Staff Threat Detection Engineer
$106.61k - $284.28kColorado Psychiatric
We're building a world of health around every individual - shaping a more connected, convenient and compassionate health experience. At CVS Health®, you'll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger - helping to simplify health care one person, one family and one community at a time. Position Summary The Staff Threat Detection Engineer plays a key role in helping the organization stay ahead of evolving cyber threats. This position combines threat hunting, detection engineering, and offensive security expertise to identify suspicious activity, uncover emerging risks, and strengthen the organization's overall security posture. By leveraging security telemetry, threat intelligence, and adversary-focused analysis, this role helps ensure threats are identified and addressed before they can impact the business. Working closely with Security Operations, Incident Response, and other cybersecurity teams, this role develops and improves detections, supports investigations, and helps validate security controls through purple team exercises and adversary emulation activities. The position also contributes to the adoption of new tools, techniques, and automation capabilities that improve visibility and response effectiveness. Success in this role requires curiosity, strong analytical skills, and a passion for continuously improving how the organization detects and defends against cyber threats. Role Responsibilities Detection Engineering & Threat Hunting Develop, deploy, and optimize detection rules across SIEM platforms such as Microsoft Sentinel and Splunk Conduct threat hunting activities using Microsoft Defender, CrowdStrike, and other SOC tools to identify and respond to advanced threats. Leverage KQL and SPL (Search Processing Language) to create custom detections and automate responses. Continuously refine detection capabilities based on emerging threats and intelligence. Penetration Testing & Adversary Emulation Assist with internal and external penetration tests to identify vulnerabilities. Design and execute adversary emulation scenarios to assess detection and response effectiveness. Utilize penetration testing tools and custom scripts to simulate real-world attack scenarios. Produce detailed reports with findings and actionable recommendations. Purple Team Operations Work closely with blue teams to conduct purple team exercises, bridging offensive and defensive security efforts. Provide actionable insights to improve monitoring, alerting, and incident response based on adversary tactics. Facilitate knowledge-sharing sessions to upskill internal teams on TTPs (Tactics, Techniques, and Procedures). Threat Intelligence Integration Integrate threat intelligence into detection strategies to prioritize threats and adapt detection rules. Analyze threat intelligence feeds and translate them into actionable detection and response measures. Incident Response Support Collaborate with the incident response team during investigations by providing adversary tactics insights. Assist in developing threat-hunting use cases and refining detection capabilities. Security Strategy & Risk Management Contribute to the development of a comprehensive detection strategy aligned with risk management goals. Provide leadership with reports on security gaps, risks, and detection effectiveness. Required Qualifications 7+ years of experience in threat detection, hunting, penetration testing, and/or offensive security. 5+ years of experience in Microsoft Security tools (Defender for Endpoint, Sentinel), CrowdStrike, and Splunk. 3+ years of experience with KQL, SPL, Python, PowerShell, or Bash scripting for automation and detection logic. Preferred Qualifications Relevant certifications such as OSCP, GCIH, GCIA, CISSP, CEH, or Microsoft Azure Certification. Experience in managing or participating in purple team exercises. Familiarity with compliance standards like PCI-DSS, HIPAA, or ISO 27001. Strong understanding of the MITRE ATT&CK framework and security standards (NIST, CIS). Strong communication skills to convey complex security issues to non-technical stakeholders. Education Bachelor's degree or equivalent experience (High School Diploma and 4 years relevant experience) Pay Range The typical pay range for this role is: $106,605.00 - $284,280.00 This pay range represents the base hourly rate or base annual full‑time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company's equity award program. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great benefits for great people We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full‑time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well‑being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility. Additional details about available benefits are provided during the application process and on Benefits Moments. We anticipate the application window for this opening will close on: 09/24/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws. #J-18808-Ljbffr Colorado Psychiatric
- CVS Health is seeking a Staff Threat Detection Engineer to advance detection engineering, threat hunting and offensive security capabilities. This role collaborates with Security Operations and Incident Response to identify threats and strengthen defenses across the organization...Suggested
- ...mission-critical government and commercial space communications. We are seeking a Senior Detection and Response Engineer to build and operate our security operations center, hunt threats across distributed satellite infrastructure, and lead incident response for systems...Suggested
$122.5k - $175k
...at Zscaler. Role We are looking for a Staff Threat Researcher to join our team. This is a... ...how techniques work and how we can best detect them. By transforming your deep technical... ...capabilities, inform our detection engineering priorities, contribute to broader product...SuggestedFull timeWork at officeLocal areaRemote work- The **Threat Hunting Engineer Lead** is a technical leader in the Cencora Security Operations Center who applies their knowledge of adversarial... ...cyber threats. They will use their findings to improve detection, response, and security controls. **RESPONSIBILITIES:*** Conduct...SuggestedWork experience placement
- City of Englewood is seeking a Cybersecurity Engineer to protect critical municipal systems and water infrastructure. You will implement and maintain security programs, monitor threats, and support incident response across IT and water/wastewater environments. The role...Suggested
$145k - $192.5k
...Global Information Security (GIS) team is seeking a Cyber Threat Defense Sr AI/ML Engineer to build and integrate advanced AI and machine learning... ...This person will drive innovation across preventative, detective, and responsive security controls by engineering the full...Work at officeShift workDay shift- ...Association has an excellent opportunity for a Cybersecurity Engineer in Dallas, TX. The Cybersecurity Engineer implements and manages... ...contributors with expertise in areas like system hardening, threat detection, vulnerability management, and compliance enforcement. This...Full timeLocal area
- ...development, master planning, architecture, engineering, and construction firm that safely... ...ensuring that high‑fidelity DLP and CASB detection data is successfully and reliably ingested... ...~ Understanding of malware, emerging threats, attacks, and vulnerability exploitation...For contractorsWork experience placementFlexible hours
$115k - $121k
...security controls such as firewalls, Intrusion Detection System (IDS), Intrusion Prevention... ...breaches. Staying Current on Threats & Technologies: Research and stay updated... ...(e.g., systems administration, network engineering). Hands‑on experience with security tools...Contract workFlexible hours$130k - $185k
...mission-critical applications. Our purpose of Engineering a Cleaner, Healthier World™ means we are... ...technologies across: Endpoint detection and response (EDR) Privileged access management... .... Participate in incident response, threat hunting, and vulnerability remediation....Temporary workH1bWorldwide$95.79k - $124.51k
...WA Other Tech A Cybersecurity Engineer role based in Woodinville, WA is available... ...security events and endpoint detections using industry-leading endpoint detection... ...exposure risks. Track CVEs and emerging threats and translate findings into actionable remediation...Full timeLocal area$130.2k - $195.4k
...Team**Security Automation & Integration Engineering (SecAIE) transforms cybersecurity operations... ...machine speed and out-adapt AI-driven threats.We're a small, high-impact team that... ...application UIs on top of security data - so detection, response, and threat-intel teams can...Remote workFlexible hours- ...Title: Cybersecurity Engineer Location: Richmond, VA (Hybrid) (Need Local candidates ) Duration... ...role in defending our organization against cyber threats by leveraging Splunk Enterprise Security to monitor, detect, analyze, and respond to security events. The ideal...Contract workH1bLocal area
$130k - $140k
...world with the technologies, services, and expertise needed to detect threats, secure commerce, and protect communities. An industry leader... ...and trade fraud. Position Summary The Supplier Quality Engineer (SQE) serves as the primary quality liaison between Rapiscan...Full timeWork at officeFlexible hours- ...Work closely with the Electrical Hardware Design team to create engineering and delivery schedules, closely track engineering progress, and... ...issues Strong communication experience with executive staff members Proven experience tracking and driving the progress...Full timeContract work
- ...a dedicated Information System Security Engineer III to join our team. The Information System... ...architectures, mitigating sophisticated threats, and ensuring systems maintain an... ...vulnerability management, SIEM, HBSS/ESS, endpoint detection and response (EDR), IDS/IPS, and...Contract workFor contractorsInterim roleLocal area
$131.3k - $237.35k
...As a Senior Information Security Systems Engineer (ISSE) you will join a small team of security... ...The Senior ISSE shall deliver and lead threat-informed cybersecurity products -... ...operation of real-time capabilities to discover, detect, analyze, and mitigate threats and...- .... We are seeking a Senior Cybersecurity Engineer to make those platforms secure by default... ...Produce concise architecture decisions, threat-informed control designs, runbooks,... ...knowledge of policy-as-code, preventive and detective controls, security automation, and compliance...Work at office
- Dutch Bros Coffee is hiring an Associate Cybersecurity Engineer in Tempe, AZ to support security controls, tooling, and incident response. The role involves SIEM/EDR, vulnerability scanning, secure configurations, and cross-functional collaboration with IT and engineering...Work at office
- ...strengthens compliance, and provides continuous threat protection. Avertium maximizes customer... ...is currently seeking a Senior LogRhythm Engineer/Architect. In this role will protect... ...Foundational understanding of LogRhythm detections and the underlying mechanisms that...Full timeLocal area
$180k - $220k
...API. We're hiring a Security Operations Engineer to join our IT & Security team and take... ...have Application security fundamentals: threat modeling, secure code review, or... ...Experience building or maintaining SIEM detections, queries, and alerting pipelines Familiarity...Full timeRemote work$134k - $179k
...Role As a Senior Security Operations Engineer I, you will independently lead the investigation... ..., contribute to the development of detections and automation, and help improve the... ...response capabilities. Partner with threat intelligence and detection engineering teams...Permanent employmentFull timeTemporary workFor contractorsCasual workWork at officeFlexible hoursNight shiftWeekend work$135.48k - $227.7k
...collaborate with a global team of engineers to monitor and respond to... ...response and insider threat initiatives Coordinate the... ...and strategies to technical staff, executive leadership, and legal... ...Authenticity We use Tofu , a fraud detection tool, to validate the...Part timeRemote workFlexible hoursShift work- ...Omni Hotels seeks a Director of Engineering Services to lead engineering and maintenance across the property, ensuring safe, efficient operations and cost control. Reporting to Operations, you will guide a team, manage preventative maintenance, and oversee capital projects...
- ...vulnerability and malware knowledge into detection content that ships. You take ownership... ...cutting-edge tools and techniques to detect threats and malware at scale. Research novel... ...exploitation technique. Collaborate across engineering, product, AI/ML, and infrastructure...Remote jobWorldwideFlexible hours
- Workday, Inc. is seeking a Principal Active Defense Engineer to set the technical direction for threat detection and lead multi-system initiatives from concept to production. This hands-on role emphasizes detections-as-code, CI/CD tooling, and mentor-mentee growth across...
$10k
...Information Systems Security Engineer (ISSE) conducts and reviews technical... ..., authorization, intrusion detection, contingency planning,... ...Assess and mitigate security threats and risks throughout the program... ...with customers, IT staff, and senior leadership to achieve...Contract workTemporary workFor contractorsLocal area- ...package in the industry. Position Summary The Protection Engineer is responsible for the design, configuration, testing, commissioning... ...by developing and maintaining protective relaying schemes that detect and isolate electrical faults, minimize equipment damage,...Full timeWork at office
- ...Cybersecurity Engineer II Who We Are At Upbound Group, we are committed to elevating financial opportunity for all through innovative... ...Extend DLP coverage to AI platforms, including controls that detect and block sensitive data from being submitted to GenAI tools,...Permanent employmentLocal areaWork visaMonday to Friday
$160k - $220k
...teams to act faster, adapt rapidly, and stay ahead of evolving threats. CHAOS Industries was founded in 2022 and has raised a total... ...please visit . Role Overview CHAOSis seekingaSenior RF Engineer to support the design, analysis, integration, and verification...Full timeFor contractorsWork experience placementCasual workRemote workRelocation package
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Staff Threat Detection Engineer. Be the first to apply!
- assistant engineer Eastern, KY
- senior staff systems engineer Eastern, KY
- technology administrator Eastern, KY
- engineering aide Eastern, KY
- senior staff engineer Eastern, KY
- staff data engineer Eastern, KY
- software engineer staff Eastern, KY
- staff engineer Eastern, KY
- project engineer assistant project manager Eastern, KY
- staff security engineer Eastern, KY

