Detection Engineer: SIEM/XDR & Cloud Security

Jobtailor

Arizona

On-site

USD 85,000 - 130,000

Full time

3 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Jobtailor is seeking a Detection Engineer to design, test, deploy, and maintain detections across enterprise SIEMs, XDR, and cloud platforms in a US-based role. You will translate threat intel into prioritized use cases and map coverage to adversary behaviors, owning the detection lifecycle end-to-end.

Responsibilities include on-call response, collaboration with security, IT, and cloud teams to onboard telemetry, validate coverage, and improve data quality.

Qualifications

  • College degree or equivalent required.
  • 1 year related experience.
  • Ability to follow technical instructions and guidelines.
  • Ability to document daily activities and system functions.
  • Ability to travel as required by business and on-call availability.
  • Proven hands-on experience creating and tuning detections in an enterprise SIEM, XDR, or comparable security analytics platform.
  • Strong ability to analyze authentication, endpoint, network, email, cloud, and application telemetry and translate findings into durable detection logic.
  • Hands-on experience with security investigations, incident response, log analysis, root-cause analysis, and remediation validation.
  • Working knowledge of adversary behavior, detection lifecycle practices, and methods for validating detection coverage.
  • Experience securing Azure and/or AWS environments and Microsoft 365 security capabilities.
  • Experience with PKI and certificate-based authentication basics.

Responsibilities

  • Design, test, deploy, document, and maintain detection content across SIEM, XDR, and cloud platforms.
  • Translate threat intelligence and adversary techniques into prioritized detection use cases.
  • Own the detection lifecycle from intake through retirement.
  • Monitor detection health, data freshness, and alert quality; drive corrective action.
  • Collaborate with cross-functional teams to onboard telemetry and ensure data quality.
  • Perform root-cause analysis and validate remediation; improve detections and playbooks.
  • Configure security controls across Azure, AWS, and Microsoft 365 environments.
  • Participate in on-call rotation and after-hours response as needed.
  • Use scripting and SOAR workflows to enrich alerts and automate response.

Skills

SIEM Detection Creation
Threat Intelligence Translation
Incident Response
PowerShell Scripting
Adversary Behavior Knowledge
Purple Teaming
Cloud Security
Azure Security

Education

Bachelor's degree or equivalent

Tools

SIEM Platforms
XDR Solutions
Azure Virtual Desktop
Microsoft 365
SOAR
Linux Command-Line

Job description

Jobtailor is seeking a Detection Engineer to design, test, deploy, and maintain detections across enterprise SIEMs, XDR, and cloud platforms in a US-based role. You will translate threat intel into prioritized use cases and map coverage to adversary behaviors, owning the detection lifecycle end-to-end.

Responsibilities include on-call response, collaboration with security, IT, and cloud teams to onboard telemetry, validate coverage, and improve data quality.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Remote SIEM Detection Engineer: Build Detection Excellence
Remote SIEM Detection Engineer: Build Detection Excellence

Mosaec • Northern (KY)

Hybrid
USD 112,000 - 162,000
Unlimited PTO
Work location flexibility
Parental leave (up to 24 weeks)
Senior Threat Intelligence & Detection Architect
Senior Threat Intelligence & Detection Architect

Jobtailor • Seattle (WA)

On-site
USD 110,000 - 160,000
Cyber Detection Engineer: SIEM, Threat Hunting & Cloud
Cyber Detection Engineer: SIEM, Threat Hunting & Cloud

Prudential Financial • Newark (NJ)

On-site
USD 96,000 - 159,000
Market competitive base salaries
Medical, dental, vision
401(k) plan with company match
+4
Remote Detection Engineer: Build & Automate Detections
Remote Detection Engineer: Build & Automate Detections

Binary-Defense • Houston (TX)

Remote
USD 110,000 - 170,000
Medical, dental, and vision coverage
401k match
Remote-friendly work environment
+1
Detection and Response Engineer
Detection and Response Engineer

The available sources do not contain information about the company name for rounx.com. • United States

On-site
USD 120,000 - 180,000
Detection & Response Engineer — Threat Hunting & SIEM Pro
Detection & Response Engineer — Threat Hunting & SIEM Pro

Coalfire • United States

Hybrid
USD 120,000 - 150,000
Flexible work model
Certification reimbursement
Comprehensive insurance options
+1
Lead Detection Engineer, Endpoint ML & SIEM Automation
Lead Detection Engineer, Endpoint ML & SIEM Automation

Jobtailor • New York (NY)

On-site
USD 120,000 - 180,000
Senior Cloud Security Engineer: SIEM & IR (Remote)
Senior Cloud Security Engineer: SIEM & IR (Remote)

SmarterDx, Inc. • United States

Remote
USD 190,000 - 220,000
Medical, Dental & Vision
Remote-First Team
Unlimited PTO & 10 Holidays
+3
Cloud Security Detection Engineer – IR & Threat Hunting
Cloud Security Detection Engineer – IR & Threat Hunting

IBM • Lowell (MA)

On-site
USD 140,000 - 190,000
Detection Engineer, Security Operations & Telemetry
Detection Engineer, Security Operations & Telemetry

Saronic • Austin (TX)

On-site