Serve as a primary security responder, leading the triage and investigation of complex security alerts. Engineer and maintain sophisticated detection logic across multiple data sources to identify persistent threats and anomalous behavior patterns. Design and implement comprehensive detection coverage mapping, documenting capabilities and identifying blind spots in the threat landscape. Develop and maintain comprehensive incident response runbooks to ensure consistent and effective response operations. Conduct proactive threat hunting campaigns using hypothesis-driven methodologies to uncover hidden threats. Continuously evaluate and optimize existing detection rules through threat modeling. Identify detection coverage gaps across global infrastructure and collaborate with stakeholders to enhance visibility.