Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Director, Cyber Security Detection Engineering

AstraZeneca

Leverage technology to impact patients and ultimately save livesDo you have expertise in, and passion for, information technology? Would you like to apply your expertise to impact the IT strategy in a company that follows the science and turns ideas into life changing medicines? If so, AstraZeneca might be the one for you! ABOUT ASTRAZENECA AstraZeneca is a global, science-led, patient-focused biopharmaceutical company that focuses on the discovery, development and commercialization of prescription medicines for some of the world’s most serious disease. But we’re more than one of the world’s leading pharmaceutical companies. At AstraZeneca, we're dedicated to being a Great Place to Work. ABOUT ROLE:The Director, Cyber Security Detection Engineering is a senior leader in the Cyber Operations function, based in Gaithersburg, Maryland, working with the Head of Cyber Operations. The role encompasses command of enterprise detection capabilities across cloud, on-premises, and OT/ICS environments, ownership of detection governance and validation, and delivery of executive reporting, coverage assessments, and capability maturation in partnership with GSOC, CTI, Vulnerability Management, Offensive Security, IT, Legal, Risk and Compliance, and business customers. What You'll Do:Detection strategy and roadmap: Direct the development and execution of comprehensive detection engineering programmes aligned to interpersonal risk appetite and threat landscape; establish capability roadmaps spanning data engineering, detection development, purple teaming, and automation/AI. Data engineering oversight: Ensure robust data pipelines support detection activities through telemetry collection, normalization, and quality assurance across hybrid and OT environments; define data retention, schema standards, and platform configuration to enable effective threat detection. Detection content development: Oversee creation, testing, and deployment of detection logic across SIEM, EDR, and cloud-native tooling; enforce detection standards, naming conventions, and MITRE ATT&CK mapping; prioritise coverage based on threat intelligence and risk assessments. Purple Team Exercising: Oversee purple team operations to validate detection efficacy systematically; orchestrate adversary emulation exercises across technology domains; drive remediation of detection gaps identified through testing and operational feedback. Automation and AI integration: Operationalise AI agents, machine learning models, and orchestration workflows to enhance detection accuracy, reduce false positives, and augment GSOC analyst capabilities; oversee development of automated enrichment, triage, and investigation playbooks. Metrics and reporting: Own detection engineering targets (e.g., MITRE ATT&CK coverage, mean time to detect, false positive rates, purple team success metrics) and deliver executive-ready briefings, dashboards, and quarterly maturity assessments. Policy and governance: Develop and enforce detection engineering policies, standards, and quality frameworks; maintain detection content libraries with version control and organizational change field; ensure regulatory compliance in data handling. People Leadership:Strategy and planning: Develop and maintain detection engineering area plans aligned to Cyber Operations strategy; set direction and goals with autonomy across data engineering, detection development, purple teaming, and automation functions. Performance and tiers: Define and review reporting and team targets; align objectives to detection outcomes, coverage improvements, and operational efficiency. Talent and capability: Lead inclusive recruitment; build career paths and targeted upskilling in detection development, threat hunting, cloud security, OT/ICS detection, and SOAR/AI through multi-functional, regional, and external partnerships. Knowledge, Experience, and Understanding Of: Detection engineering lifecycle: Proven leadership across detection development, testing, deployment, and tuning at enterprise scale; deep understanding of detection logic design, coverage mapping, and efficacy validation. Threat detection frameworks: Extensive knowledge of MITRE ATT&CK, Cyber Kill Chain, and detection engineering methodologies; experience mapping organisational coverage and prioritising development based on threat intelligence. Purple team operations: Experienced in designing and accomplishing adversary emulation exercises; skilled in translating purple team findings into actionable detection improvements and coverage enhancements. Automation and AI: Experience operationalizing modern detection platforms (SIEM, XDR, SOAR) including integration of artificial intelligence, machine learning models, and agentic features to enable detection at scale. Data engineering and platforms: Proficient with data pipeline architecture, log aggregation, normalisation, and query optimisation; solid grasp of data quality requirements for effective detection. Cloud, identity, and endpoint detection: Deep understanding of detection approaches across multi-cloud environments, identity systems, endpoints, and network infrastructure; familiar with cloud-native security services and integration patterns. Manufacturing Operational Technology/Industrial Control Systems: Coordinating detection engineering in industrial/OT environments with safety, availability, and production continuity considerations; knowledge of industrial protocols and OT-specific threats. Minimum Skills & Experience Required Education: Bachelor's degree in information security, computer science, or related field (or equivalent experience). Enterprise-scale detection leadership: Over 5 years managing detection engineering or security operations in enterprise-sized organisations, commanding capabilities across hybrid cloud, on-premises, and OT environments. Global coordination with distributed teams: Experience integrating and working alongside global, 247, geographically dispersed teams to deliver detection capabilities and support security operations missions. Communication and facilitation: Well-developed skills to explain complex technical concepts in clear business terms; produce concise written material (executive updates, coverage reports); and lead briefings to diverse stakeholders. Analytical decision making: Ability to analyse complex threat landscapes, assess detection gaps, and balance strategic capability development with tactical operational requirements, risk appetite, and resource constraints. Customer orientation and cross-cultural working: Demonstrated ability to collaborate across regions and functions (GSOC, IT, Legal, GRC, business units) with a strong service approach and commitment to enabling organisational resilience. Preferred Skills & Experience:Certifications: Security certifications preferred (e.g., CISSP, CISM, GIAC such as GCIA/GCDA/GMON; cloud certifications; ITIL). When we put unexpected teams in the same room, we unleash bold thinking with the power to encourage life-changing medicines. In-person working gives us the platform we need to connect, work at pace and challenge perceptions. That's why we work, on average, a minimum of three days per week from the office. But that doesn't mean we're not flexible. We balance the expectation of being in the office while respecting individual flexibility. Join us in our unique and ambitious world.The annual base pay for this position ranges from $169,320.00 - $253,980.00 USD Annual. Hourly and salaried non-exempt employees will also be paid overtime pay when working qualifying overtime hours. Base pay offered may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, and experience. In addition, our positions offer a short-term incentive bonus opportunity; eligibility to participate in our equity-based long-term incentive program (salaried roles), to receive a retirement contribution (hourly roles), and commission payment eligibility (sales roles). Benefits offered included a qualified retirement program [401(k) plan]; paid vacation and holidays; paid leaves; and, health benefits including medical, prescription drug, dental, and vision coverage in accordance with the terms and conditions of the applicable plans. Additional details of participation in these benefit plans will be provided if an employee receives an offer of employment. If hired, employee will be in an “at-will position” and the Company reserves the right to modify base pay (as well as any other discretionary payment or compensation program) at any time, including for reasons related to individual performance, Company or individual department/team performance, and market factors.Are you ready to bring new insights and fresh thinking to the table? Fantastic! We have one seat available, and we hope it’s yours. Apply today.AstraZeneca embraces diversity and equality of opportunity. We are committed to building an inclusive and diverse team representing all backgrounds, with as wide a range of perspectives as possible, and harnessing industry-leading skills. We believe that the more inclusive we are, the better our work will be. We welcome and consider applications to join our team from all qualified candidates, regardless of their characteristics. We follow all applicable laws and regulations on non-discrimination in employment (and recruitment), as well as work authorization and employment eligibility verification requirements.WHY JOIN US ? We’re a network of high-reaching self-starters who contribute to something far bigger. We enable AstraZeneca to perform at its peak by delivering premier technology and data solutions. We’re not afraid to take ownership and run with it. Empowered with unrivalled freedom. Put simply, it’s because we make a significant impact. Everything we do matters. #cyberDate Posted24-Aug-2026Closing Date02-Sep-2026Our mission is to build an inclusive environment where equal employment opportunities are available to all applicants and employees. In furtherance of that mission, we welcome and consider applications from all qualified candidates, regardless of their protected characteristics. If you have a disability or special need that requires accommodation, please complete the corresponding section in the application form.SummaryLocation: US - Gaithersburg - MDType: Full time

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Director, Cyber Security Detection Engineering in Gaithersburg, MD vacancy
  • $154.05k - $278.48k

    Leidos has an exciting opportunity for Cyber Security Engineer—Technical Lead in our Intel Security Sector's Analysis Solutions Business Area....  ...virtual private networks, firewalls, web protocols, incident detection, incident response, and forensics activities,Experience... 
    Suggested
    Full time
    Immediate start
    Flexible hours

    Leidos

    Bethesda, MD
    3 days ago
  • $115k - $125k

     ...Banker.Position PurposeThe Lead Information Security Engineer provides senior-level technical...  ...monitoring from various sources to proactively detect and respond to potential security...  ...knowledge and skills to adapt to evolving cyber threatsDevelop and implement DR/... 
    Suggested
    Currently hiring
    Work at office
    Remote work

    Capital Bancorp

    Rockville, MD
    5 days ago
  • Associate Director of Cyber Security - IT Operations 5 Days a week onsite We’re looking for an experienced...  ...and proactively strengthen detection capabilities. Oversee Windows/Linux...  ...external SOC provider and internal cyber engineer. Lead incident response, investigations... 
    Suggested

    RBW Consulting

    Gaithersburg, MD
    1 day ago
  •  ...Industries (FPI). Our depth of experience allows us to provide IT security support for a wide range of IT General Support Systems (GSS)...  ...difficult and narrowly defined technical problems in engineering and other scientific applications to arrive at automated solutions... 
    Suggested
    Contract work
    Work at office

    NXTKey Corporation

    Rockville, MD
    5 days ago
  •  ...Cyber Security Engineer Hoplite Solutions is seeking multiple Cyber Security Engineers. This role is responsible for protecting the customer...  ...software, such as firewalls (Security Groups), intrusion detection/intrusion prevention, anti-virus/malware (HBSS), cryptography... 
    Suggested

    Hoplite Solutions LLC

    Bethesda, MD
    3 days ago
  •  ...to fulfill staffing needs in IT, Security, Business Support, and Operations....  ...systems and networks from potential cyber-attacks. The Cyber Security Engineer must display an excellent...  ...firewalls (Security Groups), intrusion detection/intrusion prevention, anti-virus/malware... 
    For subcontractor
    Local area

    Red Key Solutions

    Bethesda, MD
    2 days ago
  • $110k - $230k

     ...Careers. Position Description Our Staff Engineer works with our Distinguished Engineers to...  ...has good technical expertise ensuring secure authentication and communication across...  ...perform experiments, and influence security detection and protection solutions. Strong... 
    Hourly pay
    Work experience placement
    Local area

    GEICO

    Bethesda, MD
    1 day ago
  •  ...either Rockville, MD or Tysons Corner, VA Our client seeks a Security Engineer responsible for designing, implementing, and maintaining...  ...access, modification, or loss. The role requires expertise in cyber security, email platforms, cloud environments, and data protection... 
    Remote work

    Eliassen Group

    Rockville, MD
    3 days ago
  • DescriptionCyber Security Engineer - TS/SCI Xcelerate Solutions is seeking a Cyber Security Engineer working across several Task Orders under the DOMEX Technology Platform (DTP) contract supporting NMEC. Have impact as part of a mission focused, solutions oriented, and... 
    Contract work
    Remote work
    Flexible hours

    Xcelerate Solutions

    Bethesda, MD
    5 days ago
  • $141.92k - $212.89k

     ...Regulatory Authority) is the largest independent regulator of securities firms doing business in the United States. Our mission is to protect...  ...the financial sector? As a Senior Principal Risk Specialist, Cyber Engagements, you'll play a pivotal role in strengthening the... 
    Full time
    Temporary work
    For contractors
    For subcontractor
    Local area
    Immediate start

    Financial Industry Regulatory Authority

    Rockville, MD
    5 days ago
  • A consulting firm is seeking an experienced Associate Director of Cyber Security in Gaithersburg, Maryland to lead cyber strategy and daily operations. This role includes evolving the security strategy, managing cloud and on-prem environments, and overseeing security frameworks... 

    Rbw Consulting

    Gaithersburg, MD
    1 day ago
  • $165k - $180k

     ...Solutions is seeking a highly skilled Cyber Security Manager within the IT Security division...  .... Interacts with both Systems engineers and O&M personnel to ensure a complete...  ...(IT) security assessment, monitoring, detection, and remediation tools and procedures utilizing... 
    Contract work
    Temporary work
    Local area

    JCS Solutions LLC

    Bethesda, MD
    1 day ago
  •  ...Job Description Job Description Overview   cyDaptiv Solutions is seeking a Senior Cyber Security Engineer (CSE) with experience supporting Federal and DoD cyber security and information assurance projects. The CSE must have knowledge of the Risk Management Framework... 
    Full time

    cyDaptiv Solutions

    Bethesda, MD
    9 days ago
  • The Senior Security Engineer works under minimal supervision to engineer, administer, and optimize...  ...for the platforms that power detection, response, and secure access across the...  ...security analyst, a network engineer, and a director — and adjust the depth for each.Other... 
    Full time
    Temporary work
    For contractors
    For subcontractor
    Local area
    Immediate start

    Financial Industry Regulatory Authority

    Rockville, MD
    1 day ago
  • $150k - $190k

    We are seeking a highly skilled Senior Cybersecurity Analyst / Information Security Manager with expertise in IT security, risk management, and policy development. The ideal candidate will have a minimum of five (5) years of experience implementing security measures to... 
    Full time
    Contract work
    Part time

    Akima

    Rockville, MD
    1 day ago
  •  ...Regulatory Authority) is the largest independent regulator of securities firms in the U.S. It protects investors and ensures market integrity...  ...the financial sector? As a Senior Principal Risk Specialist - Cyber Engagements, you will strengthen the industry's defenses... 
    Local area

    Financial Industry Regulatory Authority, Inc.

    Rockville, MD
    17 hours ago
  • $131.2k - $238.3k

    FINRA is seeking a Senior Principal Risk Specialist focused on cybersecurity in Rockville, Maryland. In this role, you will lead cybersecurity tabletop exercises and workshops, develop formal engagement documentation, and serve as a trusted advisor on incident management...

    FINRA

    Rockville, MD
    1 day ago
  • Financial Industry Regulatory Authority, Inc. is seeking a Senior Principal Risk Specialist - Cyber Engagements in Rockville, MD. This role is central to reinforcing cybersecurity resilience across the financial sector by leading tabletop exercises that simulate real-world... 

    Financial Industry Regulatory Authority, Inc.

    Rockville, MD
    3 days ago
  • $102.17k

     ...optimizing water supply and demand, detecting leaks and anomalies, or enhancing water...  ...Job Description Join the Trinnex Security Team as a Senior Cyber Security Analyst, where you will...  ...threats. You will work closely with engineering and development teams to safeguard... 
    Work experience placement
    H1b

    Trinnex

    Gaithersburg, MD
    3 days ago
  •  ...responsible for advanced threat detection, incident response, threat...  ..., and mitigate sophisticated cyber threats impacting Agency systems...  ...information from multiple security, intelligence, and operational...  ...expertise in Agile Software Engineering, Cloud Solutions, Cyber Security... 
    Full time

    ActioNet

    Rockville, MD
    3 days ago
  •  .... Summary: The Cyber Threat Analyst will focus...  ...or recover from cyber security threats and/or...  ...trusted advisor to the Director, Security Technologies...  ...anti-malware, intrusion detection and/or prevention systems...  ...complex topics to engineers and leadership Ability... 
    Work experience placement
    Remote work
    Flexible hours

    Donnelley Financial, LLC

    Rockville, MD
    5 days ago
  • $160k - $220k

    ActioNet, Inc. seeks a Program Manager to provide leadership and accountability for delivering Security Operations Center services. You will interface with OCIO and CISO leadership to ensure contract compliance, operational excellence, and continuous improvement across... 
    Contract work

    ActioNet, Inc.

    Rockville, MD
    2 days ago
  • $100k - $200k

     ...project plans accordingly Preferred Skills / Certifications Master’s degree in business, technology or related field CompTIA Security+ certification Security clearance ~ You must be able to obtain a security clearance (Secret or higher) – US Citizenship... 

    US AI

    Rockville, MD
    9 days ago
  • $65 - $72 per hour

     ...Software Guidance & Assistance, Inc., (SGA), is searching for a IAM Security Engineer (GCP) for a Contract assignment with one of our premier...  ...analyze security logs, and investigate security incidents to detect and mitigate potential threats or unauthorized access... 
    Full time
    Contract work
    Remote work
    2 days per week
    3 days per week

    Software Guidance & Assistance, Inc. (SGA, Inc.)

    Rockville, MD
    3 days ago
  • ActioNet, Inc. seeks a senior Tier 3 Cybersecurity Analyst to lead advanced threat detection, incident response, and forensics within a high-sophistication SOC. You will mentor junior staff, craft detection analytics, and coordinate with federal partners on complex investigations... 

    ActioNet

    Rockville, MD
    3 days ago
  •  ...Analyst in Rockville, MD to lead advanced incident detection, response, and forensic investigations. The role...  ...-source data fusion to mitigate sophisticated cyber threats. The position emphasizes software and security operations leadership within an intelligence-driven... 

    ActioNet

    Rockville, MD
    3 days ago
  • The Lead Security Engineer, working independently, will direct staff in the execution of manual...  ..., secure software assurance, intrusion detection, defense and incident response, security...  ...communications protocol.Experience managing several Cyber Security tools, including:... 
    Full time
    Temporary work
    For contractors
    Work experience placement
    For subcontractor
    Local area
    Immediate start

    Financial Industry Regulatory Authority

    Rockville, MD
    1 day ago
  • Location: (Onsite with Hybrid in Rockville, MD) Duration: Full time Job Summary :The Senior Privacy Advisor is a senior position that manages and advises on Privacy Act, data protection and privacy compliance activities. This role works directly with senior stakeholders...
    Full time

    Creative Global Consulting

    Rockville, MD
    2 days ago
  • Noblis is seeking a security professional to advance cyber defense programs for federal missions. You will evaluate capabilities, lead improvements, and design incident response playbooks within an agile framework. The role emphasizes cross‑functional collaboration, data... 
    Remote job

    Noblis

    Bethesda, MD
    1 day ago
  • $150k - $165k

     ...5 years of progressive experience managing cybersecurity, IT security, RMF, or enterprise IT programs. Experience must include enterprise...  ...assurance, information systems, computer science, computer engineering, network engineering, or a closely related technical... 
    Contract work
    For contractors
    Flexible hours
    2 days per week
    3 days per week

    Gunnison Consulting Group, Inc.

    Bethesda, MD
    9 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Director, Cyber Security Detection Engineering. Be the first to apply!