711 detection engineer jobs at 484 companies in United States
2w
Save
Mark Applied
Hide
2w
Detection Engineer
United States
$100k-$160k/yrRemoteFull Time
Artemis: AI-native cybersecurity platform helping enterprises detect, investigate, and respond to threats across digital environments.
5+ YOERequires 5+ years of cybersecurity and detection engineering experience, proficiency in Sigma, KQL, SPL, or YARA-L, Python, MITRE ATT&CK, detection-as-code, AI-assisted detection, and anomaly detection.
New York or San Francisco or Austin or Seattle or United States
$269k-$330k/yrOnsiteFull Time
Fluidstack: Building and operating civilization-scale data center infrastructure for AI.
8+ YOE8+ years in security operations/detection engineering or incident response; experience building detection engineering programs, cloud and endpoint telemetry detections, Python automation, incident response leadership, and detection-as-code pipelines.
GuidePoint Security: Private cybersecurity services and solutions firm serving businesses and government agencies with consulting, engineering, and managed security.
Requires active TS/SCI clearance, network traffic analysis and threat detection experience, Suricata experience, offensive security knowledge, MITRE ATT&CK familiarity, and understanding of networking protocols and OSI layers.
Boston or New York City or Los Angeles or San Francisco
$230k-$330k/yrOnsiteFull Time
Suno: Private AI music platform that helps people create complete songs from text prompts.
6+ YOE6+ years in detection and response, strong AWS-native detection experience, detection-as-code mindset, incident response ownership, and interest in detecting AI/ML abuse.
Macquarie GroupASX: MQG: Global financial services group specializing in asset management and advisory.
3+ YOE3–5 years in detection engineering or incident response; strong SIEM and threat hunting experience; detection-as-code, Git and CI/CD experience; knowledge of MITRE ATT&CK and cloud/security tooling.
MITRE ATT&CK, Splunk ES, Google SecOps, Sumo Logic, Git, GitHub, Bitbucket, CloudBees, AWS, Azure, GCP, GitHub Copilot, Claude Code
United States or San Francisco or Illinois or Colorado or New York City
$160k-$235k/yrRemoteFull Time
DoorDashNYSE: DASH: Technology enabling local on-demand delivery and commerce.
7+ YOERequires 7+ years in secure coding, alert development, and detection engineering; detection-as-code pipelines; automation; cloud systems; SIEM querying; Python or Go; and cross-functional security collaboration. Snowflake, Cortex, and Google SecOps preferred.
Dropzone AI: Private Seattle cybersecurity software providing autonomous AI agents for enterprise security operations teams.
5+ YOE5+ years detection engineering experience, deep SIEM and telemetry expertise, MITRE ATT&CK knowledge, strong detection development and communication skills, startup mindset.
ThreatLocker: Privately held cybersecurity software providing Zero Trust endpoint, cloud, and network protection to businesses worldwide.
3+ YOE3+ years in information security with 2+ years EDR/ITDR experience, detection rule development experience, strong Windows forensics and MITRE ATT&CK knowledge, analytical and communication skills.
Sigma, YARA, Snort, MITRE ATT&CK, Endpoint Detection and Response (EDR), Identity Threat Detection and Response (ITDR)
ONEOKNYSE: OKE: Publicly traded U.S. midstream transports natural gas, NGLs, refined products and crude oil for energy markets.
4+ YOEBachelor's degree in Engineering/Engineering Technology/Computer Science required; 4+ years related experience preferred; experience with Python, Java, PowerShell; knowledge of hydraulics, leak detection, SCADA; ability to provide 24/7 support and manage multiple projects.
InstacartNasdaq Global Select Market: CART: Public grocery technology serving retailers, shoppers, consumers, and brands through marketplace, enterprise, advertising, and delivery platforms.
6+ YOERequires 6+ years in detection engineering, incident response, or offensive security; cloud platform experience; macOS telemetry expertise; detection-as-code and CI/CD experience; programming proficiency; and relevant security certifications.
The Carlyle GroupNasdaq Global Select Market: CG: Public investment firm serving institutional investors, financial advisors, and portfolio companies through private equity, credit, and AlpInvest.
5+ YOEBachelor's required,5+ years cybersecurity experience,4+ years detection engineering and threat intelligence,hands-on detection development and tuning,automation and API integration experience,experience with SIEM/EDR/SOAR and detection languages.
Detection Engineer – Night Shift (Wed–Sat, 5pm–3am MST)
United States
$97k-$138k/yrRemoteFull Time
ZscalerNASDAQ: ZS: Cloud-native Zero Trust cybersecurity platform for digital transformation.
Work Wed–Sat 5pm–3am MST. Experience with EDR and one or more detection domains (Endpoint, Identity, Network, Cloud). Proficiency with query languages (SQL, Lucene). Familiarity with AI tools and automation for detection engineering.
cFocus Software Incorporated: Private IT services firm providing cybersecurity, cloud, geospatial, and enterprise software services to U.S. federal agencies.
3+ YOEActive Public Trust clearance, BS in CS/IT or related, 3+ years threat hunting/adversary emulation, experience querying large datasets, Python and PowerShell scripting, and detection development in SIEM (Splunk ES or Microsoft Sentinel).
Python, PowerShell, Splunk ES, Microsoft Sentinel, SIEM
Future Secure AI: Private enterprise AI building and operating bespoke AI-Workers that automate complex, high-stakes workflows.
5+ YOE5+ years in detection engineering/security operations, strong Python or Go scripting, experience with large-scale logging/SIEM platforms, AWS security knowledge, and a bias for automation.
WHOOP: Wearable technology developing health and fitness tracking devices.
4+ YOE4+ years in information security, detection engineering, or security operations; experience building detections across cloud, identity, endpoint, or application; familiarity with YARA, SIGMA, Suricata; strong scripting (Python/Go/PowerShell); cloud/SaaS telemetry expertise; communications skills;Bachelor’s degree in CS/Info Security or related fiel...
Regions Financial CorporationNYSE: RF: Full-service financial institution offering banking, investment, and insurance services.
8+ YOERequires a high school diploma or GED and 8 years of information security or information technology education and/or experience. Strong Splunk, detection engineering, threat hunting, and cybersecurity skills required.
Gen DigitalNasdaq: GEN: Provides cybersecurity, identity, privacy, and financial wellness.
Extensive security/platform engineering experience building and operating logging, telemetry, and detection pipelines; strong technical leadership, distributed systems, cloud-native and observability experience; bachelor's or equivalent.
Prudential FinancialNYSE: PRU: Global leader in financial services, insurance, and investment management.
3+ YOE3+ years in detection engineering/IR/threat hunting; develop SIEM/XDR detections; proficiency with Splunk SPL or Microsoft KQL, SQL; experience with Python, PowerShell, REST/GraphQL APIs; apply MITRE ATT&CK.
TargetNYSE: TGT: An American general merchandise retailer.
5+ YOEFour-year CS/CE degree preferred,5+ years professional experience,proficiency with Kotlin/Java,Spring Boot,Kafka,SQL/NoSQL DB,React,Gradle,unit and integration testing;strong analytical and communication skills;interest in fraud/cyber detection.
Kotlin, Java, Spring Boot, Kafka, SQL, NoSQL DB, React, Gradle