Enable job alerts via email!

Security Threat Detection Engineer Consultant

Cloud Security Services

United States

Remote

USD 75,000 - 110,000

Full time

4 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Cloud Security Services is seeking a Security Threat Detection Engineer Consultant for a remote opportunity. This role involves developing and improving threat detection and alerting infrastructure, and requires expertise in security operations, with responsibilities focusing on enabling effective responses to security incidents.

Qualifications

  • 1-3 years in detection engineering supporting security operations.
  • Proficiency with SIEM/SOAR solutions like Splunk.
  • Bachelor's degree or equivalent experience required.

Responsibilities

  • Develop and tune high-quality detections for security threats.
  • Document alerting and detection strategies for analysts.
  • Collaborate with Threat Intelligence team to improve detection.

Skills

Application Security
Cloud Security
Digital Forensics
Malware Analysis
Threat Hunting
Incident Response
Analytical Skills
Excellent Communication

Education

Bachelor's degree
Cybersecurity certifications (CISSP or CISM)

Tools

Splunk
SQL
CI/CD environments
AWS

Job description

Security Threat Detection Engineer Consultant

About the Opportunity:
Cloud Security Services, a New Era Company, is seeking a Security Threat Detection Engineer Consultant to support client’s Threat Management objectives by building, maintaining, and improving threat detection and alerting infrastructure. The role ensures the right data collection and detections are in place to discover threats against infrastructure, data, employees, and customers. This is a 6-month remote opportunity.

Responsibilities:

  1. Ideate, design, develop, test, monitor, and tune high-quality detections to enable security analysts to respond effectively to security threats.
  2. Write comprehensive and well-documented alerting and detection strategies, providing necessary context and runbooks for security analysts and incident responders.
  3. Build, maintain, and improve custom detection and alerting solutions, or optimize existing commercial tools to ensure adequate detection coverage.
  4. Act as a subject matter expert for security-relevant logs and data to assist the Incident Response team during high-priority investigations.
  5. Collaborate with the Threat Intelligence team to enhance detection effectiveness and security posture.

Required Skills:

  • 1-3 years of hands-on experience with full-lifecycle detection engineering supporting a security operations team.
  • Experience as a Security Operations Analyst or Incident Responder.
  • Proficiency with Splunk or other common SIEM and SOAR solutions.
  • Technical expertise in areas such as application security, cloud security, digital forensics, malware analysis, threat hunting, or incident response.
  • Familiarity with SQL, relational databases, and data warehousing.
  • Basic scripting skills (e.g., Python) for automation within case management and CI/CD environments.
  • Knowledge of metrics to evaluate detection program effectiveness, such as MITRE ATT&CK coverage.
  • Understanding of threat actor techniques, vulnerabilities, exploits, and their log and artifact signatures.
  • Excellent communication, collaboration, and documentation skills.
  • Ability to work independently and across time zones.
  • Strong analytical and organizational skills, with a focus on business outcomes.

Preferred Skills:

  • Relevant industry certifications.
  • Experience with Sigmarules detections.
  • Background in software engineering, DevOps, or data science.
  • Hands-on experience with AWS cloud environment.
  • Splunk engineering/administration experience.
  • Knowledge of compliance frameworks like PCI-DSS, FedRAMP.

Required Education:

  • Bachelor's degree or equivalent experience.
  • Cybersecurity certifications such as CISSP or CISM.

EEO Statement:
Cloud Security Services is an equal opportunity employer. All qualified applicants will be considered regardless of race, color, religion, gender, gender identity or expression, sexual orientation, marital status, national origin, genetics, disability, age, or veteran status.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

SOC Analyst

ECI Software Solutions

null null

Remote

Remote

USD 72,000 - 115,000

Full time

7 days ago
Be an early applicant

Threat Analyst | Remote, USA

Lensa

Baltimore null

Remote

Remote

USD 90,000 - 110,000

Full time

4 days ago
Be an early applicant

Regional Security Director - Europe

Lensa

null null

Remote

Remote

USD 86,000 - 220,000

Full time

Yesterday
Be an early applicant

Cyber Security Analyst (100% remote)

Lensa

null null

Remote

Remote

USD 65,000 - 120,000

Full time

3 days ago
Be an early applicant

Threat Analyst | Remote, USA

Lensa

Baltimore null

Remote

Remote

USD 90,000 - 155,000

Full time

7 days ago
Be an early applicant

Physical Security Team Lead - Remote

Lensa

null null

Remote

Remote

USD 90,000 - 144,000

Full time

4 days ago
Be an early applicant

Junior SOC Analyst

TalentAlly LLC

null null

Remote

Remote

USD 55,000 - 85,000

Full time

5 days ago
Be an early applicant

Senior Security Engineer

SmithRx

null null

Remote

Remote

USD 100,000 - 150,000

Full time

6 days ago
Be an early applicant

IT GRC Analyst

Potbelly Sandwich Works

Chicago null

Remote

Remote

USD 85,000 - 95,000

Full time

7 days ago
Be an early applicant