Sr. Lead Threat Detection Engineer

ADP

Roseland (NJ)

On-site

USD 150,000 - 210,000

Full time

10 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

ADP is seeking a Senior Lead Threat Detection Engineer to join its Global Security team. You will collaborate across Critical Incident Response Center, Threat Intelligence, Threat Hunting, Red Team, and AppDev to design, implement, and refine detection capabilities that protect ADP assets.

The role emphasizes leadership, mentoring, and building scalable detection workflows with SOAR, while partnering with IT, Ops, and Engineering to troubleshoot production issues and improve detection quality.

Qualifications

  • Bachelor's degree or equivalent required.
  • 5-7 years of security experience including threat detection, hunt, incident response and SOAR development.
  • Experience with SIEM and SOAR platforms.
  • Strong knowledge of databases and data warehousing.
  • Experience with scripting (Python, PowerShell).

Responsibilities

  • Develop and drive detection workflows and alerting for our SOAR platform based on requests from stakeholders, threat intelligence, threat hunting.
  • Provide technical mentorship and support to detection engineers as contributors toward program objectives.
  • Lead detection projects driven by internal and external groups.
  • Lead technical relationships with detection vendors, troubleshooting and driving feature requests for future releases.
  • Co-develop a roadmap for the Threat Detection team aligned with Hunt and Threat Management missions.
  • Maintain expert understanding of attacks, vectors, and emergent threats and incorporate into detections.

Skills

detection engineering
SOAR development
detection workflows
mentoring
vendor relationships
roadmap development
threat detection concepts
threat hunting
incident response

Education

Bachelor's degree or equivalent

Tools

SIEM
SOAR
Python
PowerShell
Data warehouse

Job description

ADP is hiring a Senior Lead Threat Detection Engineer.

Are you a technologist, first and foremost, who approaches every problem wearing that hat while going out of your way to champion secure development creativity and build diverse, engaged teams?

Are you looking to join a dynamic, inclusive team environment with a culture of collaboration and belonging?

Are you empathetic to client needs, the people you work with, and internal partners motivated to drive success?

Well, this may be the role for you. Ready to make your mark?

In this role, the Senior Lead Threat Detection Engineer responsibilities will include:

You will work with Global Security teams from Critical Incident Response Center (CIRC), Threat Intelligence, Threat Hunting, Red Team, and AppDev, to create and drive threat detection to protect ADP assets.

You will help lead efforts to design/define/create requirements to develop prevention, detection, and response capabilities within ADP Cyber security platforms.

You will lead, mentor, and collaborate with other Detection Engineers to design, build & maintain cyber alert catalogs.

You are keen on promoting the use of innovative new technology and best practices for evolving security objectives.

You can present your ideas clearly, professionally on paper, in person, on video calls, and over the phone.

You have solid experience analyzing and defining solutions, maintaining and enhancing existing solutions, and participating in the delivery of projects.

You enjoy mentoring, brainstorming new concepts, and providing guidance for your team members.

You can work with partners in IT, Ops, and Engineering to provide support for troubleshooting Production issues.

Our best engineers are enthusiastic creators who stay current on new ways of optimizing threat detections and processes and enhancing business intelligence automation. They're always looking for new ways to improve detection quality.

To thrive in this role, you'll need to be an expert in threat detection and SOAR Development.

WHAT YOU'LL DO
  • Strong knowledge and experience with detection engineering and SOAR development.
  • Develop and drive new detection workflows and alerting for our SOAR platform based on specific requests from stakeholders, threat intelligence, threat hunting.
  • Provide technical mentorship and support to detection engineers as individual contributors in pursuit of achieving immediate team and overall program objectives.
  • Lead detection projects driven by groups both internal and external to GSO.
  • Lead technical relationships with assigned detection vendors, including troubleshooting and support requests as well as driving features and function requests for inclusion in future product releases.
  • Ability to introduce innovation and ideas to improve current detection processes or develop new processes in-sync with Threat Hunt.
  • Co-develop a roadmap for the Threat Detection team that will align with the overall Hunt and Detection program and Threat Management's mission and objectives.
  • Maintain an expert-level understanding of attacks, vectors, and emergent threats and incorporating these into detections.
  • Analyze CIRC alert statistics and workflows to reduce false positives and properly focus engineering efforts.
  • Drive the creation and maintenance of detection CIRC playbooks, workflow automation, and use cases to protect ADP assets.
  • Act as a detection and SOAR subject matter expert in multiple areas.
  • Create, track, and iterate on metrics of the detection engineering process to show progress towards goals and track gaps in detection coverage.
  • Engage proactively to develop new security detections to support daily operations and faster, more accurate identification of threats.
To Succeed in This Role
  • Youll have a bachelors degree or equivelent.
Preferred Experience
  • 5-7 years of experience in security, including threat detection, hunt, incident response and SOAR development.
  • 3 years of threat detection project and program experience.
  • Strong knowledge and practical use working with SIEMand SOAR
  • Experience with incident detection, response, analysis and security operations
  • Experience with software, system and security architectures
  • Strong knowledge and working experience with databases and data warehouse technologies and solutions.
  • Strong working experience with systems automation in a major scripting language (Python, PowerShell).
  • Strong experience building detection logic utilizing security logs to detect malicious activity with high fidelity across a broad set of detection use cases.Experience working with SIEMand SOAR
  • Creative thinker that leverages unconventional and innovative ideas to solve problems.
  • Ability to communicate security-related concepts to a broad range of technical and non-technical staff.
  • Must possess a high degree of integrity, be trustworthy, and have the ability to work independently.

Find out why people come to ADP and why they stay: https://youtu.be/ODb8lxBrxrY

(ADA version: https://youtu.be/IQjUCA8SOoA)

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Threat Detection Lead - SOAR & SIEM Expert
Senior Threat Detection Lead - SOAR & SIEM Expert

ADP • Roseland (NJ)

On-site
USD 150,000 - 210,000
Cyber Security Analyst
Cyber Security Analyst

ADP, Inc. • Roseland (NJ)

Hybrid
USD 75,000 - 184,000
Lead Security Engineer - Developer, Cloud, Kubernetes
Lead Security Engineer - Developer, Cloud, Kubernetes

Socket.dev • Roseland (NJ)

Hybrid
USD 140,000 - 190,000
Senior Manager, Cybersecurity Engineer - AI & Application Protection
Senior Manager, Cybersecurity Engineer - AI & Application Protection

Socket.dev • Roseland (NJ)

Hybrid
USD 180,000 - 240,000
Cybersecurity Detection Engineer 3643279
Cybersecurity Detection Engineer 3643279

Axiom-Path • Charlotte (NC)

Hybrid
USD 110,000 - 150,000
Lead Information Security Analyst
Lead Information Security Analyst

Fairygodboss • Alpharetta (GA)

On-site
USD 120,000 - 180,000
Detection and platform engineer
Detection and platform engineer

Tixy Services LLC • Town of Texas (WI), Fort Worth (TX)

Hybrid
USD 120,000 - 180,000
Detection Engineer, Security Operations & Telemetry
Detection Engineer, Security Operations & Telemetry

Saronic • Austin (TX)

On-site
Cybersecurity Threat Detection & Automation Manager
Cybersecurity Threat Detection & Automation Manager

Cummins Inc. • Troy (MI)

On-site
USD 150,000 - 190,000
Staff Detection Security Operations Engineer
Staff Detection Security Operations Engineer

Arkenstone Defense • Menlo Park (CA)

On-site
USD 150,000 - 190,000
Competitive Salary
Health and Wellness Programs
Retirement Planning
+3