43 detection engineer jobs at 32 companies in Illinois

1w
Save
Mark Applied
Hide
Senior Detection Engineer
United States or San Francisco or Illinois or Colorado or New York City
$160k-$235k/yr RemoteFull Time
DoorDash
DoorDashNYSE: DASH: Technology enabling local on-demand delivery and commerce.
7+ YOERequires 7+ years in secure coding, alert development, and detection engineering; detection-as-code pipelines; automation; cloud systems; SIEM querying; Python or Go; and cross-functional security collaboration. Snowflake, Cortex, and Google SecOps preferred.
SQL, SPL, KQL, Python, Go, Snowflake, Cortex, Google SecOps, MITRE ATT&CK, D3FEND, SIEM
1w
Save
Mark Applied
Hide
Cybersecurity Detection & Response Engineer
Plainfield or Tinley Park or Chicago or Evansville or Highland
$78k-$153k/yr OnsiteFull Time
Old National Bank
Old National BankNASDAQ: ONB: Regional financial services institution and community-focused bank.
4+ YOEBachelor’s degree or equivalent experience; 4+ years in cybersecurity; Sentinel, Defender XDR, and KQL expertise; detection engineering, incident response, scripting or automation experience; MITRE ATT&CK and regulated security knowledge.
Microsoft Sentinel, Microsoft Defender XDR, MITRE ATT&CK, KQL, Logic Apps, PowerShell, Python, APIs, AI
3w
Save
Mark Applied
Hide
Principal Engineer - Gas Detection
Northbrook, Illinois, United States
$142k-$155k/yr HybridFull Time
UL Solutions
UL SolutionsNYSE: ULS: Global leader in applied safety science testing and certification.
5+ YOEBachelor’s degree in engineering, 5–10 years of gas and vapor detection experience, NFPA 72 knowledge, safety engineering expertise, technical writing, presentation, project management, and communication skills.
NFPA 72, ISO Standards, ULSE Standards, Certification Requirement Decisions (CRDs), Technical Guidance Documents (TGDs), Standardized Appendix Pages (SAPs), Follow-up Inspection Instructions (FUIIs)
5d
Save
Mark Applied
Hide
Threat Detection & Response Engineer -- Senior Expert
United States or Illinois
$152k-$222k/yr RemoteFull Time
Allstate
AllstateNYSE: ALL: A leading provider of insurance and protection solutions.
Advanced hands-on detection engineering across SIEM and EDR/XDR, AI/ML pipeline development, KQL/SQL/Sigma, Python or Go, ATT&CK mapping, automation, and technical project delivery.
KQL, SQL, Sigma, Python, Go, API, Machine Learning (ML), MITRE ATT&CK Framework, Endpoint Detection and Response (EDR), Security Information and Event Management (SIEM), Security Orchestration, Automation, and Response (SOAR), XDR, CI/CD
2mo
Save
Mark Applied
Hide
Endpoint Detection & Response Engineer
Scott Air Force Base, Illinois, United States
$87k-$198k/yr HybridFull Time
Booz Allen Hamilton
Booz Allen HamiltonNYSE: BAH: Global firm providing management, technology, and engineering consulting services.
Experience deploying, configuring, and optimizing enterprise EDR solutions; systems administration skills; ability to produce technical documentation; Secret clearance required; HS diploma or GED required.
Carbon Black EDR, CrowdStrike Falcon, SentinelOne, FireEye HX, McAfee MVision, Microsoft Defender for Endpoint (MDE), Tanium, Elastic Endpoint Protection, SIEM, ITSM, TIP, Splunk
2mo
Save
Mark Applied
Hide
Endpoint Detection & Response Engineer
Scott AFB, Illinois, United States
$87k-$198k/yr OnsiteFull Time
Booz Allen Hamilton
Booz Allen HamiltonNYSE: BAH: Global firm providing management, technology, and engineering consulting services.
Experience deploying/configuring enterprise EDR solutions (e.g., CrowdStrike, Carbon Black, SentinelOne, MDE), systems administration, optimizing EDR data and integrations, producing technical documentation, and holding or being eligible for a Secret clearance. HS diploma/GED required.
Carbon Black EDR, CrowdStrike Falcon, SentinelOne, FireEye HX, McAfee MVision, Microsoft Defender for Endpoint, Tanium, Elastic Endpoint Protection, SIEM, ITSM, TIP, Splunk
4d
Save
Mark Applied
Hide
Senior Security Engineer, Detection & Response
United States or San Francisco or California or Washington or Colorado or New York City or Illinois
$138k-$229k/yr OnsiteFull Time
Flexport
Flexport: Global logistics and supply chain technology platform.
5+ YOERequires 5–8 years in detection engineering, incident response, or threat hunting; programming proficiency; SIEM or detection pipeline experience; and hands-on security incident response.
Python, Go, Panther, Elastic, Splunk, CI/CD, MITRE ATT&CK, Kubernetes, Slack
2d
Save
Mark Applied
Hide
Detection Engineering Technical Leader
Denver or Saint Paul or Boulder or Houston or Knoxville or Chicago or Philadelphia or Birmingham or Portland or Minneapolis or Elk Grove Village or Dallas or Atlanta or Little Rock or Hillsboro or Colorado Springs
$151k-$191k/yr RemoteFull Time
Splunk
Splunk: Splunk is a private Cis-owned enterprise software providing security and observability solutions to organizations worldwide.
8+ YOEBachelor’s with 8+ years, master’s with 6+ years, or PhD with 3+ years in security operations; Splunk Enterprise Security, SPL, AI/ML, threat intelligence, and ATT&CK experience required.
Splunk Enterprise Security, SPL, GitHub, GitLab, Bitbucket, CI/CD, AWS, GCP, Azure, CloudTrail, GCS, Azure Monitor, Python, ATT&CK
2w
Save
Mark Applied
Hide
Sr. Security Engineer - Cloud Threat Detection
Charlotte or Columbus or Hartford or Chicago
$128k-$193k/yr HybridFull Time
The Hartford
The HartfordNYSE: HIG: Provider of property and casualty insurance and employee benefits.
5+ YOERequires 5+ years of cybersecurity experience, hands-on AWS and GCP security operations, enterprise SIEM detection engineering, cloud telemetry analysis, documentation, and SOC analyst mentoring.
AWS, Google Cloud Platform (GCP), AWS GuardDuty, AWS CloudTrail, AWS VPC Flow Logs, AWS Config, Google Security Command Center (SCC), Google Cloud Audit Logs, Google Cloud Logging, Identity and Access Management (IAM), Orca, CrowdStrike, Wiz, Splunk, Splunk Enterprise Security, Microsoft Sentinel, QRadar, Cortex XSIAM, MITRE ATT&CK, Python, PowerShell, Bash, SentinelOne, Microsoft Defender XDR for Endpoint, SPL, SOAR
2w
Save
Mark Applied
Hide
Sr. Security Engineer - Cloud Threat Detection
Hartford or Charlotte or Columbus or Chicago
$128k-$193k/yr HybridFull Time
The Hartford
The HartfordNYSE: HIG: Provider of property and casualty insurance and employee benefits.
5+ YOERequires 5+ years of cybersecurity experience, hands-on AWS and GCP security, enterprise SIEM detection development, cloud telemetry investigation, documentation, analyst mentoring, and US work authorization without sponsorship.
AWS, Google Cloud Platform (GCP), AWS GuardDuty, AWS CloudTrail, AWS VPC Flow Logs, AWS Config, Google Security Command Center (SCC), Google Cloud Audit Logs, Google Cloud Logging, Identity and Access Management (IAM), Orca, CrowdStrike, Wiz, Splunk, Splunk Enterprise Security, Microsoft Sentinel, QRadar, Cortex XSIAM, MITRE ATT&CK, SPL, Python, PowerShell, Bash, SOAR, SentinelOne, Microsoft Defender XDR for Endpoint
4w
Save
Mark Applied
Hide
Staff Security Engineer, Cloud and Product Security
Arizona or California or Colorado or District of Columbia or Florida or Georgia or Iowa or Illinois or Massachusetts or Maryland or Michigan or Minnesota or Montana or Nebraska or North Carolina or New Hampshire or New Jersey or Nevada or New York or Ohio or Oregon or Pennsylvania or Rhode Island or Tennessee or Texas or Utah or Washington
$198k-$220k/yr RemoteFull Time
Lob
Lob: Direct-mail automation platform for businesses, providing APIs, printing, routing, fulfillment, and delivery.
8+ YOE8+ years security engineering experience with cloud security, detection engineering, incident response, and application security; hands-on AWS, IAC, and detection tooling experience; ability to drive security work through engineering teams.
AWS, Terraform, Nomad, Cloudflare, SIEM, SCA, SAST, DAST, Kubernetes, WAF
1mo
Save
Mark Applied
Hide
Senior Security Engineer II
Chicago, Illinois, United States
$149k-$235k/yr HybridFull Time
Braze
BrazeNASDAQ: BRZE: Customer engagement platform for cross-channel marketing and analytics.
Deep hands-on cloud security experience (AWS primary, GCP, Kubernetes), incident response, detection engineering, Python and Terraform experience, plus strong architecture and threat-modeling skills.
AWS, GCP, Kubernetes, MongoDB, CrowdStrike, Tenable, Terraform, Python
2mo
Save
Mark Applied
Hide
Senior Product Security - Senior DevSecOps Engineer
New York City or San Francisco or Chicago or Greenville
$120k-$200k/yr HybridFull Time
Beast Industries
Beast Industries: Privately held creator-led holding producing digital entertainment, snacks, software, and consumer brands for global audiences.
5+ YOE5+ years in DevSecOps/cloud or product security; deep AWS and GCP experience; advanced Terraform and Python skills; SIEM/SOAR and detection engineering; GitHub Actions and CI/CD security expertise.
AWS, GCP, Terraform, Python, Vault, AWS Secrets Manager, GCP Secret Manager, GitHub Actions, CI/CD, SIEM, SOAR, MITRE ATT&CK, Elastic SIEM, SentinelOne, CrowdStrike, Microsoft Defender, Okta, Microsoft Azure AD, Jamf, Microsoft Intune, Google Workspace
3w
Save
Mark Applied
Hide
Senior Security Engineer
Los Angeles or Chicago or New York City
$145k-$170k/yr RemoteFull Time
Wpromote
Wpromote: Full-funnel digital marketing agency serving brands through media, creative, data, strategy, and marketing technology.
5+ YOERequires 5+ years of security engineering experience, 4+ years of cloud security engineering, detection engineering, IAM, incident response, endpoint security, vulnerability management, automation, and infrastructure-as-code experience.
Google Workspace, GCP, Cloud IAM, SAML SSO, SCIM, OAuth, Terraform, SIEM, CrowdStrike Falcon, Python, Bash, Microsoft Excel
4w
Save
Mark Applied
Hide
Senior Security Engineer
Austin or Boston or Charleston or Charlotte or Chicago or Dallas or Durham or Harrisburg or Houston or Irvine or Kansas City or Los Angeles or Miami or Nashville or New York or Newark or Palo Alto or Pittsburgh or Portland or Raleigh or San Francisco or Seattle or Washington or Wilmington
$112k-$209k/yr HybridFull Time
K&L Gates
K&L Gates: Global law firm providing corporate, regulatory, litigation, and policy services to companies, public entities, institutions, and individuals.
7+ YOE7+ years cybersecurity/security engineering experience; expertise in cloud and hybrid security, DevSecOps, detection engineering, automation, incident response; Bachelor\u0002s or equivalent; relevant certifications preferred.
PowerShell, Python, REST APIs, Microsoft Graph, Azure, Microsoft Defender, Sentinel, Entra ID, Purview, Splunk, CrowdStrike, SIEM, EDR/XDR, MITRE ATT&CK
2mo
Save
Mark Applied
Hide
AI Cybersecurity Engineer
Chicago, Illinois, United States
$137k-$160k/yr OnsiteFull Time
Invenergy
Invenergy: Developer, owner, and operator of sustainable energy infrastructure.
7+ YOE7+ years in cybersecurity engineering or detection engineering; experience applying AI/ML to security; strong cloud, identity, endpoint, network, and data security knowledge; proficiency with SIEM and telemetry; eligible to work in the US without sponsorship.
SIEM, NIST CSF, MITRE ATT&CK, MITRE ATLAS, OWASP AI/LLM Top 10, Python, PowerShell
1w
Save
Mark Applied
Hide
Senior Security Engineer, IAM
Illinois or Kentucky or Kansas or Idaho or Delaware or Colorado or Nevada or Nebraska or Montana or Michigan or Maryland or Iowa or Florida or California or Utah or Ohio or New Jersey or Minnesota or Massachusetts or Indiana or Georgia or Arizona or Alabama or Wisconsin or Washington or Virginia or West Virginia or Oklahoma or Texas or Tennessee or Pennsylvania or North Carolina or New Mexico or New York or Missouri or Louisiana or Connecticut or Washington, D.C. or South Carolina or Oregon or New Hampshire
$130k-$195k/yr RemoteFull Time
Relativity
Relativity: Private legal data intelligence providing AI-powered e-discovery software to law firms, corporations, and government agencies.
8+ YOEBachelor's degree or equivalent experience; 8+ years in enterprise IAM/security engineering, or master's degree with 6+ years; expert identity platforms, protocols, threat detection, automation, and security frameworks.
Okta, Microsoft Entra ID, Ping, SailPoint, Saviynt, CyberArk, BeyondTrust, SAML, OpenID Connect (OIDC), OAuth 2.0, SCIM, LDAP, Kerberos, Python, Bash, PowerShell, AWS, Microsoft Azure, GCP, MITRE, NIST 800-63, Zero Trust, CISSP, CISM, GCIH, GCFA, CCSP, AWS Security Specialty, SC-300, AZ-500, SIEM, SOAR, UEBA, FIDO2, ZTNA, CIS Benchmarks, DISA STIGs, CI/CD, IaC, MFA, SSO
4w
Save
Mark Applied
Hide
SOC Engineer
Homewood, Illinois, United States
$90k-$115k/yr OnsiteFull Time
Lanco Group of Companies
Lanco Group of Companies: Private U.S. conglomerate manufacturing heavy equipment and providing terminal automation, supply-chain, and sports-entertainment services.
3+ YOEBachelor's or equivalent and 3+ years SOC experience, CompTIA Network+ and Security+ required; strong incident response, threat detection, and cross-functional communication skills.
Security Information and Event Monitoring (SIEM)
3w
Save
Mark Applied
Hide
Senior Datadog Security & Observability Engineer
United States or El Dorado Hills or Chicago
RemoteFull Time
Keeper Security
Keeper Security: Cybersecurity software providing password, secrets, remote-access and privileged-access protection to people and organizations.
4+ YOERequires 4+ years of production Datadog experience, Cloud SIEM, log pipelines, detection engineering, AWS, scripting, APIs, infrastructure-as-code, MITRE ATT&CK, and cross-functional communication.
Datadog, Datadog Cloud SIEM, SentinelOne, Wiz, MITRE ATT&CK, Claude, ChatGPT, Python, PowerShell, Datadog APIs, Terraform, AWS, Sigma
1w
Save
Mark Applied
Hide
Sr. Engineer, Cybersecurity - Threat Response Strategic Execution
Bellevue or Downers Grove or Frisco or Overland Park
$103k-$186k/yr OnsiteFull Time
T-Mobile
T-MobileNASDAQ: TMUS: The Un-carrier providing wireless and home internet services.
3+ YOEBachelor's degree plus 5 years or advanced degree plus 3 years required; Computer Science or Information Technology. Preferred experience in security software, technical project management, SOC/IR, SIEM, SOAR, EDR, and detection engineering.
SIEM, SOAR, EDR