40 threat detection engineer jobs at 34 companies in California
1mo
Save
Mark Applied
Hide
1mo
Engineer II, Threat Detection - Windows (Hybrid)
Sunnyvale or New York City or Austin or Redmond
$100k-$145k/yrHybridFull Time
CrowdStrikeNASDAQ: CRWD: AI-native platform for cybersecurity and threat protection.
4+ YOEAbility to analyze malware and intrusion telemetry, author behavioral detections for Windows endpoints, use Python/PowerShell for automation, and collaborate with threat intelligence; U.S. citizenship or green card required for CJIS eligibility.
ID.me: Private American digital identity wallet and identity-verification helping people securely access government, healthcare, and commercial services.
2+ YOE2+ years security engineering/ops experience; proficiency with Splunk/Elastic/Chronicle/Logstash, Python and SQL, YARA-L/Sigma detection formats, LLM APIs/AI literacy, cloud-scale log management, MITRE ATT&CK, and IaC (Terraform/Git).
Broadcom Inc.NASDAQ: AVGO: Global technology leader in semiconductors and infrastructure software.
12+ YOEBachelor's and 12+ years, master's and 10+ years, or PhD and 7+ years; network security and IDS signature experience; Python, Docker, Kubernetes, AI systems, communication, and U.S. work authorization required.
San Francisco or New York City or Los Angeles or Seattle or United Kingdom or Ireland or Poland or Germany or Australia
$175k-$260k/yrRemoteFull Time
Whatnot: Live shopping marketplace connecting buyers and sellers.
5+ YOE5+ years in cyber incident response or a related security field; bachelor's degree or equivalent; experience with SOAR, EDR, NDR, SIEM, AWS, and GCP; strong incident documentation and communication skills.
Creative Artists Agency: Entertainment and sports talent agency.
6+ YOESenior cybersecurity professional with 6+ years experience in offensive and defensive security, vulnerability management, threat detection, incident response, cloud and infrastructure security, scripting (PowerShell, Python, JavaScript), and integrating automation and SIEM/SOAR tooling.
PowerShell, Python, JavaScript, MITRE ATT&CK, NIST CSF, ISO27001, Center for Internet Security, OWASP, CI/CD, Security Orchestration Automation and Response, Security Information and Event Management, Vulnerability Scanning, Security Threat Feeds, Red Team Tooling
6+ YOE6+ years in security/SRE/infrastructure with security focus; experience building detection, SIEM, EDR (SentinelOne), cloud (AWS), scripting (Python/Go), and strong incident detection and response skills.
LenelS2, Brivo, Genetec, Honeywell, Cisco Meraki, Okta, Microsoft Azure, Microsoft Teams, Slack, ServiceNow, DocuSign, Avigilon Alta, Descartes Visual Compliance, SentinelOne, SIEM, AWS, Python, Go
SpaceXNasdaq: SPCX: Designing, manufacturing, and launching advanced rockets and spacecraft.
2+ YOEBachelor's in STEM or 2+ years info security experience; OS auditing and network/host collection experience; incident response, detection development, and familiarity with Elastic/Splunk/SIEM; scripting and forensics preferred.
DTEX Systems: DTEX is a cybersecurity helping organizations prevent insider threats with behavioral intelligence and risk-adaptive security.
3+ YOE3+ years full-stack development (Python, Django/Flask, React/TypeScript), deep system knowledge (Windows/Mac/Linux), cybersecurity and detection engineering experience, familiarity with data pipelines, RESTful APIs, AWS, QE/test automation and CI/CD, strong communication.
United States or San Francisco or California or Washington or Colorado or New York City or Illinois
$138k-$229k/yrOnsiteFull Time
Flexport: Global logistics and supply chain technology platform.
5+ YOERequires 5–8 years in detection engineering, incident response, or threat hunting; programming proficiency; SIEM or detection pipeline experience; and hands-on security incident response.
Tata Consultancy ServicesBSE: 532540: Global leader in IT services, consulting, and business solutions.
5+ YOERequires 5–7 years of cybersecurity experience, including 2+ years with Microsoft Defender for Endpoint, threat hunting, incident response, detection engineering, and strong communication and training abilities.
Microsoft Defender for Endpoint, Microsoft 365 Defender, Kusto Query Language (KQL), Splunk Enterprise Security, Splunk Processing Language (SPL), Splunk User Behavior Analytics (UBA), MITRE ATT&CK, Windows, Active Directory, Azure AD, Kerberos, NTLM, PowerShell, Python, NIST, SANS
Strava: Consumer fitness and social-network app helping athletes track, analyze, share, and improve their activities worldwide.
Requires experience building or scaling detection engineering or security operations programs, incident command, threat intelligence, detection strategy, security vendors, automation or AI/ML, and executive communication.
Northwood Space: Northwood is an end-to-end ground infrastructure provider for space missions, delivering hardware, software, and network services.
5+ YOE5+ years SOC/IR experience, SIEM and forensics skills, Python/PowerShell for automation, endpoint and Linux forensics, ability to obtain TS/SCI, threat hunting and incident response for distributed satellite infrastructure.
Saronic: Developing autonomous surface vessels for defense and maritime applications.
4+ YOE4+ years in CTI/threat hunting/detection engineering, intelligence lifecycle fluency, software engineering for automation, MITREATT&CK/STIX/TAXII familiarity, ability to obtain U.S. security clearance.
TikTok: Short-form mobile video and social media platform.
Experience in 24/7 security operations, SIEM/EDR proficiency, detection engineering and threat hunting, scripting for automation, and knowledge of attacker tactics and MITRE ATT&CK.