengineering
BrowseField notes
  1. All roles
  2. British American Tobacco
  3. Cyber Security Engineer -
British American Tobacco logo
British American Tobacco

Cyber Security Engineer -

OnsiteWarszawa, PolandSecurity
Apply directly at British American Tobacco

Our Take

Engineer SIEM security monitoring and detection capabilities using Microsoft Sentinel and KQL.

What you’ll do

  • Lead onboarding and integration of log sources into Microsoft Sentinel
  • Develop custom parsers and data transformations for ingested data
  • Design and optimise KQL queries for effective threat detection
  • Create analytic rules aligned to emerging threats and business use cases
  • Implement CI/CD pipelines using Azure DevOps/Git

What they’re looking for

  • 2–4 years experience in SIEM engineering or cyber defence
  • Bachelor’s degree in Computer Science or Information Security
  • Strong skills in query development, parsing, and data normalisation
  • Familiarity with CI/CD, version control, and deployment automation
  • Good understanding of security monitoring principles

Skills & Focus Areas

  • SIEM
  • Microsoft Sentinel
  • KQL
  • Azure DevOps
  • CI/CD
  • Log Integration
  • Detection Engineering
  • Incident Response

As posted by British American Tobacco

BAT is evolving at pace into a global multi-category business. Our purpose is to create A Better Tomorrow™ by Building a Smokeless World.
To achieve our ambition, we are looking for colleagues who are ready to join us on this journey! Tomorrow can’t wait, let’s shape it together!

British American Tobacco Poland has an exciting opportunity for a Cyber Security Engineer in Warsaw

 

Help strengthen the organization’s security monitoring and detection capabilities by managing, maintaining, and continuously improving the SIEM platform. Work closely with Cyber Security, IT, and business teams to onboard relevant log sources, develop and tune detection rules, investigate security alerts, and support incident response activities. Ensure the SIEM environment remains reliable, scalable, and aligned with security and compliance requirements. Collaborate with regional and global cyber teams to maintain consistent monitoring standards, improve visibility across the technology estate, and deliver timely, actionable security insights to the relevant stakeholders.

 

Your key responsibilities will include:

  • Lead onboarding and integration of log sources into Microsoft Sentinel to ensure complete and reliable security telemetry
  • Develop custom parsers and data transformations to normalise and enrich ingested data
  • Design and optimise KQL queries to support effective threat detection and investigation
  • Create and maintain analytic rules and detection logic aligned to emerging threats and business use cases
  • Implement CI/CD pipelines (Azure DevOps/Git) to support controlled deployment of SIEM content (rules, parsers, playbooks)
  • Automate deployment and configuration across environments to improve consistency and speed of delivery
  • Perform ongoing tuning and optimisation of detections to improve fidelity and reduce false positives

 

What are we looking for?

  • Bachelor’s degree in Computer Science, Information Security, Cyber Security, Engineering, or Information Technology
    OR 2–4 years of equivalent experience in SIEM engineering, detection engineering, security operations, or cyber defence.
  • Practical knowledge of security telemetry, log integration, detection development, and SIEM deployment practices.
  •  Experience integrating and managing security telemetry sources.
  • Strong skills in query development, parsing, and data normalisation.
  • Experience building, tuning, and maintaining detection logic.
  • Familiarity with CI/CD, version control, and deployment automation.
  • Good understanding of security monitoring and threat detection. 
  • Strong understanding of security monitoring, telemetry architecture, and detection engineering principles.
  • Proficiency in query development, data parsing, scripting, and deployment automation.
  • Familiarity with detection frameworks, security use-case development, and engineering lifecycle practices.
  • Strong analytical and troubleshooting skills, with the ability to improve detection quality and platform reliability.
  • Effective collaboration across Cyber Security, IT, SOC, Incident Response, and engineering teams.
  • Ability to manage priorities, communicate technical concepts clearly, and drive delivery across stakeholders.

 

What we offer you?

  • We offer a market leading annual performance bonus (subject to eligibility)
  • Our range of benefits varies by country and includes diverse health plans, initiatives for work-life balance, transportation support, and a flexible holiday plan with additional incentives
  • Your journey with us isn't limited by boundaries; it's propelled by your aspirations. Join us at BAT and become a part of an environment that thrives on internal advancement, where your career progression isn't just a statement – it's a reality we're eager to build together. Seize the opportunity and own your development; your next chapter starts here.
  • You'll have access to online learning platforms and personalized growth programs to nurture your leadership skills
  • We prioritise continuous improvement within a transformative environment, preparing for ongoing changes

WHY JOIN BAT?
We’re one of the few companies named as a Global Top Employer by the Top Employers Institute – certified in offering excellent employee conditions.

Collaboration, inclusion and partnership underpin everything we do here at BAT. We are looking forward to enabling every individual to thrive, regardless of gender, sexual orientation, marital or civil partnership status, gender reassignment, race, religion or belief, colour, nationality, ethnic or national origin, disability, age, skills, experience, education, socio-economic and professional background, veteran status, perspectives and thinking styles. We know that embracing talent from all backgrounds is what makes us stronger and best prepared to meet our business goals.

We see the career breaks as opportunities not obstacles. Through The Global Returners program, we support professionals looking to restart their careers after an extended absence from the workforce (e.g. time out caring for family, parental leave, national service, sabbatical and/or starting an own venture).

Come bring your difference and see what is possible for you at BAT. Learn more about our culture and our award winning employee experience here.

If you require any reasonable adjustments or accommodations to help you perform at your best during the recruitment process, you are encouraged to notify us. We are fully committed to support you by making appropriate arrangements for you to demonstrate your full potential.

Apply directly at British American Tobacco
Location
Warszawa, Poland
Work mode
Onsite
PostedJul 18
British American Tobacco logo
British American Tobacco
bat.com

Was this listing helpful?