10 часов назад
Sr. Detection Engineer
130 900 - 169 400$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Sr. Detection Engineer (Cybersecurity): Writing and validating production detection logic across endpoint, identity, cloud, SaaS, network, and application telemetry with an accent on adversary tradecraft, detection fidelity, and continuous coverage verification. Focus on building adversary-simulation tooling, sandbox and detonation infrastructure, automated regression testing, exploit analysis, and AI-assisted security workflows.
Location: Chicago, Illinois, United States of America; flex/hybrid
Salary: $130,900–$169,400 base salary annually, plus possible annual incentive compensation and long-term equity participation.
Company
provides financial market infrastructure, tradable products, and trading, clearing, and investment solutions for market participants worldwide.
What you will do
- Write, tune, and maintain production detection logic across SIEM, EDR, identity, and cloud platforms.
- Validate detections by executing targeted attacker techniques and confirming reliable alerts and benign-activity behavior.
- Build adversary-simulation tooling, reusable validation packages, automated regression tests, and coverage reporting.
- Operate sandbox and detonation infrastructure for exploit triage, malware analysis, and safe technique development.
- Evaluate exploit code, produce threat-hunting validation content, and translate findings into detection and remediation guidance.
- Support complex incident investigations and apply AI and LLM tooling to triage, enrichment, exploit analysis, and detection development.
Requirements
- 5+ years of hands-on security engineering experience with substantial detection-authoring experience.
- Strong command of KQL, Sigma, YARA-L, or an equivalent detection query language.
- Practical knowledge of attacker techniques across Windows, Active Directory, Entra ID, AWS, Azure, SaaS, and containerized workloads.
- Fluency in at least one tooling language such as Python, Go, C#, PowerShell, or Bash.
- Experience with Windows event logs, EDR telemetry, cloud audit logs, identity sign-in data, virtualization, containers, infrastructure-as-code, and CI/CD.
- Must be legally authorized to work in the United States without current or future employer sponsorship.
Nice to have
- Public detection content, tooling, or security research.
- Atomic testing frameworks, continuous control validation, MITRE ATT&CK coverage analysis, or reverse engineering.
- AI engineering experience involving agentic workflows, tool and MCP integration, or LLM-application abuse testing.
- Experience in regulated or large enterprise environments, especially financial services.
- Mentoring experience or a record of creating internal training materials.
Culture & Benefits
- Flexible hybrid work environment with an emphasis on professional and personal development.
- Health, dental, vision, telemedicine, and mental health benefits.
- Paid vacation, personal days, sick days, community service days, parental leave, and fertility benefits.
- 2:1 401(k) match up to an immediate 8% match, employee stock purchase plan, and tax savings accounts.
- Tuition assistance, education opportunities, charitable giving match, wellness facilities, and office meals and refreshments.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
11 часов назад
Senior Information Security Ops Analyst (Cybersecurity)
135 000 - 175 000$
2 дня назад
Senior Security Operations Analyst (Detection & Response)
117 800 - 166 950$
2 дня назад
Detection Engineer (Security)
147 000 - 224 000$
18 часов назад
Manager / Sr. Manager, SecOps & Cyber Defense (Cybersecurity)
185 000 - 235 000$
14 часов назад
SOC Analyst (Cybersecurity)
96 086 - 111 683$
55 минут назад
Senior Detections Engineer (Cybersecurity)
100 000 - 180 000$