Назад
Company hidden
9 часов назад

Director, Detection Engineering and Automation (Cybersecurity)

168 750 - 281 250$
Формат работы
hybrid
Тип работы
fulltime
Грейд
director
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Director, Detection Engineering and Automation (Cybersecurity): Leading the development of scalable detection and automation capabilities across endpoint, identity, network, and cloud environments with an accent on high-fidelity detections, cloud-native coverage, and operational response. Focus on building detection-as-code programs, integrating SIEM, SOAR, and EDR workflows, measuring detection effectiveness, and reducing cyber risk across the enterprise.

Location: Chicago, Illinois, United States; hybrid work with at least two days per week in person at an assigned hirify.global office

Salary: $168,750–$281,250 annually, with potential eligibility for an annual bonus and, for certain positions, long-term incentives.

Company

hirify.global provides credit information, risk management, and related data solutions while investing in cybersecurity and enterprise technology.

What you will do

  • Lead the Detection Engineering and Automation function as a center of excellence for high-fidelity detections across endpoint, identity, network, and cloud environments.
  • Define and execute detection engineering and automation strategy aligned with threat intelligence, enterprise risk, and organizational priorities.
  • Lead and scale a team of approximately 14 detection and automation engineers and one manager.
  • Own the detection lifecycle from prioritization and development through testing, deployment, tuning, and continuous optimization.
  • Integrate automation and response workflows across SIEM, SOAR, and EDR platforms to improve coverage and reduce manual effort.
  • Develop cloud-native detection capabilities, track detection metrics, and communicate posture, coverage gaps, platform health, and program progress to senior leadership.

Requirements

  • 10+ years of cybersecurity experience focused on detection engineering, security operations, or threat intelligence.
  • 3–5 years of people leadership experience managing teams or managers.
  • Experience building and scaling enterprise detection engineering programs, including detection development, tuning, operationalization, and continuous improvement.
  • Strong understanding of adversary tactics, techniques, and procedures, including practical use of the MITRE ATT&CK framework.
  • Deep expertise with SIEM, EDR, SOAR, detection rule development, automation workflow design, and detection-as-code methodologies.
  • Bachelor’s degree in Computer Science, Information Security, or a related field; equivalent experience may be considered.

Nice to have

  • Experience leading cloud detection initiatives across AWS, GCP, and Azure.
  • Experience evaluating enterprise-scale detection platforms and tooling.
  • Background in threat hunting, threat intelligence operationalization, or detection automation programs.
  • Experience in financial services, fintech, or another regulated industry.
  • Familiarity with version-controlled detection pipelines and a track record of reducing analyst toil.

Culture & Benefits

  • Medical, dental, and vision coverage with day-one eligibility, plus HSA and FSA options.
  • Company-paid life and disability coverage, with additional insurance and legal-plan options.
  • Paid parental leave, adoption assistance, fertility planning coverage, and caregiver support.
  • 401(k) with employer match, Employee Stock Purchase Plan, financial wellness resources, and career coaching.
  • Tuition reimbursement, flexible time off for exempt employees, paid holidays, commuter benefits, and paid volunteer time.
  • Well-being resources including therapy, coaching, meditation, and emotional support programs.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →