Senior Engineer – Threat Detection Operations
Core
Design, develop, deploy, and maintain production-ready security detections to detect and respond to sophisticated threats using telemetry and analytics.
Role type
Senior IC detection engineering specialist
Builds
Scalable, high-fidelity detection logic and security monitoring capabilities
Domain
Cybersecurity, threat detection, security analytics
Deliverable
production ML models | product features
Required skills
detection engineering, threat intelligence translation, behavioral/signature/anomaly detection, SIEM/EDR/cloud security platforms, scripting (Python/PowerShell/Bash), MITRE ATT&CK frameworks, security telemetry analysis
Preferred skills
detection-as-code, CI/CD pipelines, statistical analysis, anomaly detection, machine learning, behavioral analytics, graph-based threat detection, LLMs/AI workflows
Technologies
SIEM, EDR, AWS, GCP, Azure, Python, PowerShell, Bash, MITRE ATT&CK
Responsibilities
Design and deploy detections across security platforms; translate threat intelligence into detection logic; tune behavioral and anomaly-driven detections; collaborate with threat intelligence and incident response teams; validate coverage against adversary TTPs; measure detection performance; improve detection engineering practices
Seniority
Senior, hands-on IC