Cyber Defense Operations Detection Engineering owns the end-to-end detection system that turns adversary activity into reliable, high-signal cases for investigation at incident speed. This role sits at the center of that system. You will own a detection portfolio: a named set of threat actors, techniques, and partner platforms for which you are singularly accountable for what we detect, what we stop detecting, and whether we can defend that answer to leadership, auditors, and incident reviewers. This is a hands-on portfolio role, not a program management role. This role is built for someone who has worked cases. You should have sat in a SOC seat, chased real adversary activity through telemetry, and felt the cost of a noisy detection on the receiving end. You will author and optimize detections yourself, working directly with our investigation and hunt partners to convert engagement findings into production detection logic. But the majority of your leverage comes from the decisions you make about the portfolio rather than the detections you write personally: what gets built, who builds it, what gets onboarded, and what gets turned off.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Education Level
Ph.D. or professional degree