Senior Detection Engineer (AI-ML Focus)

Procter & Gamble

Cincinnati (OH)

On-site

USD 110,000 - 165,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Procter & Gamble in Cincinnati is seeking a Senior Detection Engineer to join the InfoSec Cyber Defense Technology team, building, tuning, and scaling detection across enterprise SIEM platforms with AI-assisted workflows. You will write detection logic and manage detection-content as code, collaborating with Threat Intelligence and Threat Hunting to improve alert fidelity.

The role combines hands-on rule development, threat-informed analytics, and operating within an agentic pipeline to

Qualifications

  • Bachelor’s degree in Information Systems, Information Technology (IT), Computer Science, Engineering, or other technical/IT field and at least 5+ years in detection engineering or security operations.
  • Proven experience writing and tuning SIEM detection rules and analytics.
  • Strong understanding of MITRE ATT&CK and its application to detection coverage.
  • Python proficiency for automation, scripting, and tooling.
  • Experience with git-based workflows for managing security content.

Responsibilities

  • Design, build, test, and tune detection rules mapped to MITRE ATT&CK, prioritized by threat intelligence and business risk.
  • Write detection logic across SIEM and data lake platforms.
  • Manage detection content as code using Git-based workflows, PR reviews, CI/CD pipelines.
  • Investigate and suppress false positives using lookup-based architectures.
  • Collaborate with Threat Hunting and Threat Intelligence teams through structured handovers.

Skills

SIEM
Detection Engineering
Python
Git
MITRE ATT&CK
CI/CD
AI tooling
Threat Intelligence
Threat Hunting
Kubernetes

Education

Bachelor's degree in Information Systems, IT, CS or related field

Tools

Sigma
GitHub Copilot

Job description

Job Location

CINCINNATI GENERAL OFFICES

Job Description

At P&G, we believe that diverse experiences help build strong leaders. Mobility is a key component of many management careers, providing opportunities to grow through different assignments, locations, and business challenges. Candidates should be prepared to consider relocation opportunities throughout their career as business needs and development opportunities arise. The Senior Detection Engineer plays a vital role in InfoSec's Cyber Defense Technology team, responsible for building, tuning, and scaling detection capabilities across enterprise SIEM platforms. This role operates at the intersection of detection engineering and AI — using agentic AI tooling and LLM-assisted workflows to accelerate threat detection development, validation, and coverage analysis. You will work within a threat-informed detection pipeline where intelligence drives what we detect, and AI agents assist in rule creation, validation, and optimization. The role is hands-on: writing detection logic, managing detection-as-code via git, collaborating with Threat Intelligence and Threat Hunting teams, and continuously improving alert fidelity.

Key Success Metrics
  • Detection rules you write catch real threats and generate minimal noise
  • You measurably improve alert fidelity (TP rate) and reduce SOC case volume
  • You operate independently within the detection-as-code workflow (branch - validate - deploy)
  • You leverage AI tooling to work faster - not as a research project, but as a daily force multiplier
Job Responsibilities
  • Detection Engineering: Design, build, test, and tune detection rules mapped to MITRE ATT&CK, prioritized by threat intelligence and business risk
  • Write detection logic across the SIEM and data lake platforms
  • Manage detection content as code — Git-based workflows, PR reviews, CI/CD deployment pipelines
  • Investigate and suppress false positives systematically using lookup-based architectures
  • Collaborate with Threat Hunting and Threat Intelligence teams through structured handover processes (TI - TH - DE pipeline)
  • Monitor emerging threats and rapidly develop detections for new TTPs, CVEs, and active campaigns
  • AI-Augmented Detection (Differentiator): Leverage AI agents and LLM-assisted workflows to accelerate detection rule development, validation, and coverage analysis
  • Use and contribute to MCP (Model Context Protocol) tooling that enables AI-assisted detection validation (e.g., querying telemetry, assessing LOLBAS/GTFOBins, checking coverage gaps)
  • Operate agentic pipelines that triage large rule libraries against live telemetry at scale
  • Apply AI/ML techniques where appropriate for anomaly detection, behavioral analytics, or pattern identification in security datasets
  • Stay current on frontier AI threats (agentic attacks, LLM-assisted exploitation, AI-generated phishing) and translate them into detection opportunities
  • Collaboration & Operations: Work closely with SOC analysts to understand alert quality feedback and drive fidelity improvements
  • Collaborate with data engineers on telemetry availability, data quality, and log source onboarding
  • Contribute to detection coverage reporting and MITRE ATT&CK posture measurement
  • Document detection logic, tuning rationale, and suppression decisions
Job Qualifications

Technical Competencies and Experience: Required:

  • Bachelor’s degree in Information Systems, Information Technology (IT), Computer Science, Engineering, or other technical / IT field and / or at least 5+ years of relevant experience in detection engineering, security operations, or threat detection roles
  • Proven experience writing and tuning SIEM detection rules/analytics (correlation rules, scheduled queries, real-time alerts)
  • Strong understanding of MITRE ATT&CK framework and its application to detection coverage
  • Proficiency in Python for automation, scripting, and tooling
  • Experience with git-based workflows (branching, PRs, CI/CD) for managing security content
  • Familiarity with security log sources: EDR, identity, cloud, network, proxy
  • Strong analytical skills and ability to distinguish true threats from noise in large datasets

Preferred:

  • Certifications CISSP, CCSP, OSCP, GIAC Certified Detection Analyst (GCDA), GCIA, Relevant certifications in cloud & ML/AI
  • Experience with multiple query languages are helpful but not required
  • Experience with detection-as-code practices and YAML-based rule formats (Sigma, custom schemas)
  • Working knowledge of AI/LLM capabilities and their security implications — both as detection targets and as engineering tools
  • Experience with MCP servers, GitHub Copilot, or other AI-assisted development workflows
  • Familiarity with SOAR platforms and their integration with detection pipelines
  • Understanding of Kubernetes, cloud-native architectures, and OT/ICS environments
Compensation

For roles at P&G varies depending on a wide array of non-discriminatory factors including but not limited to the specific office location, role, degree/credentials, relevant skill set, and level of relevant experience. At P&G compensation decisions are dependent on the facts and circumstances of each case.

Total rewards at P&G include salary + bonus (if applicable) + benefits.

Equal Opportunity Statement

We are committed to providing equal opportunities in employment. We value diversity and do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

Immigration Sponsorship is not available for this role.

Procter & Gamble participates in E-Verify. Qualified individuals will not be disadvantaged based on being unemployed.

P&G is dedicated to meeting the needs of applicants requesting an accommodation/adjustment due to a disability in order to complete the online application process. If you have a disability that affects your ability to complete our online application process, please visit our Disability Accommodation Page.

Job Schedule Full time

Job Number R000155624

Job Segmentation Experienced Professionals

Starting Pay / Salary Range $110,000.00 - $165,300.00 / year

About Us

P&G was founded over 180 years ago as a simple soap and candle company. Today, we’re the world’s largest consumer goods company and home to iconic, trusted brands that make life a little bit easier in small but meaningful ways. We’ve spanned three centuries thanks to three simple ideas: leadership, innovation and citizenship. The insight, innovation and passion of talented teams has helped us grow into a global company that is governed responsibly and ethically, that is open and transparent, and that supports good causes and protects the environment. This is a place where you can be proud to work and do something that matters.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vice President, Information Security - Identity, Governance, and Cyber Risk
Vice President, Information Security - Identity, Governance, and Cyber Risk

Procter & Gamble • Cincinnati (OH)

On-site
USD 252,000 - 315,000
Senior Detection Engineer (AI-ML Focus)
Senior Detection Engineer (AI-ML Focus)

Relha LLC • Cincinnati (OH)

On-site
USD 120,000 - 150,000
Analytics & Insights Manager
Analytics & Insights Manager

Procter & Gamble • Cincinnati (OH)

On-site
USD 85,000 - 122,000
Continuous mentorship
Diverse environment
Work-life balance
+2
Network Orchestration Specialist
Network Orchestration Specialist

Procter & Gamble • Cincinnati (OH)

On-site
USD 54,000 - 68,000
Creative Project Manager, Fabric Care
Creative Project Manager, Fabric Care

Procter & Gamble • Cincinnati (OH)

On-site
USD 85,000 - 122,000
Senior Brand Manager (Experienced Hire) Cincinnati
Senior Brand Manager (Experienced Hire) Cincinnati

Procter & Gamble • Cincinnati (OH)

On-site
USD 110,000 - 165,000
Data Engineer - North America Fabric Care
Data Engineer - North America Fabric Care

Procter & Gamble • Cincinnati (OH)

Hybrid
USD 85,000 - 122,000
Digital Security Leader
Digital Security Leader

Procter & Gamble • United States

On-site
USD 85,000 - 122,000
Automated Layer Picker System (ALPS) Technician
Automated Layer Picker System (ALPS) Technician

Procter & Gamble • United States

On-site
USD 26,000 - 36,000
Very competitive pay
Full benefits from Day 1
Career growth opportunities
Amazon Retail Media Planner and Trader - Beauty Care
Amazon Retail Media Planner and Trader - Beauty Care

Procter & Gamble • Cincinnati (OH)

On-site
USD 110,000 - 165,000
Bonus
Benefits