Detection and Response Engineer

North - United States

Hiring: Detection and Response Engineer Company: North Location: United States Job Posted Time: 2026-09-16 15:37:44 Employment Type: Remote Target Skills & Keywords : AWS, Agile, Azure, GCP, LLM, Linux, PowerShell, Python, Root Cause Analysis, SIEM, SOC, Splunk About the job Experience: •3–5 years of hands-on information security experience, with demonstrated depth in at least two of: detection engineering, incident response, security automation, or SOC operations •Hands-on experience writing, tuning, or maintaining detection content in a SIEM or NG-SIEM platform (e.g., CrowdStrike NG-SIEM, Splunk, Microsoft Sentinel) •Solid functional working knowledge of the MITRE ATT&CK framework and its practical application to detection engineering and gap analysis •Scripting or automation experience (Python, PowerShell, or similar) applied to security use cases AND/OR experience using LLM coding tools such as Claude Code, Gemini CLI, or Codex. •Solid understanding of networking, cloud infrastructure (AWS especially, but also Azure and GCP), Windows/Linux systems, and identity platforms Required Skills: •Design, build, and tune detection content (rules, correlation searches, use cases) across endpoint, network, cloud, and identity log sources •Perform ongoing coverage and gap analysis against the MITRE ATT&CK framework and actual log source volume, prioritizing based on real attack surface •Validate detection logic against real-world attack techniques from cyber threat intelligence and reduce false- positive rates without sacrificing efficacy •Maintain and version-control the detection rule repository, including documentation of coverage and known gaps •Triage, investigate, and contain security incidents and alerts across the environment •Conduct root cause analysis and structured post-incident reviews, feeding findings back into detection engineering •Document incident timelines, indicators of compromise, and remediation actions •Support forensic investigation of compromised hosts, accounts, and applications Qualifications: •Bachelor's degree in a technical field, or equivalent professional experience •Certifications (nice To Have, But Not Required) Compensation: •$100,000 - $145,000 / year •Flexible work environment (work from home / hybrid options) Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!