Threat Detection Engineer — Purple Team Lead

CVS Health

Juneau (AK)

On-site

USD 107,000 - 284,000

Full time

6 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Bonus eligibility
Comprehensive benefits
Equity awards

Job summary

CVS Health is seeking a Staff Threat Detection Engineer to advance detection engineering, threat hunting, and offensive security capabilities. You will work with Security Operations and Incident Response to strengthen detection and response across modern SIEM platforms.

The role emphasizes adversary emulation, threat intel integration, and ongoing improvements to detection coverage, with collaboration across teams and strong analytical skills.

Qualifications

  • 7+ years of experience in threat detection, hunting, penetration testing, and/or offensive security.
  • 5+ years of experience in Microsoft Security tools (Defender for Endpoint, Sentinel), CrowdStrike, and Splunk.
  • 3+ years of experience with KQL, SPL, Python, PowerShell, or Bash scripting for automation and detection logic.

Responsibilities

  • Develop, deploy, and optimize detection rules across SIEM platforms such as Microsoft Sentinel and Splunk.
  • Conduct threat hunting activities using Microsoft Defender, CrowdStrike, and other SOC tools to identify and respond to advanced threats.
  • Leverage KQL and SPL to create custom detections and automate responses.
  • Continuously refine detection capabilities based on emerging threats and intelligence.
  • Assist with internal and external penetration tests to identify vulnerabilities.
  • Design and execute adversary emulation scenarios to assess detection and response effectiveness.
  • Produce detailed reports with findings and actionable recommendations.
  • Work closely with blue teams to conduct purple team exercises, bridging offensive and defensive security efforts.
  • Provide actionable insights to improve monitoring, alerting, and incident response based on adversary tactics.
  • Integrate threat intelligence into detection strategies to prioritize threats and adapt rules.
  • Collaborate with the incident response team during investigations by providing adversary tactics insights.
  • Contribute to the development of a comprehensive detection strategy aligned with risk management goals.

Skills

Threat detection
Threat hunting
Penetration testing
Offensive security
Microsoft Defender
Sentinel
CrowdStrike
Splunk
KQL
SPL

Education

Bachelor's degree

Tools

Microsoft Defender
Sentinel
CrowdStrike
Splunk
KQL
SPL

Job description

CVS Health is seeking a Staff Threat Detection Engineer to advance detection engineering, threat hunting, and offensive security capabilities. You will work with Security Operations and Incident Response to strengthen detection and response across modern SIEM platforms.

The role emphasizes adversary emulation, threat intel integration, and ongoing improvements to detection coverage, with collaboration across teams and strong analytical skills.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Threat Detection Engineer — Purple Team
Senior Threat Detection Engineer — Purple Team

CVS Health • Jackson (MS)

On-site
USD 96,000 - 117,000
Threat Detection Engineer - Purple Team & Threat Hunting
Threat Detection Engineer - Purple Team & Threat Hunting

CVS Health • Denver (CO)

On-site
USD 107,000 - 284,000
Bonus eligibility
Equity award program
Comprehensive benefits
Threat Detection Engineer — Threat Hunting & Purple Team
Threat Detection Engineer — Threat Hunting & Purple Team

CVS Health • Nashville (TN)

On-site
USD 107,000 - 284,000
Bonus program
Comprehensive benefits
Equity award target
Threat Detection Engineer | Threat Hunting & Purple Team
Threat Detection Engineer | Threat Hunting & Purple Team

CVS Health • Sacramento (CA)

On-site
USD 107,000 - 284,000
Medical, dental, and vision coverage
Retirement savings options
Paid time off and wellness programs
Senior Threat Detection Engineer – Purple Team
Senior Threat Detection Engineer – Purple Team

CVS Health • Richmond (VA)

On-site
USD 107,000 - 284,000
Bonus program
Equity awards
Comprehensive benefits
Threat Detection Engineer: Purple Team & Threat Hunting
Threat Detection Engineer: Purple Team & Threat Hunting

CVS Health • Indianapolis (IN)

On-site
USD 107,000 - 284,000
Bonus eligibility
Comprehensive benefits
Senior Threat Detection Engineer - Purple Team Leader
Senior Threat Detection Engineer - Purple Team Leader

Koitecc Solutions • Annapolis (MD)

On-site
USD 107,000 - 284,000
Threat Detection Engineer: Purple Team & Offensive Security
Threat Detection Engineer: Purple Team & Offensive Security

Koitecc Solutions • Boston (MA)

Hybrid
USD 107,000 - 284,000
Senior Threat Detection Engineer | SIEM, Threat Hunting & Purple Team
Senior Threat Detection Engineer | SIEM, Threat Hunting & Purple Team

Koitecc Solutions • Nashville (TN)

On-site
USD 150,000 - 284,000
Medical, dental, and vision coverage
Paid time off
Retirement savings options
+1
Senior Threat Detection & Purple Team Engineer
Senior Threat Detection & Purple Team Engineer

Koitecc Solutions • Little Rock (AR)

On-site
USD 107,000 - 284,000
Comprehensive benefits
Bonus eligibility
Equity program