Sr. Lead Threat Detection Engineer

apply

Roseland (NJ)

On-site

USD 140,000 - 190,000

Full time

6 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

ADP is seeking a Senior Lead Threat Detection Engineer to join our Global Security team. You will design, drive and refine threat detection, collaborate with incident response and threat intelligence, and mentor detection engineers to strengthen ADP's cyber defenses.

You will lead projects, define requirements for prevention and response, and push innovative detection capabilities across platforms. You will ensure high-fidelity detections using SIEM/SOAR, mentor team members, and partner with

Qualifications

  • Bachelor's degree or equivalent required.
  • 5–7+ years in security including threat detection, hunt, incident response and SOAR development.
  • Strong knowledge of SIEM and SOAR platforms and related tooling.

Responsibilities

  • Develop and drive detection workflows and alerting for the SOAR platform based on stakeholder requests.
  • Lead detection projects and mentor detection engineers.
  • Collaborate with IT, Ops, and Engineering to support Production issues and optimize detections.

Skills

Threat detection
SOAR development
Incident response
Security operations
Python scripting
PowerShell scripting
SIEM experience
Communication
Integrity

Education

Bachelor's degree or equivalent

Tools

SIEM
SOAR
Data warehouse technologies
SQL databases

Job description

ADP is hiring a Senior Lead Threat Detection Engineer.

  • You will work with Global Security teams from Critical Incident Response Center (CIRC), Threat Intelligence, Threat Hunting, Red Team, and AppDev, to create and drive threat detection to protect ADP assets.
  • You will help lead efforts to design/define/create requirements to develop prevention, detection, and response capabilities within ADP Cyber security platforms.
  • You will lead, mentor, and collaborate with other Detection Engineers to design, build & maintain cyber alert catalogs.
  • You are keen on promoting the use of innovative new technology and best practices for evolving security objectives.
  • You can present your ideas clearly, professionally on paper, in person, on video calls, and over the phone.
  • You have solid experience analyzing and defining solutions, maintaining and enhancing existing solutions, and participating in the delivery of projects.
  • You enjoy mentoring, brainstorming new concepts, and providing guidance for your team members.
  • You can work with partners in IT, Ops, and Engineering to provide support for troubleshooting Production issues.
  • Our best engineers are enthusiastic creators who stay current on new ways of optimizing threat detections and processes and enhancing business intelligence automation. They're always looking for new ways to improve detection quality.
  • To thrive in this role, you'll need to be an expert in threat detection and SOAR Development.

WHAT YOU'LL DO:

  • Strong knowledge and experience with detection engineering and SOAR development.
  • Develop and drive new detection workflows and alerting for our SOAR platform based on specific requests from stakeholders, threat intelligence, threat hunting.
  • Provide technical mentorship and support to detection engineers as individual contributors in pursuit of achieving immediate team and overall program objectives
  • Lead detection projects driven by groups both internal and external to GSO.
  • Lead technical relationships with assigned detection vendors, including troubleshooting and support requests as well as driving features and function requests for inclusion in future product releases
  • Ability to introduce innovation and ideas to improve current detection processes or develop new processes in-sync with Threat Hunt
  • Co-develop a roadmap for the Threat Detection team that will align with the overall Hunt and Detection program and Threat Management’s mission and objectives.
  • Maintain an expert-level understanding of attacks, vectors, and emergent threats and incorporating these into detections
  • Analyze CIRC alert statistics and workflows to reduce false positives and properly focus engineering efforts.
  • Drive the creation and maintenance of detection CIRC playbooks, workflow automation, and use cases to protect ADP assets.
  • Act as a detection and SOAR subject matter expert in multiple areas.
  • Create, track, and iterate on metrics of the detection engineering process to show progress towards goals and track gaps in detection coverage.
  • Engage proactively to develop new security detections to support daily operations and faster, more accurate identification of threats.
To Succeed in This Role:
  • Youll have a bachelors degree or equivelent
Preferred Experience
  • 5-7+ years of experience in security, including threat detection, hunt, incident response and SOAR development.
  • 3+ years of threat detection project and program experience.
  • Strong knowledge and practical use working with SIEM and SOAR
  • Experience with incident detection, response, analysis and security operations
  • Experience with software, system and security architectures
  • Strong knowledge and working experience with databases and data warehouse technologies and solutions.
  • Strong working experience with systems automation in a major scripting language (Python, PowerShell).
  • Strong experience building detection logic utilizing security logs to detect malicious activity with high fidelity across a broad set of detection use cases. Experience working with SIEM and SOAR
  • Creative thinker that leverages unconventional and innovative ideas to solve problems.
  • Ability to communicate security-related concepts to a broad range of technical and non-technical staff.
  • Must possess a high degree of integrity, be trustworthy, and have the ability to work independently.

Find out why people come to ADP and why they stay: https://youtu.be/ODb8lxBrxrY

(ADA version: https://youtu.be/IQjUCA8SOoA )

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Sr. Lead Threat Detection Engineer
Sr. Lead Threat Detection Engineer

adpinternalcareers • Roseland (NJ)

Hybrid
USD 140,000 - 190,000
Sr. Lead Threat Detection Engineer
Sr. Lead Threat Detection Engineer

ADP • Roseland (NJ)

On-site
USD 150,000 - 210,000
Senior Threat Detection Lead - SOAR & SIEM Expert
Senior Threat Detection Lead - SOAR & SIEM Expert

ADP • Roseland (NJ)

On-site
USD 150,000 - 210,000
Senior Threat Detection Lead & SOAR Architect
Senior Threat Detection Lead & SOAR Architect

apply • Roseland (NJ)

On-site
USD 140,000 - 190,000
Cyber Security Analyst
Cyber Security Analyst

apply • Roseland (NJ)

On-site
USD 120,000 - 180,000
Cyber Security Analyst
Cyber Security Analyst

adpinternalcareers • Roseland (NJ)

Hybrid
USD 120,000 - 180,000
Hybrid work model
Senior Threat Detection & SOAR Lead
Senior Threat Detection & SOAR Lead

adpinternalcareers • Roseland (NJ)

Hybrid
USD 140,000 - 190,000
Lead Security Platform Engineer
Lead Security Platform Engineer

adpinternalcareers • Roseland (NJ)

On-site
USD 140,000 - 180,000
Lead Security Engineer - Developer, Cloud, Kubernetes
Lead Security Engineer - Developer, Cloud, Kubernetes

ADP, Inc. • Roseland (NJ)

Hybrid
USD 93,000 - 230,000
Health benefits
Hybrid work model
401(k) matching
+1
Senior Manager, Cybersecurity Engineer - AI & Application Protection
Senior Manager, Cybersecurity Engineer - AI & Application Protection

adpinternalcareers • Roseland (NJ)

Hybrid
USD 170,000 - 230,000
Hybrid work model