Threat Detection Engineer

Ampcus, Inc

New York (NY)

On-site

USD 140,000 - 170,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Ampcus Inc. is seeking a Threat Detection Engineer to advance enterprise threat detection capabilities across security monitoring platforms in an on-site role based in New York or Pittsburgh.

You will develop advanced detection logic, threat hunting, and security analytics while collaborating with SOC, cyber defense, and threat intelligence teams to reduce cyber risk. Ideal candidates have 7+ years in cybersecurity, hands-on SIEM experience (Splunk, Sentinel, QRadar), and a proven ability to

Qualifications

  • 7+ years of cybersecurity and security operations experience.
  • Hands-on experience with SIEM tools (Splunk, Sentinel, QRadar).
  • Experience building detection content and threat-hunting methodologies.
  • Familiarity with cloud security, EDR technologies, and MITRE framework.

Responsibilities

  • Develop and tune SIEM detection use cases and correlation rules.
  • Perform proactive threat hunting and behavioral analytics.
  • Create and maintain security monitoring content.
  • Investigate emerging threats and map detections to MITRE Telecommunication & CK.
  • Improve detection coverage for cloud, endpoint, and network environments.
  • Build automated response workflows and security analytics dashboards.
  • Support detection strategies for AI, GenAI, and LLM-based technologies.

Skills

Threat Detection Eng
Splunk & Security Analytics
Threat Hunting & IR

Tools

Splunk
Sentinel
QRadar

Job description

Ampcus Inc. is a certified global provider of a broad range of Technology and Business consulting services. We are in search of a highly motivated candidate to join our talented Team.

Job Title:

Threat Detection Engineer

Location(s):

New York, NY or Pittsburgh, PA

Description and Location:

The Threat Detection Engineer will develop and enhance enterprise threat detection capabilities across security monitoring platforms. This role will focus on creating advanced detection logic, threat hunting, incident identification, security analytics, and monitoring of both traditional and AI-enabled environments. The engineer will work closely with SOC, cyber defense, and threat intelligence teams to improve detection coverage and reduce organizational cyber risk.

Key Responsibilities
  • Develop and tune SIEM detection use cases and correlation rules.
  • Perform proactive threat hunting and behavioral analytics.
  • Create and maintain security monitoring content.
  • Investigate emerging threats and map detections to MITRE Telecommunication & CK.
  • Improve detection coverage for cloud, endpoint, and network environments.
  • Build automated response workflows and security analytics dashboards.
  • Support detection strategies for AI, GenAI, and LLM-based technologies.
AI / Agentic Systems Development
  • Design and implement agentic workflows (ReAct, multi-agent orchestration, tool-augmented agents).
  • Build autonomous or semi-autonomous AI agents to handle development, testing, and operational workflows.
  • Integrate agents with enterprise systems (Jira, Git, ServiceNow, APIs, etc.).
RAG & Knowledge
  • Build and optimize Retrieval-Augmented Generation (RAG) pipelines.
  • Work with vector databases, embeddings, document chunking, indexing, and retrieval tuning.
  • Enable enterprise knowledge use cases (e.g., FAQ bots, nuggets/knowledge artifacts, AI copilots).
LLM Evaluation
  • Implement evaluation frameworks for LLMs, including:
  • Functional correctness
  • Response quality
  • Hallucination detection
  • Experience with AI testing frameworks (e.g., RAGAS, DeepEval, custom evaluation harnesses).
  • Build scalable APIs/services (FastAPI, Flask, etc.).
  • Ensure performance, observability, and reliability of AI systems.
Primary Skills
  • Threat Detection Engineering (SIEM/EDR)
  • Splunk & Security Analytics
  • Threat Hunting & Incident Response
Secondary Skills
  • Security Automation (SOAR)
  • AI Security & GenAI Monitoring
Experience
  • 7+ years of cybersecurity and security operations experience.
  • Hands-on experience with Splunk, Sentinel, QRadar, or similar SIEM tools.
  • Experience building detection content and threat-hunting methodologies.
  • Familiarity with cloud security, EDR technologies, and MITRE Telecommunication & CK framework.
Location:
  • New York, NY or Pittsburgh, PA (ON SITE ROLE, LOCAL CANDIDATES PREFERRED) US.

Ampcus is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veterans or individuals with disabilities.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Threat Detection Engineer — SIEM & AI Security
Threat Detection Engineer — SIEM & AI Security

Ampcus, Inc • New York (NY)

On-site
USD 140,000 - 170,000
Senior Threat Detection Engineer
Senior Threat Detection Engineer

ManpowerGroup Global, Inc. • New York (NY)

On-site
USD 65,000 - 70,000
Medical plans
Dental plan
Vision plan
+4
Detection Engineer/Threat Hunter
Detection Engineer/Threat Hunter

Partner Forces LLC • Arlington (VA)

On-site
USD 110,000 - 140,000
Detection & Response Engineering Manager
Detection & Response Engineering Manager

InfraTech Solutions • Chicago (IL)

Hybrid
USD 150,000 - 180,000
Health insurance
Dental insurance
Vision insurance
+4
Detection Engineer Lead
Detection Engineer Lead

K&A Technologies LLC • Washington

Hybrid
USD 165,000 - 190,000
Principal Splunk-Threat Detection & Integration Engineer
Principal Splunk-Threat Detection & Integration Engineer

Quzara LLC • United States

On-site
USD 120,000 - 160,000
Information Technology - Analyst, Cyber Security
Information Technology - Analyst, Cyber Security

Ampcus, Inc • Reston (VA)

On-site
USD 85,000 - 110,000
Detection Engineer
Detection Engineer

ADP, Inc. • Orlando (FL)

On-site
USD 110,000 - 140,000
Detection engineer
Detection engineer

ThreatLocker Inc. • Orlando (FL), Northern (KY)

Hybrid
USD 110,000 - 150,000
Senior Security Engineer - Threat Detection
Senior Security Engineer - Threat Detection

samsara • United States

Hybrid
USD 150,000 - 190,000
Professional development stipend
Comprehensive health coverage
Parental leave plans