Job Search and Career Advice Platform

Enable job alerts via email!

Threat Intelligence Engineer

Maxwell Bond

Denver

Hybrid

GBP 113,000 - 152,000

Full time

Today
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A cybersecurity Managed Security Service Provider is seeking a Senior Threat Intelligence Engineer in Colorado. This role involves building detection pipelines, researching threats, and mentoring engineers in a hybrid work model. Competitive salary ranges from $150,000 to $200,000, including comprehensive benefits.

Benefits

Competitive salary
Comprehensive benefits
401(k)
PTO

Qualifications

  • 5+ years in threat detection engineering or related roles.
  • Strong understanding of attacker tactics and frameworks like MITRE ATT&CK.
  • Hands-on experience with cloud-native security practices.

Responsibilities

  • Build and maintain detection-as-code pipelines for security platforms.
  • Develop, test, and deploy detection content.
  • Research emerging threats and create detection strategies.
  • Mentor junior engineers on best practices.

Skills

Threat detection engineering
Threat intelligence
Detection languages (e.g., Sigma, KQL, ES|QL)
Programming languages (Python, Golang)
Problem-solving skills

Tools

SIEM platforms
EDR solutions
Cloud security tooling
AWS services
Automation frameworks (SOAR)
Job description
Senior Threat Intelligence Engineer – Cybersecurity MSSP (Colorado)

We are representing a Colorado-based cybersecurity Managed Security Service Provider (MSSP) seeking a Senior Threat Intelligence Engineer to join their growing team. This is a unique opportunity to work with a fast-moving organisation delivering advanced security and compliance solutions to small and mid-sized businesses.

Role Overview

You will build and maintain threat detection pipelines, develop actionable intelligence workflows, and collaborate with engineering and product teams to protect customers from evolving cyber threats. This role also involves optimizing detection logic, conducting threat research, and mentoring junior team members on best practices.

Key Responsibilities
  • Build and maintain detection-as-code pipelines for SIEM, EDR, and cloud security platforms.
  • Develop, test, and deploy detection content and automation workflows.
  • Research emerging threats and translate findings into actionable detection strategies.
  • Collaborate with engineering teams to integrate detection and intelligence capabilities into the platform.
  • Conduct performance tuning and validation of detection logic to reduce false positives and improve coverage.
  • Mentor junior engineers and promote best practices in threat detection engineering.
Requirements
  • 5+ years in threat detection engineering, threat intelligence, or related security engineering roles.
  • Strong understanding of attacker tactics, techniques, and procedures (TTPs) and frameworks such as MITRE ATT&CK.
  • Proficiency in detection languages (e.g., Sigma, KQL, ES|QL).
  • Proficiency in one or more programming languages (Python, Golang, etc.).
  • Experience with SIEM platforms, EDR solutions, and cloud security tooling.
  • Experience with automation frameworks (SOAR) and API integrations.
  • Hands‑on experience with AWS services and cloud‑native security practices.
  • Excellent problem‑solving skills and ability to work in a fast‑paced, collaborative environment.
Location & Benefits
  • Based in Colorado (hybrid work model with some office presence required).
  • Competitive salary: $150,000–$200,000 USD
  • Comprehensive benefits, 401(k), and PTO
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.