Lead Threat Detection Engineer & Adversary Emulation

CVS Health

Annapolis (MD)

On-site

USD 107,000 - 284,000

Full time

5 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

CVS Health is seeking a Staff Threat Detection Engineer to lead detection engineering, threat hunting, and offensive security initiatives. You will work with Security Operations and Incident Response to build robust detections across SIEMs like Microsoft Sentinel and Splunk, and to emulate adversaries for stronger defenses.

The role emphasizes collaboration, automation, and continuous improvement of monitoring, with a focus on reducing threat impact and strengthening the security posture of CVS

Qualifications

  • 7+ years of experience in threat detection, hunting, penetration testing, and/or offensive security.
  • 5+ years of experience with Microsoft security tools (Defender for Endpoint, Sentinel), CrowdStrike, and Splunk.
  • 3+ years of scripting for automation and detection logic (KQL, SPL, Python, PowerShell, Bash).

Responsibilities

  • Develop, deploy, and optimize detection rules across SIEM platforms like Microsoft Sentinel and Splunk.
  • Conduct threat hunting using Defender, CrowdStrike, and SOC tools to identify advanced threats.
  • Create detections with KQL/SPL and automate responses; refine detections based on threats.
  • Assist with penetration tests and adversary emulation to evaluate detection effectiveness.
  • Collaborate in purple team exercises and translate threat intelligence into detections.
  • Support incident response and contribute to a security strategy aligned with risk management.

Skills

Threat detection
Threat hunting
Penetration testing
Offensive security

Education

Bachelor's degree or equivalent

Tools

Microsoft Defender for Endpoint
Microsoft Sentinel
CrowdStrike
Splunk
KQL
SPL
Python
PowerShell
Bash

Job description

CVS Health is seeking a Staff Threat Detection Engineer to lead detection engineering, threat hunting, and offensive security initiatives. You will work with Security Operations and Incident Response to build robust detections across SIEMs like Microsoft Sentinel and Splunk, and to emulate adversaries for stronger defenses.

The role emphasizes collaboration, automation, and continuous improvement of monitoring, with a focus on reducing threat impact and strengthening the security posture of CVS

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Threat Detection & Adversary Emulation Engineer
Senior Threat Detection & Adversary Emulation Engineer

CVS Health • Charleston (WV)

On-site
USD 107,000 - 284,000
Senior Threat Detection Engineer & Adversary Emulation
Senior Threat Detection Engineer & Adversary Emulation

Koitecc Solutions • Cheyenne (WY)

On-site
USD 107,000 - 284,000
Medical benefits
Dental coverage
Vision coverage
+3
Senior Threat Detection Engineer & Adversary Emulation
Senior Threat Detection Engineer & Adversary Emulation

CVS Health • Salem (OR)

On-site
USD 107,000 - 284,000
Medical, dental, vision coverage
Bonus and equity awards
Comprehensive benefits
Staff Threat Detection Engineer: Adversary Emulation & SIEM
Staff Threat Detection Engineer: Adversary Emulation & SIEM

CVS Health • Olympia (WA)

On-site
USD 120,000 - 260,000
Medical coverage
Dental coverage
Vision coverage
+2
Senior Threat Hunting & Detection Engineer
Senior Threat Hunting & Detection Engineer

CVS Health • Little Rock (AR)

On-site
USD 107,000 - 284,000
Senior Threat Detection Engineer - Threat Hunting
Senior Threat Detection Engineer - Threat Hunting

Idaho Society of Professional Engineers • Boise (ID), Northern (KY)

Hybrid
USD 107,000 - 284,000
Senior Threat Detection Engineer
Senior Threat Detection Engineer

Koitecc Solutions • Bismarck (ND)

On-site
USD 107,000 - 284,000
Senior Threat Detection & Hunting Engineer
Senior Threat Detection & Hunting Engineer

Koitecc Solutions • Pierre (SD), Northern (KY)

On-site
USD 107,000 - 284,000
Competitive compensation
Comprehensive benefits
Career growth
Senior Threat Detection Engineer: Hunt, Emulation & SIEM
Senior Threat Detection Engineer: Hunt, Emulation & SIEM

CVS Health • Jefferson City (MO)

On-site
USD 107,000 - 284,000
Senior Threat Detection & Hunting Engineer
Senior Threat Detection & Hunting Engineer

CVS Health • Oklahoma City (OK)

On-site
USD 107,000 - 284,000