Назад
Company hidden
13 дней назад

Senior Detection Engineer (AI-ML Focus)

110 000 - 165 300$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Detection Engineer (AI-ML Focus) (SIEM, Cybersecurity, AI): Building, tuning, and scaling threat detection capabilities across enterprise SIEM and data lake platforms with an accent on detection-as-code, MITRE ATT&CK coverage, and AI-assisted rule development. Focus on validating and optimizing detection logic, reducing false positives, analyzing telemetry at scale, and translating emerging AI-enabled threats into detection opportunities.

Location: Cincinnati General Offices, United States. Candidates should be prepared to consider relocation opportunities throughout their career as business needs and development opportunities arise.

Salary: $110,000–$165,300 per year, plus bonus if applicable and benefits.

Company

Procter & Gamble is a global consumer goods corporation with an enterprise information security organization.

What you will do

  • Design, build, test, and tune SIEM and data lake detection rules mapped to MITRE ATT&CK, threat intelligence, and business risk.
  • Manage detection content as code through Git branching, pull requests, reviews, and CI/CD deployment pipelines.
  • Investigate and suppress false positives, improving alert fidelity and reducing SOC case volume.
  • Use AI agents, LLM-assisted workflows, and MCP tooling to accelerate rule development, validation, telemetry analysis, and coverage assessment.
  • Collaborate with Threat Intelligence, Threat Hunting, SOC, and data engineering teams on detection handoffs, alert feedback, telemetry quality, and log-source onboarding.
  • Develop detections for emerging threats, CVEs, active campaigns, and AI-enabled attacks.

Requirements

  • Bachelor’s degree in a technical or IT field and/or at least 5 years of relevant experience in detection engineering, security operations, or threat detection.
  • Proven experience writing and tuning SIEM detection rules and analytics.
  • Strong understanding of the MITRE ATT&CK framework and detection coverage.
  • Proficiency in Python for automation, scripting, and tooling.
  • Experience with Git-based workflows and familiarity with EDR, identity, cloud, network, and proxy log sources.
  • Immigration sponsorship is not available for this role.

Nice to have

  • Detection-as-code experience, including YAML-based Sigma or custom rule formats.
  • Knowledge of AI/LLM capabilities and security implications, including MCP servers or AI-assisted development tools.
  • Experience with SOAR platforms, multiple query languages, Kubernetes, cloud-native architectures, or OT/ICS environments.
  • CISSP, CCSP, OSCP, GCDA, GCIA, or relevant cloud and ML/AI certifications.

Culture & Benefits

  • Quarterly review of operational and project deliverables.
  • Continuous mentoring and coaching from the manager.
  • Total rewards include salary, bonus if applicable, and benefits.
  • Equal employment opportunity and applicant accommodation support.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →