Threat Detection Lead: SIEM, Purple Team & Emulation

Koitecc Solutions

Springfield (IL)

On-site

USD 107,000 - 284,000

Full time

11 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

CVS Health in Illinois is seeking a Staff Threat Detection Engineer to help the organization stay ahead of evolving cyber threats. You will combine threat hunting, detection engineering, and adversary emulation to identify suspicious activity and strengthen security posture.

You will work with Security Operations, Incident Response, and other teams to develop detections, support investigations, and validate controls through purple team exercises.

Qualifications

  • 7+ years in threat detection, hunting, penetration testing, and/or offensive security.
  • 5+ years using Microsoft Defender for Endpoint, Defender for Endpoint, Sentinel, CrowdStrike, and Splunk.
  • 3+ years scripting in Python, PowerShell, or Bash for automation and detection logic.

Responsibilities

  • Develop, tune, and deploy detection rules across SIEM platforms such as Microsoft Sentinel and Splunk.
  • Conduct threat hunting activities using Microsoft Defender, CrowdStrike, and other SOC tools to identify and respond to advanced threats.
  • Leverage KQL and SPL to create custom detections and automate responses, refining capabilities with evolving threats.
  • Assist with internal and external penetration tests to identify vulnerabilities and design adversary emulation scenarios.
  • Produce detailed reports with findings and actionable recommendations.
  • Work with blue teams to conduct purple team exercises and improve monitoring, alerting, and IR.

Skills

Threat detection
Threat hunting
Automation scripting
Penetration testing

Education

Bachelor's degree or equivalent experience

Tools

Microsoft Defender for Endpoint
Microsoft Sentinel
CrowdStrike
Splunk

Job description

CVS Health in Illinois is seeking a Staff Threat Detection Engineer to help the organization stay ahead of evolving cyber threats. You will combine threat hunting, detection engineering, and adversary emulation to identify suspicious activity and strengthen security posture.

You will work with Security Operations, Incident Response, and other teams to develop detections, support investigations, and validate controls through purple team exercises.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Threat Detection Engineer — Purple Team Lead
Threat Detection Engineer — Purple Team Lead

CVS Health • Juneau (AK)

On-site
USD 107,000 - 284,000
Bonus eligibility
Comprehensive benefits
Equity awards
Senior Threat Detection Engineer | SIEM, Threat Hunting & Purple Team
Senior Threat Detection Engineer | SIEM, Threat Hunting & Purple Team

Koitecc Solutions • Nashville (TN)

On-site
USD 150,000 - 284,000
Medical, dental, and vision coverage
Paid time off
Retirement savings options
+1
Senior Threat Detection & Purple Team Engineer
Senior Threat Detection & Purple Team Engineer

Koitecc Solutions • Little Rock (AR)

On-site
USD 107,000 - 284,000
Comprehensive benefits
Bonus eligibility
Equity program
Senior Threat Detection Engineer — Purple Team
Senior Threat Detection Engineer — Purple Team

CVS Health • Jackson (MS)

On-site
USD 96,000 - 117,000
Senior Threat Detection Engineer – Purple Team
Senior Threat Detection Engineer – Purple Team

CVS Health • Richmond (VA)

On-site
USD 107,000 - 284,000
Bonus program
Equity awards
Comprehensive benefits
Threat Detection Engineer: Purple Team & Offensive Security
Threat Detection Engineer: Purple Team & Offensive Security

Koitecc Solutions • Boston (MA)

Hybrid
USD 107,000 - 284,000
Threat Detection Engineer | Threat Hunting & Purple Team
Threat Detection Engineer | Threat Hunting & Purple Team

CVS Health • Sacramento (CA)

On-site
USD 107,000 - 284,000
Medical, dental, and vision coverage
Retirement savings options
Paid time off and wellness programs
Threat Detection Engineer - Threat Hunting & Purple Team
Threat Detection Engineer - Threat Hunting & Purple Team

CVS Health • Madison (WI)

On-site
USD 107,000 - 284,000
Bonus eligibility
Equity awards
Comprehensive benefits
Senior Threat Detection & Purple Team Engineer
Senior Threat Detection & Purple Team Engineer

CVS Health • Frankfort (KY)

On-site
USD 107,000 - 284,000
Senior Threat Detection Engineer - Purple Team Focus
Senior Threat Detection Engineer - Purple Team Focus

CVS Health • Montpelier (VT)

On-site
USD 107,000 - 284,000
Bonus eligibility
Equity program