Detection & Response Engineering Manager

InfraTech Solutions LLC

Chicago (IL)

Hybrid

USD 150,000 - 180,000

Full time

6 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health, dental, and vision insurance
Paid time off and holidays
Parental leave
401(k) with employer matching
Continuous training allowances

Job summary

InfraTech Solutions LLC in Chicago, IL is seeking a Detection & Response Engineering Manager to build and lead a modern threat detection and incident handling practice. You will mentor an engineering team while maturing security operations across multi-cloud, endpoints, and SaaS environments.

The role emphasizes automation, detection-as-code, AI integrations, and measuring program maturity with MTTR and coverage, reporting to senior IT and security executives.

Qualifications

  • 7+ years of hands-on experience in security operations, threat detection engineering, or incident response.
  • Ability to translate roadmaps into concrete deliverables and mentor technical team members.
  • Strong capability to author custom scripts and build detection logic using code-based frameworks.
  • Track record of taking security tools and architecture from initial design to full production deployment.
  • Technical expertise with modern cloud SIEM/SOAR platforms and telemetry collection from AWS environments.

Responsibilities

  • Direct security monitoring, threat triage, and incident handling operations across multi-cloud infrastructure, endpoint assets, and SaaS environments.
  • Serve as operational escalation lead during security incidents and participate in the team’s on-call rotation.
  • Oversee the end-to-end detection engineering lifecycle—authoring, tuning, and decommissioning rules mapped against the MITRE ATT&CK framework to minimize false positives.
  • Manage security data pipelines, ensuring proper ingestion, normalization, enrichment, and API-based telemetry routing.
  • Champion detection-as-code principles by shifting rules into version-controlled repositories backed by peer review and automated testing.
  • Design, architect, and deploy net-new detection platforms and response tools from initial proof-of-concept through production rollout.
  • Integrate automation and generative AI into security operations center workflows to streamline alert processing, orchestration, and triage.
  • Present metrics regarding incident trends, detection coverage, and overall program maturity to senior IT and security executives.

Skills

Security operations
Threat detection engineering
Incident response
Scripting / coding for detection
MTTR KPI tracking

Tools

Cloud SIEM/SOAR platforms
AWS telemetry collection

Job description

Job Title: Detection & Response Engineering Manager

Location: Chicago, IL (Hybrid)

About the Opportunity Are you ready to build and lead a modern threat detection and incident handling practice for a rapidly growing fintech enterprise? We are seeking a hands‑on technical leader to mature our security operations, pioneer artificial intelligence integrations, and refine our threat infrastructure. In this role, you will mentor a dedicated engineering team while driving automated response strategies across a modern cloud ecosystem.

Responsibilities

  • Direct security monitoring, threat triage, and incident handling operations across multi‑cloud infrastructure, endpoint assets, and SaaS environments.

  • Serve as operational escalation lead during security incidents and participate in the team’s on‑call rotation.

  • Oversee the end‑to‑end detection engineering lifecycle—authoring, tuning, and decommissioning rules mapped against the MITRE ATT&CK framework to minimize false positives.

  • Manage security data pipelines, ensuring proper ingestion, normalization, enrichment, and API‑based telemetry routing.

  • Champion detection‑as‑code principles by shifting rules into version‑controlled repositories backed by peer review and automated testing.

  • Design, architect, and deploy net‑new detection platforms and response tools from initial proof‑of‑concept through production rollout.

  • Integrate automation and generative AI into security operations center workflows to streamline alert processing, orchestration, and triage.

  • Present metrics regarding incident trends, detection coverage, and overall program maturity to senior IT and security executives.

Requirements

  • 7+ years of hands‑on experience in security operations, threat detection engineering, or incident response.

  • Proven capability to break down strategic roadmaps into concrete deliverables and mentor technical team members (formal management tenure is not required).

  • Strong capability to author custom scripts and build detection logic using code‑based frameworks.

  • Track record of taking security tools and architecture from initial design to full production deployment.

  • Technical expertise with modern cloud SIEM/SOAR platforms and telemetry collection from AWS environments.

  • Ability to define, track, and optimize operational KPIs, including mean time to respond (MTTR), false‑positive rates, and detection coverage.

Preferred Qualifications

  • Professional certifications such as CISSP, OSCP, or specialized GIAC incident response titles.

  • Direct experience integrating AI models or large language models (LLMs) into security workflows.

  • Familiarity with AI‑specific risk vectors, including prompt injection mechanics and agent trust boundaries.

  • Practical experience conducting threat‑hunting campaigns or purple‑team exercises.

  • Background in regulated domains (such as financial services or fintech) with exposure to SOC 2, PCI DSS, or GLBA standards.

  • Experience securing cloud‑native setups and containerized application deployments.

Compensation & Benefits

  • Base Salary: $150,000 – $180,000 USD annually, plus eligibility for an annual performance bonus.

  • Comprehensive health, dental, and vision insurance options.

  • Generous paid time off (PTO), paid holidays, and paid parental leave.

  • 401(k) retirement plan with employer matching.

  • Continuous training allowances, career development resources, and merit growth tracks.

  • Equal Opportunity Employer: All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Detection and Response Engineer
Senior Detection and Response Engineer

NJF Global Holdings Ltd • New York (NY)

Hybrid
USD 160,000 - 220,000
Senior Detection and Response Analyst
Senior Detection and Response Analyst

Prestige Staffing • Dallas (TX)

On-site
USD 120,000 - 180,000
Contract extension potential
Remote work
Career growth
+2
Detection & Response Engineering Lead
Detection & Response Engineering Lead

InfraTech Solutions LLC • Chicago (IL)

Hybrid
USD 150,000 - 180,000
Health, dental, and vision insurance
Paid time off and holidays
Parental leave
+2
Detection and Response Engineer
Detection and Response Engineer

Modal Labs • New York (NY)

On-site
USD 140,000 - 190,000
Security Engineer, Detection and Response
Security Engineer, Detection and Response

OpenAI • United States

On-site
USD 293,000 - 385,000
Detection and Response Engineer
Detection and Response Engineer

Modal • New York (NY)

On-site
USD 140,000 - 210,000
Senior Security Operations & Incident Response Engineer
Senior Security Operations & Incident Response Engineer

SCIGON • Chicago (IL)

On-site
USD 113,000 - 150,000
Engineering Manager, Detect & Respond
Engineering Manager, Detect & Respond

GoTo Meeting • New York (NY)

On-site
USD 175,000 - 215,000
Medical, dental, and vision insurance
Flexible paid time off
Professional development opportunities
+1
Senior Threat Engineer – AI-Powered Detection, Response & Continuous AI Red Team
Senior Threat Engineer – AI-Powered Detection, Response & Continuous AI Red Team

United States Digital Space LLC • United States

Remote
USD 137,000 - 191,000
SOC Manager
SOC Manager

TEKsystems • Rocklin (CA)

On-site
USD 96,000 - 103,000
Medical, dental & vision
401(k) Retirement Plan
Life Insurance
+5