Senior Threat Detection & Purple Team Engineer

Koitecc Solutions

Little Rock (AR)

On-site

USD 107,000 - 284,000

Full time

5 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Comprehensive benefits
Bonus eligibility
Equity program

Job summary

CVS Health is seeking a Staff Threat Detection Engineer to advance threat hunting, detection engineering, and offensive security strategies. You will craft detections across SIEMs, run adversary emulation, and strengthen incident response in collaboration with Security Operations and IR teams.

The role emphasizes building automation, leveraging MITRE ATT&CK-based techniques, and delivering actionable threat intelligence.

Qualifications

  • 7+ years of experience in threat detection, hunting, penetration testing, and/or offensive security.
  • 5+ years of experience with Microsoft Security tools (Defender for Endpoint, Sentinel), CrowdStrike, and Splunk.
  • 3+ years of experience with KQL, SPL, Python, PowerShell, or Bash scripting for automation and detection logic.

Responsibilities

  • Develop, deploy, and optimize detection rules across SIEM platforms such as Microsoft Sentinel and Splunk.
  • Conduct threat hunting activities using Microsoft Defender, CrowdStrike, and other SOC tools to identify and respond to advanced threats.
  • Leverage KQL and SPL to create custom detections and automate responses.
  • Continuously refine detection capabilities based on emerging threats and intelligence.
  • Assist with internal and external penetration tests to identify vulnerabilities.
  • Design and execute adversary emulation scenarios to assess detection and response effectiveness.
  • Utilize penetration testing tools and custom scripts to simulate real-world attack scenarios.
  • Produce detailed reports with findings and actionable recommendations.
  • Work closely with blue teams to conduct purple team exercises, bridging offensive and defensive security efforts.
  • Provide actionable insights to improve monitoring, alerting, and incident response based on adversary tactics.
  • Facilitate knowledge-sharing sessions to upskill internal teams on TTPs (Tactics, Techniques, and Procedures).
  • Integrate threat intelligence into detection strategies to prioritize threats and adapt detection rules.
  • Analyze threat intelligence feeds and translate them into actionable detection and response measures.
  • Collaborate with the incident response team during investigations by providing adversary tactics insights.
  • Assist in developing threat-hunting use cases and refining detection capabilities.
  • Contribute to the development of a comprehensive detection strategy aligned with risk management goals.
  • Provide leadership with reports on security gaps, risks, and detection effectiveness.

Skills

Threat detection
Threat hunting
Penetration testing
Offensive security
Microsoft Defender
Defender for Endpoint
Sentinel
CrowdStrike
Splunk
KQL
SPL
Python
PowerShell
Bash

Education

Bachelor's degree or equivalent experience

Tools

Microsoft Defender
Sentinel
CrowdStrike
Splunk

Job description

CVS Health is seeking a Staff Threat Detection Engineer to advance threat hunting, detection engineering, and offensive security strategies. You will craft detections across SIEMs, run adversary emulation, and strengthen incident response in collaboration with Security Operations and IR teams.

The role emphasizes building automation, leveraging MITRE ATT&CK-based techniques, and delivering actionable threat intelligence.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Threat Detection Engineer & Purple Team Lead
Senior Threat Detection Engineer & Purple Team Lead

Koitecc Solutions • Richmond (VA)

On-site
USD 107,000 - 284,000
Medical, dental, vision coverage
Paid time off
Retirement savings options
+2
Senior Threat Detection Engineer – Purple Team
Senior Threat Detection Engineer – Purple Team

CVS Health • Richmond (VA)

On-site
USD 107,000 - 284,000
Bonus program
Equity awards
Comprehensive benefits
Senior Threat Detection & Purple Team Engineer
Senior Threat Detection & Purple Team Engineer

CVS Health • Frankfort (KY)

On-site
USD 107,000 - 284,000
Senior Threat Detection Engineer — Purple Team
Senior Threat Detection Engineer — Purple Team

CVS Health • Jackson (MS)

On-site
USD 96,000 - 117,000
Senior Threat Detection Engineer | SIEM, Threat Hunting & Purple Team
Senior Threat Detection Engineer | SIEM, Threat Hunting & Purple Team

Koitecc Solutions • Nashville (TN)

On-site
USD 150,000 - 284,000
Medical, dental, and vision coverage
Paid time off
Retirement savings options
+1
Senior Threat Hunting & Detection Engineer
Senior Threat Hunting & Detection Engineer

CVS Health • Little Rock (AR)

On-site
USD 107,000 - 284,000
Senior Threat Detection Engineer - Purple Team Focus
Senior Threat Detection Engineer - Purple Team Focus

CVS Health • Montpelier (VT)

On-site
USD 107,000 - 284,000
Bonus eligibility
Equity program
Senior Threat Detection & Purple Team Engineer
Senior Threat Detection & Purple Team Engineer

CVS Health • Pierre (SD)

On-site
USD 107,000 - 284,000
Bonus potential
Equity awards
Senior Threat Detection & Purple Team Engineer
Senior Threat Detection & Purple Team Engineer

CVS Health • Augusta (ME)

On-site
USD 107,000 - 284,000
Bonus eligibility
Equity award program
Comprehensive benefits
Senior Threat Detection Engineer
Senior Threat Detection Engineer

CVS Health • Helena (MT)

On-site
USD 107,000 - 284,000
Comprehensive benefits
Bonus eligibility
Equity incentives