Security Detection Engineer
Tasks
- Apply advanced analytics and machine learning for detection fidelity and triage
- Build behavioral detections for account takeover credential abuse API misuse privilege escalation data exfiltration
- Define detection KPIs measure detection health
- Design detections across cloud identity endpoint network application
- Develop detection logic aligned to attacker behavior
- Implement automated enrichment and triage
- Map detections to threat models identify visibility gaps
- Participate in incident response on-call rotation
- Partner cross functionally to launch systems with monitoring and detection coverage
- Support incident investigations root cause analysis post incident detection improvements
- Translate threat intelligence into detections
- Tune alerts to reduce false positives
- Validate detections with adversary emulation and testing
Perks/Benefits
Skills/Tech-stack
API activity | Adversary Emulation | Alert Tuning | Authentication events | Automated enrichment | Cause analysis | Data Analysis | Detection KPIs | Detection-as-code | False Positive | False positive reduction | Go | Incident investigation | MITRE ATT&CK | MTTC | MTTD | Machine Learning | Powershell | Precisión | Python | Recall | Root Cause Analysis | Root cause | Security operations | Security telemetry | Sigma | Suricata | System Logs | Threat Intelligence | Yara | “as-code”
Regions
Countries
States
Cities
Related jobs
-
Senior-level Full TimeColumbus, GA, United States4h ago
-
IT Security Analyst USD 60K-75KAccess Management | DLP | Email Security | Endpoint Security | Google WorkspaceMentorship | TrainingEntry-level Full TimeAnaheim, CA, United States4h ago
-
Senior SIEM Engineer USD 130K-145KAlert Tuning | Automation | Compliance reporting | Correlation rules | DashboardingCleared positionSenior-level Full TimeWashington, DC, United States4h ago
-
Senior PKI Engineer USD 124K-179KActive Directory Certificate Services | Ansible | Bash | Certificate Authority | Certificate Lifecycle ManagementHybrid onsite/remote work | Secret clearance required | TS clearance requiredSenior-level Full TimeFAIRFAX, VA, United States4h ago
-
Ansible | Authentication | CentOS | Enterprise Linux | JBossSenior-level Full TimeAnnapolis Junction, MD6h ago
-
Adversarial Machine Learning | Anomaly Detection | Cloud Security | Machine Learning | PythonSecurity clearance premiumsMid-level Full TimeNaples, United States6h ago
-
Senior Cloud Software Engineer USD 135K-195KAPI Design | AWS | Alerting | Artifact governance | AzureSecurity clearance supportSenior-level Full TimeDayton, OH7h ago
-
Senior-level Full TimeDayton, OH7h ago
-
RRC - Database Administrator IV USD 96KAPI Integration | Autosys | Bash | Batch scheduling | CI/CDCareer development | Flexible work schedules | Health insurance | Paid time off | Retirement plan 401kMid-level Full TimeTexas-Austin8h ago
-
Comptroller - Enterprise Security Analyst I USD 75K-79KAntivirus | Application Security | Cybersecurity | DLP | Digital forensicsFlexible work schedule | Insurance | On-the-job training | Retirement plan | Teambuilding exercisesMid-level Full TimeTexas-Austin8h ago
-
Senior-level Full TimeUSA-FL-Tampa, USA-FL-Fort Walton Beach8h ago
-
Security Engineer III, Cyber Threat Hunter USD 107K-188KAmazon Web Services | Analytic Rules | Cloud Security | Cloud security monitoring | Detection and ResponseSenior-level Full TimeArlington/Rosslyn, Virginia, United States; Baltimore, Maryland, …8h ago
-
Staff Software Engineer, Agentic AI, Trust and Safety USD 207K-301KAgentic AI | Anti-abuse | Anti-abuse systems | Architecture ownership | Artificial IntelligenceSenior-level Full TimeKirkland, WA, USA9h ago
-
Software Engineer, AI-Empowered Security USD 147K-211KAI Security | API Design | Automation | Backend Development | Cloud ComputingBenefits | Bonus | Equity | Health insurance | Paid time offMid-level Full TimeSunnyvale, CA, USA; Kirkland, WA, USA9h ago
-
800-53 | Alerting | Audit Logging | Audit tooling | Boundary ProtectionSenior-level Full TimeNew York, NY, USA; Cambridge, MA, …9h ago
-
AI/ML | AI/ML Infrastructure | Agent Orchestration | Automated Debugging | C++Senior-level Full TimeSunnyvale, CA, USA; Kirkland, WA, USA9h ago
-
Senior Security Researcher USD 119K-261KAdversary Emulation | Anomaly Detection | C++ | Cloud Security | Command and controlSenior-level Full TimeRedmond, WA, US; Reston, VA, US13h ago
-
AWS | Automation | Azure | Cloud Security | Cortex XSOAR401k program | Car discounts | Cruise discounts | Dental benefits | Employee assistance programSenior-level Full TimeFort Worth, TX, US13h ago
-
Security Engineer, Detection and Response USD 230K-260KAWS | Adversary Emulation | Azure | Blue Team | Cloud SecurityEquity | Flexible work options | Health benefits | On-call rotationSenior-level Full TimeSan Francisco, California17h ago
-
Application Security Engineer USD 210K-300KAPI Security Top 10 | AWS | Advanced Security | Application Security | AuthenticationSenior-level Full TimeMiami, FL19h ago
-
Application Security Engineer USD 195K-244KAI Agents | API Security Top 10 | AWS IAM | Advanced Security | Application SecuritySenior-level Full TimeSeattle, WA19h ago
-
BEV | Bayesian Methods | CUDA | Machine Learning | Metrics OptimizationSenior-level Full TimeFoster City, CA19h ago
-
Principal Software Engineer, Cryptography USD 254K-336KAppArmor | Architecture Review | C++ | Certificate Systems | Cryptographic agilitySenior-level Full TimeBoston, Massachusetts, United States; Costa Mesa, …20h ago
-
DevOps Engineer USD 129K-171KAir-gapped | Air-gapped networks | Ansible | Argo CD | Automated testingMid-level Full TimeReston, Virginia, United States20h ago
-
Manager, Enterprise Security Engineering USD 166K-220KAWS | AWS CDK | Azure | CI/CD | Cloud SecurityMid-level Full TimeWashington, District of Columbia, United States20h ago