Senior Detection Engineer — Remote/Hybrid

LinkedIn

United States

Hybrid

USD 129,000 - 212,000

Full time

43 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

LinkedIn in the United States is seeking a Senior Security Engineer focused on detection engineering to design, build, and operate high-signal detections across endpoints, cloud, and SaaS environments.

You will apply detections-as-code, telemetry modeling, and data-driven efficacy measurements to improve coverage, reduce noise, and support incident response.

This hands-on role requires technical leadership and cross-functional collaboration, including on-call rotations for critical pipelines.

Qualifications

  • BA/BS in CyberSecurity, Information Security, Computer Science or related discipline or practical experience.
  • 3+ years in security, detection engineering or incident response.
  • Experience building detection content and analytics for SIEM/XDR/EDR and cloud telemetry.
  • Experience programming for detections/automation (Python) and query languages (KQL/SQL/SPL).
  • Experience with detections-as-code (tests, CI/CD, canary/rollback) at scale.
  • Experience with attacker TTPs (MITRE ATT&CK) and detection efficacy metrics.
  • Experience with schemas/data models (OSSEM/ASIM-like) and telemetry pipelines.

Responsibilities

  • Implement and tune detection content across SIEM/XDR/EDR and cloud telemetry; measure precision/recall, latency, lift, and signal-to-noise ratio.
  • Build detections-as-code with version control, CI/CD, unit/integration tests, staged canary rollouts, and safe rollback.
  • Author and maintain SIGMA rules; translate SIGMA to KQL/SQL as needed.
  • Operationalize Microsoft Defender XDR and Sentinel signals; leverage Entra ID controls.
  • Proactive threat hunting; create hunt playbooks and convert findings into detections.
  • Build IR automation (SOAR/Logic Apps) for triage, enrichment, containment, and case workflow; integrate with ticketing/chat ops.
  • Operationalize threat intelligence: ingest/normalize IOCs/TTPs, enrich detections with TI context, and turn reports into testable hypotheses.
  • Own telemetry quality for assigned pipelines: schemas/normalization, enrichment, data contracts, reliability SLIs/SLOs.
  • Participate in incident retros; add post-incident detections and suppress noisy patterns.
  • Participate in on‑call for critical detection pipelines and high‑severity investigations.

Skills

Detection engineering
SIEM/XDR/EDR
Python
KQL/SQL
MITRE ATT&CK
Telemetry schemas
On-call readiness

Education

BA/BS in CS or related

Tools

SIGMA
Microsoft Defender XDR
Sentinel
Entra ID
Kusto

Job description

LinkedIn in the United States is seeking a Senior Security Engineer focused on detection engineering to design, build, and operate high-signal detections across endpoints, cloud, and SaaS environments.

You will apply detections-as-code, telemetry modeling, and data-driven efficacy measurements to improve coverage, reduce noise, and support incident response.

This hands-on role requires technical leadership and cross-functional collaboration, including on-call rotations for critical pipelines.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff Detection Engineering Lead - Remote/Hybrid
Staff Detection Engineering Lead - Remote/Hybrid

LinkedIn • United States

Hybrid
USD 156,000 - 255,000
Remote Senior Detection Engineer — SIEM & Telemetry
Remote Senior Detection Engineer — SIEM & Telemetry

Visa Hunt • Cameron Park (CA), Chicago (IL)

Hybrid
USD 120,000 - 180,000
Medical, Dental & Vision
Employer Paid Life Insurance
Disability Insurance
+3
Remote Detection Engineering Lead, AI Security
Remote Detection Engineering Lead, AI Security

Madrona Venture Labs • United States

On-site
USD 200,000 - 250,000
Company-paid health insurance
401K with employer match
Self-managed PTO
+1
Remote Senior Detection Engineer — SIEM & Telemetry
Remote Senior Detection Engineer — SIEM & Telemetry

Keepersecurity • United States

On-site
USD 120,000 - 150,000
Medical, Dental & Vision
Employer Paid Life Insurance
Voluntary Short/Long Term Disability Insurance
+3
Remote Detection & Response Engineer - AI-Driven SOC
Remote Detection & Response Engineer - AI-Driven SOC

North • United States

On-site
USD 100,000 - 145,000
Staff Detection Engineer: SIEM, Cloud & Threat Hunting
Staff Detection Engineer: SIEM, Cloud & Threat Hunting

LinkedIn • Mountain View (CA)

Hybrid
USD 156,000 - 255,000
Health and wellness programs
Annual performance bonus
Stock options
+1
Remote Senior AI-Driven Detection Lead
Remote Senior AI-Driven Detection Lead

Drop • United States

On-site
USD 200,000 - 250,000
Health insurance
Fully remote
401K match
Senior Threat Detection Engineer — Hybrid Role
Senior Threat Detection Engineer — Hybrid Role

3M HEALTHCARE • Scottsdale (AZ)

Hybrid
USD 132,000 - 165,000
Discretionary incentive plan
Benefits
Senior Detection Engineer - Cloud Security & Automation
Senior Detection Engineer - Cloud Security & Automation

DoorDash • United States

On-site
USD 160,000 - 235,000
401(k) with employer matching
Paid parental leave (16 weeks)
Wellness benefits
+3
Senior Detection & Security Operations Engineer (Remote)
Senior Detection & Security Operations Engineer (Remote)

Arkenstone • Menlo Park (CA)

On-site
USD 150,000 - 190,000
Health insurance
401(k) plan with matching
Paid time off and holidays
+2