Sr. Detection Engineer

3M HEALTHCARE

Scottsdale (AZ)

Hybrid

USD 132,000 - 165,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Discretionary incentive plan
Benefits

Job summary

Early Warning Services, LLC is seeking a Detection Engineer to join a high‑performing security team in a hybrid role spanning multiple locations. You will create detections and investigate threats across devices, networks and cloud services to enable rapid detection and response.

The role emphasizes MITRE ATT&CK alignment, proactive hunting, and collaboration with incident response and threat intel. Candidates should have extensive malware analysis experience and strong analytical skills.

Qualifications

  • Bachelor’s degree in a relevant field.
  • Minimum 8 years of information security experience.
  • Expert malware analysis and reverse engineering skills.
  • Proven experience creating detections for advanced threats.
  • Strong knowledge of network monitoring and exploitation techniques.
  • Experience in responding to threats from multiple sources.

Responsibilities

  • Continuously validate detections and identify gaps to ensure comprehensive coverage.
  • Tune and test high‑fidelity rules for the SIEM platform.
  • Hunt for APT TTPs and map to MITRE ATT&CK framework.
  • Coordinate with IR, threat intel, and other teams on remediation plans.
  • Analyze logs from IDS, firewalls and network traffic for threat detection.
  • Track malicious threats and actor TTPs and report trends to leadership.
  • Document and update security processes and procedures.
  • Maintain awareness of threat landscape and regulatory requirements.

Skills

Malware analysis
Reverse engineering
Threat detection
MITRE ATT&CK
SIEM tuning
Incident response

Education

Bachelor's degree in Computer Science, Engineering, Math or Physical Science

Job description

At Early Warning, we’ve powered and protected the U.S. financial system for over thirty years with cutting‑edge solutions like Zelle, Paze and so much more. As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small businesses.

Positions located in Scottsdale, San Francisco, Chicago, or New York follow a hybrid work model to allow for a more collaborative working environment.

Candidates responding to this posting must independently possess the eligibility to work in the United States, for any employer, at the date of hire. This position is ineligible for employment visa sponsorship.

Overall Purpose

The Detection Engineer is part of a high‑performance team, responsible for creating detections, investigating and evaluating threats and malware for a variety of digital devices, computers, storage media, servers, networks, and cloud‑based services. The core responsibility of this position is to create alerts that allow the organization to detect and respond to critical or urgent threats.

Essential Functions
  • Continuous validation of detections and identification of gaps to ensure comprehensive coverage based on the industry standards (MITRE)
  • Solves logging problems by optimization of current logs and onboarding new logs to ensure a logging standard are met
  • Impacts the CSIRTS team to be able to respond to threats by creating, tuning and testing high fidelity rules for our SIEM platform
  • Actively hunt for APT Tactics, Techniques and Procedures
  • Classify/categorize hunting use cases based on MITRE ATT&CK framework and cyber kill chain
  • Work with incident detection, incident response, cyber threat intelligence, and other teams to coordinate and create remediation plans
  • Uses data collected from a variety of cyber defense tools (e.g., IDS alerts, firewalls, network traffic logs) to analyze events that occur within their environments for the purposes of detecting threats.
  • Performs the tracking of malicious threats and groups and their tactics and procedures used
  • Performs complex analysis of potentially malicious activities and software
  • Performs network/system/application/log intrusion detection analysis and trends
  • Maintains awareness of trends in security, regulatory, technology, and operational requirements
  • Maintains awareness of the current threat landscape, including adversary tactics, techniques, and procedures.
  • Maps attacks to well‑known APT groups and reports to leadership ongoing threats and threat landscape of Early Warning Systems
  • Represents the Security team at internal and external cybersecurity forums
  • Document and update processes and procedures
  • Ensures the company's commitment to protect the integrity and confidentiality of systems and data.
Minimum Qualifications
  • Education and/or experience typically obtained through completion of a Bachelor’s degree or 4 year degree in Computer Science, Engineering, Math or Physical Science.
  • Minimum 8 years of information security technology experience
  • Expert, progressive experience with Malware analysis and reverse engineering
  • Proven expert experience in creating detections to detect advanced threats in an environment
  • Expert knowledge of network monitoring and network exploitation techniques
  • Expert experience in responding to malicious threats coming from various sources
  • Proven advanced analytical skills across various technologies
  • Ability to work within a team environment as well as independently
  • Effective communication skills to speak and write for all technology experience levels.
  • Effective interpersonal skills, able to comfortably present to peers, coworkers, and customers
  • A propensity for continued development of skills though research and training
  • Background and drug screen.
Preferred Qualifications
  • Additional related education, certifications and/or experience is beneficial
  • Working experience in cloud technology security
Physical Requirements

Working conditions consist of a normal office environment. Work is primarily sedentary and requires extensive use of a computer and involves sitting for periods of approximately four hours. Work may require occasional standing, walking, kneeling and reaching. Must be able to lift 10 pounds occasionally and/or negligible amount of force frequently. Requires visual acuity and dexterity to view, prepare, and manipulate documents and office equipment including personal computers. Requires the ability to communicate with internal and/or external customers. Employee must be able to perform essential functions and physical requirements of position with or without reasonable accommodation.

The above job description is not intended to be an all‑inclusive list of duties and standards of the position. Incumbents will follow instructions and perform other related duties as assigned by their supervisor.

The base pay scale for this position in Phoenix, AZ in USD per year is: $132,000 - $165,000. Additionally, candidates are eligible for a discretionary incentive plan and benefits.

Equal Employment Opportunity

Early Warning Services, LLC (“Early Warning”) considers for employment, hires, retains and promotes qualified candidates on the basis of ability, potential, and valid qualifications without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote equal employment opportunity and affirmative action, in accordance with all applicable federal, state, and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our employees.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Security Engineer
Sr. Security Engineer

Early Warning Services LLC • Scottsdale (AZ)

Hybrid
USD 132,000 - 165,000
Healthcare Coverage
401(k) Retirement Plan
Flexible Time Off
+2
Sr. Security Engineer
Sr. Security Engineer

Early Warning • Scottsdale (AZ)

Hybrid
USD 132,000 - 165,000
Healthcare coverage
401(k) retirement plan
Paid time off
+2
Sr. Infrastructure Security Architect (CIO)
Sr. Infrastructure Security Architect (CIO)

Early Warning • San Francisco (CA)

Hybrid
USD 192,000 - 240,000
Healthcare Coverage
401(k) Retirement Plan
Paid Time Off
+1
Sr. Infrastructure Security Architect (CIO)
Sr. Infrastructure Security Architect (CIO)

Early Warning • Chicago (IL)

Hybrid
USD 160,000 - 200,000
Healthcare Coverage
401(k) Retirement Plan
Flexible Time Off
+1
Principal – AI Technology Risk
Principal – AI Technology Risk

Early Warning Services LLC • New York (NY)

On-site
USD 221,000 - 276,000
Healthcare Coverage
Paid Time Off
401(k) Retirement Plan
+1
Sr. Infrastructure Security Architect (CIO)
Sr. Infrastructure Security Architect (CIO)

Early Warning Services LLC • Chicago (IL)

Hybrid
USD 160,000 - 200,000
Healthcare Coverage
401(k) Retirement Plan
Paid Time Off
+2
Staff Insider Threat Engineer
Staff Insider Threat Engineer

Early Warning Services LLC • Scottsdale (AZ)

On-site
USD 132,000 - 165,000
Health Coverage
401(k) Retirement Plan
Paid Time Off
+2
Sr. Infrastructure Security Architect (CIO)
Sr. Infrastructure Security Architect (CIO)

Early Warning Services LLC • San Francisco (CA)

Hybrid
USD 192,000 - 240,000
Healthcare Coverage
401(k) Retirement Plan
Flexible Time Off
+2
Senior Product Security Architect
Senior Product Security Architect

Early Warning Services LLC • Chicago (IL)

Hybrid
USD 160,000 - 200,000
Healthcare Coverage
401(k) Retirement Plan with match
Paid Time Off + Holidays
+2
Principal – AI Technology Risk
Principal – AI Technology Risk

Early Warning • Chicago (IL)

Hybrid
USD 184,000 - 230,000
Healthcare Coverage
401(k) Retirement Plan
Flexible Time Off
+2