Senior Threat Engineer: Scalable Detection & Automation

Coalition, Inc.

Boston (MA)

On-site

USD 100,000 - 150,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical, dental and vision
Flexible PTO
Home office stipend
WeWork access
Wellbeing programs

Job summary

Coalition, Inc. is seeking a Senior Threat Engineer to design and improve the Wirespeed Verdict Engine, turning threat research into scalable detections and automated responses. This role bridges threat detection, engineering, and customer experience, with ownership of complex problem areas and mentorship of teammates.

If you enjoy building systems that scale expert judgment and improve both security outcomes and operational efficiency, this role is for you.

Qualifications

  • Significant experience in cybersecurity operations such as threat detection and response, detection engineering, incident response, threat hunting, or SOC operations
  • You look for repeatable patterns, clear decision logic, and ways to scale good judgment through automation rather than repeated manual work
  • Strong investigative and analytical skills, with the ability to turn ambiguous signals and messy operational problems into practical detection logic and workflow improvements
  • Experience building, tuning, or maintaining automations, detections, playbooks, rules, or enrichment pipelines in security tooling
  • Demonstrated ability to independently own complex technical or operational problem areas, step into ambiguity, and drive them to better outcomes
  • Interest in work that is different from a traditional analyst role: improving how work gets done rather than only executing it
  • Strong written and verbal communication skills, including the ability to document logic and explain threats, tradeoffs, and outcomes clearly to customers and internal partners
  • Ability to work closely with product, engineering, and security stakeholders
  • Comfort using data to evaluate detection quality, workflow performance, and where the system needs improvement
  • Preference for simple, scalable solutions and willingness to reduce unnecessary complexity or manual work

Responsibilities

  • Design, build, and improve the detection, decisioning, and response workflows that power the Wirespeed Verdict Engine
  • Own complex threat detection and workflow problem spaces from investigation concept through implementation, validation, and iteration
  • Translate investigative thinking and threat research into scalable detections, enrichment, triage logic, and automated decisions that improve speed, accuracy, reliability, and customer outcomes
  • Analyze operational data to identify false positives, false negatives, latency issues, and opportunities to improve how entire categories of work are handled
  • Continuously raise the ceiling of what the system can do autonomously, reducing manual review while improving service quality and consistency
  • Support especially complex or novel cases when needed, then feed those lessons back into the system so similar situations can be handled better in the future
  • Keep the customer experience front and center by ensuring Wirespeed outputs are clear, helpful, accurate, and appropriately calibrated to the customer's situation
  • Identify patterns in customer pain, confusion, or friction and use those insights to improve verdict logic, response content, and overall product behavior
  • Partner closely with product, engineering, and security teams to improve platform capabilities, data quality, and operational leverage
  • Help define best practices, operating principles, and technical standards for Threat Engineering work
  • Document detection concepts, workflow logic, and operating principles so the team can scale knowledge
  • Provide technical leadership through strong execution, sound judgment, and mentorship of less experienced teammates

Skills

Threat detection
Automation
Incident response
Threat hunting
SOC operations
Analytical skills
Communication skills

Tools

SIEM
EDR
SOAR
Case management

Job description

Coalition, Inc. is seeking a Senior Threat Engineer to design and improve the Wirespeed Verdict Engine, turning threat research into scalable detections and automated responses. This role bridges threat detection, engineering, and customer experience, with ownership of complex problem areas and mentorship of teammates.

If you enjoy building systems that scale expert judgment and improve both security outcomes and operational efficiency, this role is for you.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Threat Intelligence Engineer - Remote-Ready Detection Systems
Threat Intelligence Engineer - Remote-Ready Detection Systems

Anthropic • Washington, San Francisco (CA)

Hybrid
USD 320,000 - 405,000
Detection Engineer: Automate Threat Detections at Scale
Detection Engineer: Automate Threat Detections at Scale

Binary Defense • United States

On-site
USD 120,000 - 180,000
Security Engineer – Detection & Incident Response
Security Engineer – Detection & Incident Response

United States Digital Space LLC • New York (NY), Washington

On-site
USD 238,000 - 297,000
Health, dental, vision coverage
Retirement benefits
Learning and development stipend
+2
Senior Threat Detection Engineer — Hybrid Role
Senior Threat Detection Engineer — Hybrid Role

3M HEALTHCARE • Scottsdale (AZ)

Hybrid
USD 132,000 - 165,000
Discretionary incentive plan
Benefits
Security Engineer: Detection & Incident Automation (TS)
Security Engineer: Detection & Incident Automation (TS)

Scale AI, Inc. • Columbia Township (MO)

On-site
USD 164,000 - 256,000
Equity compensation
Health, dental and vision coverage
Generous PTO
Remote Security Engineer: Threat Detection & Automation
Remote Security Engineer: Threat Detection & Automation

CrowdStrike • Town of Texas (WI)

On-site
USD 70,000 - 95,000
Market-leading compensation
Comprehensive wellness programs
Paid time off and holidays
Threat Intelligence Engineer - Scalable Threat Detection
Threat Intelligence Engineer - Scalable Threat Detection

Anthropic • Friendly (MD)

Hybrid
USD 300,000 - 405,000
Senior Distributed Systems Engineer - Threat Intelligence Platform
Senior Distributed Systems Engineer - Threat Intelligence Platform

Jobtailor • Austin (TX)

On-site
USD 150,000 - 190,000
Senior Threat Detection Engineer & Intelligence Lead
Senior Threat Detection Engineer & Intelligence Lead

Jobtailor • Washington

On-site
USD 140,000 - 190,000
Senior Threat Intelligence & Automation Engineer
Senior Threat Intelligence & Automation Engineer

Cloudflare • Austin (TX)

On-site
USD 140,000 - 190,000
Equity plan
Health insurance
401(k)