11 threat detection engineer jobs at 10 companies in Luling, TX

1mo
Save
Mark Applied
Hide
Engineer II, Threat Detection - Windows (Hybrid)
Sunnyvale or New York City or Austin or Redmond
$100k-$145k/yr HybridFull Time
CrowdStrike
CrowdStrikeNASDAQ: CRWD: Provides cloud-native endpoint protection and cybersecurity services.
4+ YOEAbility to analyze malware and intrusion telemetry, author behavioral detections for Windows endpoints, use Python/PowerShell for automation, and collaborate with threat intelligence; U.S. citizenship or green card required for CJIS eligibility.
PowerShell, Python, EDR, Regular expressions, MITRE ATT&CK
3w
Save
Mark Applied
Hide
Senior Detection Engineer
New York City or San Francisco or Austin or Seattle
$176k-$218k/yr OnsiteFull Time
Fluidstack
Fluidstack: Provides high-performance cloud GPU infrastructure for AI development.
5+ YOE5+ years detection engineering or threat hunting experience; hands-on SIEM/EDR (Splunk, Elastic, CrowdStrike); detection logic mapped to MITRE ATT&CK; Python/SQL scripting; strong writing and incident response skills.
Splunk, Elastic, CrowdStrike, Python, SQL, MITRE ATT&CK, Sigma
1mo
Save
Mark Applied
Hide
Senior Research Engineer, Threat Intelligence
Austin or New York City
$140k-$150k/yr HybridFull Time
SecurityScorecard
SecurityScorecard: Provides continuous cybersecurity ratings and risk monitoring for organizations.
5+ YOE5+ years engineering experience in threat intelligence or detection engineering; production experience with Python and TypeScript/Node; cloud (AWS), containers, CI/CD; proficiency with STIX/TAXII/MISP/MITRE; YARA/Sigma/STIX patterning; applied LLM systems experience.
Python, TypeScript, Node, STIX 2.1, TAXII 2.1, MISP, MITRE ATT&CK, YARA, Sigma, STIX Patterning, AWS, CI/CD, Splunk, Kinesis, NetFlow, CEL, OPA, Golang, SQL
2w
Save
Mark Applied
Hide
Security Engineer, Cyber Threat Intelligence
Austin or San Diego
OnsiteFull Time
Saronic
Saronic: Building autonomous surface vessels for maritime defense operations.
4+ YOE4+ years in CTI/threat hunting/detection engineering, intelligence lifecycle fluency, software engineering for automation, MITREATT&CK/STIX/TAXII familiarity, ability to obtain U.S. security clearance.
MITRE ATT&CK, STIX, TAXII, Sigma, YARA, SIEM, MISP, LLMs
2mo
Save
Mark Applied
Hide
Principal Product Manager - Threat Detection Engine and Content (Hybrid)
Arlington or New York or Austin or Sunnyvale or Redmond
$160k-$250k/yr HybridFull Time
CrowdStrike
CrowdStrikeNASDAQ: CRWD: Provides cloud-native endpoint protection and cybersecurity services.
5+ YOE5+ years in product management for detection content, SIEM, XDR, cloud security; large-scale distributed systems; strong communication; willing to travel up to 20%; onsite 1-3 days/week; BA/BS, Master’s desirable.
Distributed Systems, Threat Detection, Security Analytics, Cloud Security, XDR, SIEM
2mo
Save
Mark Applied
Hide
Sr Cybersecurity Engineer
Austin, Texas, United States
$131k-$222k/yr HybridFull Time
PayPal
PayPalNASDAQ: PYPL: Digital platform for sending money and processing online payments.
3+ YOEBachelor's in a related field and 3+ years cybersecurity experience. Hands-on SIEM/EDR, incident response, detection engineering, threat hunting, scripting (Python/PowerShell/Bash), cloud security (WIZ), and use of tools like Splunk and CrowdStrike.
SIEM, EDR, Splunk, Google SecOps, Falcon CrowdStrike, Microsoft Defender, Python, PowerShell, Bash, WIZ, MITRE ATT&CK, Diamond Model, Sigma, YARA, NIST CSF, NIST 800-53, CIS Controls, CSA CCM, ISO 27001, SOC
2w
Save
Mark Applied
Hide
Senior Cybersecurity Engineer – Adversary Operations, Innovation & Purple Team Operations
Warren or Austin
HybridFull Time
General Motors
General MotorsNYSE: GM: Manufactures and sells automobiles and automotive parts globally.
Hands-on experience in adversary emulation, purple/red teaming, threat hunting, and detection engineering; experience with endpoint, cloud, network, and logging validation; tooling and scripting for adversary testing.
MSV, AWS, GCP, Azure, ATT&CK
6d
Save
Mark Applied
Hide
OT Network & Site Infrastructure Engineer
Haskell County or Amarillo or Houston or Dallas or Abilene or Pampa or San Francisco or New York City or Denver or Austin or Calgary or Toronto
$118k-$137k/yr HybridFull Time
Intersect
IntersectNASDAQ: GOOGL: Develops-located data centers and renewable energy infrastructure.
5+ YOEBachelor's degree or equivalent industrial experience; 5+ years in network and infrastructure engineering focused on OT, industrial control, or utilities; expertise with industrial hardware, segmentation, remote access, SCADA, and threat detection.
Palo Alto, Cisco, Hirschmann, Site-to-Site VPNs, Zero Trust Network Access (ZTNA), Nozomi, Claroty, Dragos, CrowdStrike, SCADA Ignition, RTU
2w
Save
Mark Applied
Hide
Application Security Engineer - ADR
Quincy or Toronto or Austin or Atlanta
$120k-$203k/yr OnsiteFull Time
State Street
State StreetNYSE: STT: Provides investment servicing and management to institutional investors.
6+ YOEHands-on experience with application security, ADR/RASP/WAAP, SAST/DAST/SCA, cloud (Azure/AWS), DevSecOps, secure SDLC, threat detection, incident response, and relevant security certifications.
Java, .NET, Python, Node.js, Azure, AWS, SAST, DAST, SCA, API Security, Container Security, Runtime Application Self-Protection (RASP), Web Application and API Protection (WAAP), Ansible, Terraform, Kubernetes, Infrastructure as Code (IaC), Agile, DevOps
2w
Save
Mark Applied
Hide
Développeur(se) principal(e), Opérations de sécurité et intervention en cas d’incident / Senior Security Operations and Incident Response Engineer
Austin or Montreal
$160k-$272k/yr RemoteFull Time
Unity
UnityNYSE: U: Provides software for creating real-time 3D interactive content.
Hands-on SecOps/Incident Response experience, detection engineering, threat hunting, cloud (AWS/GCP/Azure) knowledge, scripting/APIs for automation, mentoring experience, and strong investigative and communication skills.
AWS, GCP, Azure, APIs
3mo
Save
Mark Applied
Hide
Principal Engineer, Security Operations
Austin, Texas, United States
HybridFull Time
Digital Turbine
Digital TurbineNASDAQ: APPS: Platform for mobile application distribution and advertising monetization.
12+ YOE12+ years cybersecurity with deep expertise in security operations, threat detection, or incident response; hands-on SOC for GCP/AWS; SOC tooling like CrowdStrike, Orca; MIGRATION to MSSP and compliance knowledge; strong analytical and communication skills; CISSP/GCIH/GCFA/CISM/CCFR; Google Cloud certifications preferred.
CrowdStrike, Orca, SIEM, SOAR, log management