Detection & Response Engineering Manager

InfraTech Solutions

Chicago (IL)

Hybrid

USD 150,000 - 180,000

Full time

2 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Health insurance
Dental insurance
Vision insurance
Paid time off
Parental leave
401(k) matching
Training & development

Job summary

InfraTech Solutions is seeking a Detection & Response Engineering Manager in Chicago, hybrid role. You will lead a hands-on security operations team, mature threat detection, and drive automation and AI integrations across a multi-cloud environment.

You will own the end-to-end detection lifecycle, tune MITRE ATT&CK mappings, monitor KPIs like MTTR, and present security metrics to senior leadership. Candidates should have 7+ years in security operations and a track record of deploying

Qualifications

  • 7+ years in security operations, threat detection engineering, or incident response.
  • Ability to translate strategy into concrete deliverables and mentor technical staff.
  • Strong scripting and rule-based detection development experience.

Responsibilities

  • Direct security monitoring, threat triage, and incident handling across multi-cloud, endpoints, and SaaS.
  • Escalation lead during incidents and on-call rotation participation.
  • Oversee detection engineering lifecycle aligned with MITRE ATT&CK to minimize false positives.
  • Manage data pipelines: ingestion, normalization, enrichment, and telemetry routing.
  • Champion detection-as-code with version control and automated testing.
  • Design and deploy new detection platforms and response tools from PoC to production.
  • Integrate automation and AI into SOC workflows to streamline alerts and triage.
  • Present incident trends, coverage, and program maturity to executives.

Skills

Security operations
Threat detection engineering
Incident response
Mentoring team
Scripting/Coding
Detection engineering
Cloud SIEM/SOAR
AWS telemetry
KPIs (MTTR, coverage)
Automation / AI integration

Tools

SIEM/SOAR platforms
Python scripting
Cloud monitoring tools

Job description

Job Title: Detection & Response Engineering Manager

Location: Chicago, IL (Hybrid)

About the Opportunity

Are you ready to build and lead a modern threat detection and incident handling practice for a rapidly growing fintech enterprise? We are seeking a hands-on technical leader to mature our security operations, pioneer artificial intelligence integrations, and refine our threat infrastructure. In this role, you will mentor a dedicated engineering team while driving automated response strategies across a modern cloud ecosystem.

Responsibilities
  • Direct security monitoring, threat triage, and incident handling operations across multi-cloud infrastructure, endpoint assets, and SaaS environments.
  • Serve as operational escalation lead during security incidents and participate in the team's on-call rotation.
  • Oversee the end-to-end detection engineering lifecycle - authoring, tuning, and decommissioning rules mapped against the MITRE ATT&CK framework to minimize false positives.
  • Manage security data pipelines, ensuring proper ingestion, normalization, enrichment, and API-based telemetry routing.
  • Champion detection-as-code principles by shifting rules into version-controlled repositories backed by peer review and automated testing.
  • Design, architect, and deploy net-new detection platforms and response tools from initial proof-of-concept through production rollout.
  • Integrate automation and generative AI into security operations center workflows to streamline alert processing, orchestration, and triage.
  • Present metrics regarding incident trends, detection coverage, and overall program maturity to senior IT and security executives.
Requirements
  • 7+ years of hands-on experience in security operations, threat detection engineering, or incident response.
  • Proven capability to break down strategic roadmaps into concrete deliverables and mentor technical team members (formal management tenure is not required).
  • Strong capability to author custom scripts and build detection logic using code-based frameworks.
  • Track record of taking security tools and architecture from initial design to full production deployment.
  • Technical expertise with modern cloud SIEM/SOAR platforms and telemetry collection from AWS environments.
  • Ability to define, track, and optimize operational KPIs, including mean time to respond (MTTR), false-positive rates, and detection coverage.
Preferred Qualifications
  • Professional certifications such as CISSP, OSCP, or specialized GIAC incident response titles.
  • Direct experience integrating AI models or large language models (LLMs) into security workflows.
  • Familiarity with AI-specific risk vectors, including prompt injection mechanics and agent trust boundaries.
  • Practical experience conducting threat-hunting campaigns or purple teaming exercises.
  • Background in regulated domains (such as financial services or fintech) with exposure to SOC 2, PCI DSS, or GLBA standards.
  • Experience securing cloud-native setups and containerized application deployments.
Compensation & Benefits
  • Base Salary: $150,000 - $180,000 USD annually, plus eligibility for an annual performance bonus.
  • Comprehensive health, dental, and vision insurance options.
  • Generous paid time off (PTO), paid holidays, and paid parental leave.
  • 401(k) retirement plan with employer matching.
  • Continuous training allowances, career development resources, and merit growth tracks.

Equal Opportunity Employer: All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Detection & Response Engineering Manager
Detection & Response Engineering Manager

InfraTech Solutions LLC • Chicago (IL)

Hybrid
USD 150,000 - 180,000
Health, dental, and vision insurance
Paid time off and holidays
Parental leave
+2
Senior Security Engineer - Threat Detection
Senior Security Engineer - Threat Detection

samsara • United States

Hybrid
USD 150,000 - 190,000
Professional development stipend
Comprehensive health coverage
Parental leave plans
Detection & Response Engineering Lead
Detection & Response Engineering Lead

InfraTech Solutions LLC • Chicago (IL)

Hybrid
USD 150,000 - 180,000
Health, dental, and vision insurance
Paid time off and holidays
Parental leave
+2
Detection & Response Engineering Lead (Hybrid, Chicago)
Detection & Response Engineering Lead (Hybrid, Chicago)

InfraTech Solutions • Chicago (IL)

Hybrid
USD 150,000 - 180,000
Health insurance
Dental insurance
Vision insurance
+4
Detection and Response Engineer
Detection and Response Engineer

Modal • New York (NY)

On-site
USD 140,000 - 210,000
Security Software Engineer II, Detection and Response
Security Software Engineer II, Detection and Response

Pinterest • San Francisco (CA)

On-site
USD 123,696 - 254,667
Security Engineer, Detection & Response
Security Engineer, Detection & Response

United States Digital Space LLC • New York (NY), Washington

On-site
USD 238,000 - 297,000
Health, dental & vision coverage
Retirement benefits
Learning & development stipend
+2
Security Engineer, Detection and Response
Security Engineer, Detection and Response

OpenAI • United States

On-site
USD 293,000 - 385,000
Senior Detection and Response Analyst
Senior Detection and Response Analyst

Prestige Staffing • Dallas (TX)

On-site
USD 120,000 - 180,000
Contract extension potential
Remote work
Career growth
+2
Security Tools Engineer
Security Tools Engineer

Total Quality Logistics • Cincinnati (OH)

On-site
USD 95,000 - 135,000
Performance bonus
Comprehensive benefits package
Health, dental, and vision coverage
+1