Threat Detection Engineer

Regions Bank

Birmingham (AL)

On-site

USD 90,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Regions Bank is seeking a Cyber Security Engineer to support cloud applications, infrastructure, platform security, and related technologies within the Cyber Security organization. The role emphasizes design, implementation, and ongoing administration of security solutions and monitoring across the enterprise.

The ideal candidate will have strong Splunk experience (ES and SPL), familiarity with MITRE ATT&CK mappings, and solid knowledge of Windows, Linux, cloud logging, and common security

Qualifications

  • High School Diploma or GED with eight years of related security/IT experience
  • Bachelor’s degree in IT, Information Security or related field
  • Relevant certifications (CISSP, Security+, CCNA, CCNA, CCNA, MCSA)

Responsibilities

  • Design and support cyber security technology solutions
  • Provide technical administration including troubleshooting and patching
  • Research new technologies and assess build vs buy options
  • Develop detections and improve security monitoring
  • Participate in incident response and SOC operations

Skills

Regulatory compliance
Prioritization skills
Web and cloud tech
Security tools and controls
Analytical thinking
Problem solving
Communication skills

Education

Bachelor's degree in IT/Info Security/CS/Engineering
Security certifications (CISSP, Security+, CCNA, MCSA)

Tools

Splunk Enterprise
Splunk ES
Windows Security Events
Sysmon
AWS
Azure
Microsoft Defender
CrowdStrike
Palo Alto
Okta
Splunk CIM

Job description

Thank you for your interest in a career at Regions. At Regions, we believe associates deserve more than just a job. We believe in offering performance-driven individuals a place where they can build a career — a place to expect more opportunities. If you are focused on results, dedicated to quality, strength and integrity, and possess the drive to succeed, then we are your employer of choice.

Regions is dedicated to taking appropriate steps to safeguard and protect private and personally identifiable information you submit. The information that you submit will be collected and reviewed by associates, consultants, and vendors of Regions in order to evaluate your qualifications and experience for job opportunities and will not be used for marketing purposes, sold, or shared outside of Regions unless required by law. Such information will be stored in accordance with regulatory requirements and in conjunction with Regions’ Retention Schedule for a minimum of three years. You may review, modify, or update your information by visiting and logging into the careers section of the system.

Job Description:

At Regions, the Cyber Security Engineer supports applicable services for cloud applications, infrastructure, platform security, and related technologies within the Cyber Security organization.

Primary Responsibilities

  • Designs, implements, and supports relevant cyber security technology solutions
  • Provides technical administration to include troubleshooting support, break-fix operations, patching, and other day-to-day activities for relevant applications
  • Stays abreast of industry trends and investigates organizational objectives and needs
  • Reviews and maintains operational documentation and reports to support monthly trend analysis as well as project components
  • Conducts research, proof-of-concept, selection, and implementation of technology solutions, including detailed analysis of pros and cons and build vs buy options
  • Explores implementation of new technologies, solutions, and methods to improve business processes, efficiency, effectiveness, and value delivered to customers
  • May participate in security incident response activities and post-event reviews of security incidents
  • Supports subject-matter experts in the design, implementation, and maintenance of relevant cyber security solutions to business areas, project teams, and vendors
  • Examines the technology vision, opportunities and challenges regarding security standards and the impact of the technology within the Cyber Security organization
  • Supports relevant metrics, controls, and other governance administration related to cyber security technology
  • Participates in on-call rotation for the support of any relevant cyber security technologies
  • Offers advice and guidance to junior engineers, assisting in the development of technical skills and knowledge
  • Assists with the review, design, and development of related operational processes, standards, and procedures
  • Adheres to operational processes, standards, and procedures
  • Ensures compliance with risk management programs, rules and regulations, and cybersecurity practices; identifies opportunities for and supports process improvements; applies disciplined change management practices
  • May assist senior engineers in the administration of complex projects

This position is exempt from timekeeping requirements under the Fair Labor Standards Act and is not eligible for overtime pay.

Requirements

  • High School Diploma or GED and eight (8) years of related post-secondary education and/or experience in Information Security and/or Information Technology

Preferences

  • Bachelor’s degree in Information Technology, Information Security, Information Systems Management, Computer Science, Engineering, or related field
  • Applicable technology and/or security certifications (e.g. Certified Information Systems Security Professional (CISSP), CompTIA Security+, Cisco Certified Network Associate (CCNA), Microsoft Certified Solutions Associate (MCSA), etc.)

Skills and Competencies

  • Ability to interpret and ensure compliance with applicable rules, regulations, and industry guidance
  • Ability to prioritize conflicting demands
  • Knowledge of common web technologies, cloud technologies, and enterprise and network architecture
  • Knowledge of defense in depth, trust levels, privileges, and permissions
  • Knowledge of modern security tools and controls
  • Possesses an analytical and evaluative thinking capability
  • Strong problem-solving skills to offer sound solutions to issues
  • Strong verbal, written communication, and organizational skills

The ideal candidate for this opportunity has strong experience with Splunk Enterprise and Splunk Enterprise Security (ES), including advanced SPL query development, correlation searches, and dashboard creation.

  • Knowledge of detection engineering principles, threat hunting, and alert tuning to improve detection fidelity and reduce false positives.
  • Experience mapping detections to the MITRE ATT&CK framework and developing use cases for adversary behaviors and TTPs.
  • Familiarity with Windows Security Events, Sysmon, Linux logs, cloud logging platforms (AWS/Azure), and common security tools such as Microsoft Defender, CrowdStrike, Palo Alto, or Okta.
  • Understanding of Splunk Common Information Model (CIM), data onboarding, field extractions, and log normalization.
  • Experience with risk-based alerting (RBA), incident response, and SOC operations.
  • Proficiency with Python, PowerShell, regex, and Git-based Detection-as-Code methodologies.
  • Ability to collaborate with threat hunters, SOC analysts, and red/purple teams to validate and improve detections.
  • Strong analytical, troubleshooting, and communication skills with the ability to document detections, investigations, and security recommendations.
This position is intended to be onsite, now or in the near future. Associates will have regular work hours, including full days in the office three or more days a week. The manager will set the work schedule for this position, including in-office expectations. Regions will not provide relocation assistance for this position, and relocation would be at your expense. The locations available for this role are Birmingham, AL, Atlanta, GA, Nashville, TN, or Charlotte, NC.
Regions will not sponsor applicants for work visas for this position at this time. Applicants for this position must currently be authorized to work in the United States on a full-time basis.

Position Type

Full time

Compensation Details

Pay ranges are job specific and are provided as a point-of-market reference for compensation decisions. Other factors which directly impact pay for individual associates include: experience, skills, knowledge, contribution, job location and, most importantly, performance in the job role. As these factors vary by individuals, pay will also vary among individual associates within the same job.

The target information listed below is based on the Metropolitan Statistical Area Market Range for where the position is located and level of the position.

Job Range Target:

Minimum:

_ Median: _

Incentive Pay Plans:

Opportunity to participate in the Long Term Incentive Plan.

Benefits Information

Regions offers a benefits package that is flexible, comprehensive and recognizes that "one size does not fit all" for benefits-eligible associates. Listed below is a synopsis of the benefits offered by Regions for informational purposes, which is not intended to be a complete summary of plan terms and conditions.

  • Paid Vacation/Sick Time
  • 401K with Company Match
  • Medical, Dental and Vision Benefits
  • Disability Benefits
  • Health Savings Account
  • Flexible Spending Account
  • Life Insurance
  • Parental Leave
  • Employee Assistance Program
  • Associate Volunteer Program

Please note, benefits and plans may be changed, amended, or terminated with respect to all or any class of associate at any time.

https://www.regions.com/about-regions/welcome-portal/benefits

Location Details

Riverchase Operations Center

Location:

Hoover, Alabama

Equal Opportunity Employer/including Disabled/Veterans

Job applications at Regions are accepted electronically through our career site for a minimum of five business days from the date of posting. Job postings for higher-volume positions may remain active for longer than the minimum period due to business need and may be closed at any time thereafter at the discretion of the company.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Threat Detection Engineer
Threat Detection Engineer

Fayette Chamber of Commerce • Atlanta (GA)

On-site
USD 110,000 - 150,000
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
+2
Threat Detection Engineer
Threat Detection Engineer

Regions Financial Corporation • Hoover (AL)

On-site
USD 90,000 - 140,000
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
+6
Threat Detection Engineer
Threat Detection Engineer

Regions Bank • North Carolina

On-site
USD 100,000 - 150,000
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
Cyber Security Engineer
Cyber Security Engineer

Regions Bank • North Carolina

On-site
USD 80,000 - 98,000
Cyber Threat Intel Manager
Cyber Threat Intel Manager

Regions Bank • North Carolina

On-site
USD 151,000 - 185,000
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
+7
Cyber Threat Intel Manager
Cyber Threat Intel Manager

Fayette Chamber of Commerce • Atlanta (GA)

On-site
USD 151,284 - 184,903
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
+2
Principal Cyber Security Engineer
Principal Cyber Security Engineer

Fayette Chamber of Commerce • Atlanta (GA)

On-site
USD 142,000 - 174,000
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
+2
Principal Cyber Security Engineer
Principal Cyber Security Engineer

Regions Financial Corporation • Atlanta (GA)

On-site
USD 158,000 - 220,000
Principal Cyber Security Engineer
Principal Cyber Security Engineer

Regions Financial Corporation • Hoover (AL)

On-site
USD 158,000 - 220,000
Annual incentive plan
Long Term Incentive Plan
401K with company match
+1
Principal Cyber Security Engineer
Principal Cyber Security Engineer

Regions Bank • Hoover (AL)

On-site
USD 158,000 - 220,000
Paid Vacation
401K Match
Medical Benefits
+7