Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Operations Senior Detection Engineer

AstraZeneca

ABOUT ROLE The Senior Detection Engineer is a technical specialist within the Global Security Operations Centre (GSOC), based in Gaithersburg, Maryland, working with the Director, Cyber Security Detection Engineering. The role is characterised by leadership of detection content development initiatives that protect enterprise assets across cloud, on‑premises, and OT/ICS environments. Responsibility is held for the design, implementation, and optimisation of detection logic through which threats are identified, investigated, and mitigated with precision and efficiency. WHAT YOU'LL DO Detection engineering initiatives: oversee detection engineering efforts across multiple projects spanning threat coverage, detection logic development, and efficacy validation; technical guidance is provided to ensure that detection capabilities address the most significant threats across all technology domains. Advanced detection frameworks and methodologies: implement detection engineering frameworks to enhance the organisation's defensive posture through improved threat coverage, reduced false positives, and accelerated threat identification; industry guidelines for detection engineering are adopted and tailored to organisational requirements. Enterprise‑wide detection content library development and management: design and optimise detection libraries to ensure comprehensive coverage of adversary tactics, techniques, and procedures as defined by frameworks such as MITRE ATT&CK; detection logic is developed that balances sensitivity with operational efficiency. Detection development oversight: provide technical guidance of detection development operations including coordination with external suppliers and platform vendors for comprehensive threat coverage; detection performance is monitored and issues are called out and resolved in collaboration with relevant collaborators. Proactive detection development and coverage management: proactively expand detection coverage through periodic assessments of threat landscape evolution, detection gaps, and emerging attack techniques; critical coverage deficiencies are identified and resolution is driven through systematic detection development. Stakeholder management: maintain engagement with security leadership to communicate emerging detection requirements driven by threat intelligence and incident findings; strategic action plans are proposed for addressing coverage gaps and enhancing detection capabilities. External partner relationship management: maintain and develop relationships with external partners, threat intelligence providers, and industry peers to identify innovative detection approaches and emerging techniques applicable to enterprise defence. AS A SPECIALIST Technical guidance and expertise: support the definition of detection standards, development methodologies, and quality frameworks within the detection engineering domain; critical detection failures are addressed through deep technical knowledge and systematic analysis. Continuous improvement: find opportunities to improve and enhance the performance of detection logic, reduce false positives, and improve threat identification accuracy; opportunities for detection automation and orchestration are pursued proactively. Implement innovative detection engineering solutions: identify and manage new detection engineering solutions including adoption of new detection techniques, behavioural analytics, and machine learning approaches; training and organisational change activities are led to ensure successful adoption. Technical guidance and mentorship: provide ongoing technical guidance and mentoring to detection engineering team members and security analysts regarding detection logic development, threat hunting techniques, and effective use of detection platforms. Maintain training and awareness materials: develop and maintain training and awareness materials regarding detection engineering practices, threat actor TTPs, and effective investigation methodologies; knowledge is shared to enable security operations teams to leverage detection capabilities effectively. KNOWLEDGE, EXPERIENCE, AND UNDERSTANDING OF: Detection Engineering Fundamentals: Deep expertise in detection logic design, threat modelling, and coverage mapping; extensive experience with detection development across diverse platforms and environments applied to enterprise‑scale operations. Threat detection frameworks: Comprehensive familiarity with MITRE ATT&CK, Cyber Kill Chain, and detection engineering methodologies; understanding of how adversary techniques manifest across different technology domains and how detection logic must be adapted accordingly. Detection platforms and tooling: Substantial hands‑on experience with enterprise detection platforms including SIEM, EDR, NDR, and cloud‑native security services; advanced proficiency in platform‑specific query languages, rule formats, and detection logic development. Working knowledge of how threat intelligence is consumed and turned into actionable detection logic. Understanding of indicator types, threat actor TTPs, and prioritisation of detection based on intelligence. Scripting and automation: Advanced proficiency in scripting languages such as Python, PowerShell, or similar for detection logic development and automation tasks; experience with detection‑as‑code practices and version control for detection content. Detection formats and standards: Extensive experience with standardised detection formats including Sigma rules, YARA signatures, and platform‑specific query languages; ability to develop detection logic that is portable and maintainable across platforms. Performance optimisation: Deep understanding of detection tuning, false positive reduction, and query optimisation techniques; proven ability to balance detection sensitivity with operational efficiency. OT/ICS detection considerations: Familiarity with operational technology environments and the unique constraints affecting detection in industrial settings; awareness of safety implications and availability requirements that influence detection approaches. Purple team collaboration: Experience working with offensive security teams to validate detection efficacy and identify coverage gaps; understanding of how adversary emulation informs detection improvement. MINIMUM SKILLS & EXPERIENCE REQUIRED Education: Bachelor's degree in information security, computer science, or related field (or equivalent experience). Technical expertise: At least five (5) years of experience in detection engineering, preferably within security operations centres or detection engineering teams; demonstrated success in leading detection initiatives and implementing innovative approaches at enterprise scale. Detection platform expertise: Deep hands‑on experience with at least one major detection platform including advanced detection logic development, tuning, and validation; recognised internally as an expert in detection capabilities and standards. Threat landscape knowledge: Working experience with threat intelligence, adversary TTPs, and attack techniques across cloud, on‑premises, and OT environments; familiarity with how threats evolve and how detection strategies must adapt. Global collaboration: Experience working in a global organisation with geographically dispersed teams and partners, including matrix working environments; ability to coordinate across time zones and cultural contexts. Collaborator engagement: At least five (5) years of experience collaborating with security operations teams, incident responders, and threat intelligence analysts to identify, document, and address detection requirements; proven ability to manage relationships and communications with third‑party suppliers and vendors. Project delivery: Experience delivering and managing large‑scale detection engineering projects including planning, execution, and organisational change; ability to navigate dependencies across multiple teams and technical domains. Problem‑solving and innovation: Recognised internally as an expert problem solver for complex detection challenges; track record of designing, shaping, and implementing innovative detection solutions that address emerging threats. Ability to adapt communication style and interact confidently to influence diverse audiences based on their outstanding perspectives. Skilled in facilitating collaboration through open dialogue and information exchange. Mentoring and guidance: Proactive engagement with teams for coaching and mentoring from both technical and behavioural standpoints; commitment to enabling skill‑building and fostering a healthy ecosystem of knowledge sharing across detection engineering and security operations teams. When we put unexpected teams in the same room, we unleash bold thinking with the power to encourage life‑changing medicines. In‑person working gives us the platform we need to connect, work at pace and challenge perceptions. That's why we work, on average, a minimum of three days per week from the office. But that doesn't mean we’re not flexible. We balance the expectation of being in the office while respecting individual flexibility. Join us in our unique and ambitious world. The annual base pay for this position ranges from $136,044.00 - $204,066.00 USD Annual. Hourly and salaried non‑exempt employees will also be paid overtime pay when working qualifying overtime hours. Base pay offered may vary depending on multiple individualized factors, including market location, job‑related knowledge, skills, and experience. In addition, our positions offer a short‑term incentive bonus opportunity; eligibility to participate in our equity‑based long‑term incentive program (salaried roles), to receive a retirement contribution (hourly roles), and commission payment eligibility (sales roles). Benefits offered included a qualified retirement program [401(k) plan]; paid vacation and holidays; paid leaves; and, health benefits including medical, prescription drug, dental, and vision coverage in accordance with the terms and conditions of the applicable plans. Additional details of participation in these benefit plans will be provided if an employee receives an offer of employment. If hired, employee will be in an at‑will position and the Company reserves the right to modify base pay (as well as any other discretionary payment or compensation program) at any time, including for reasons related to individual performance, Company or individual department/team performance, and market factors. Are you ready to bring new insights and fresh thinking to the table? Fantastic! We have one seat available, and we hope it’s yours. Apply today. AstraZeneca embraces diversity and equality of opportunity. We are committed to building an inclusive and diverse team representing all backgrounds, with as wide a range of perspectives as possible, and harnessing industry‑leading skills. We believe that the more inclusive we are, the better our work will be. We welcome and consider applications to join our team from all qualified candidates, regardless of their characteristics. We follow all applicable laws and regulations on non‑discrimination in employment (and recruitment), as well as work authorization and employment eligibility verification requirements. #J-18808-Ljbffr AstraZeneca

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Cyber Operations Senior Detection Engineer in Gaithersburg, MD vacancy
  • AstraZeneca is seeking a Senior Detection Engineer in Gaithersburg, Maryland. This role involves leading initiatives to design detection logic that protects enterprise assets across multiple environments. The ideal candidate will have a strong background in detection engineering... 
    Cyber
    Senior
    Work at office
    Remote work
    Flexible hours

    AstraZeneca

    Gaithersburg, MD
    2 days ago
  • $104.65k - $189.18k

     ...services and mission software capabilities in the areas of cyber, logistics, security operations, and decision analytics to support our defense and...  ...Solutions Business Area is currently seeking a Senior Systems Engineer for the Chinook Program on the Advanced Analyst Augmentation... 
    Operations
    Cyber
    Senior
    Contract work
    Worldwide

    Leidos Inc

    Gaithersburg, MD
    3 days ago
  •  ...Global RMS is seeking a Senior Cybersecurity Engineer / Offensive Security Lead...  ...This role is designed for operators who bring hands‑on offensive...  ...stakeholders to strengthen cyber resilience across complex...  ...defensive teams to validate detections and strengthen security... 
    Operations
    Cyber
    Senior

    Apogee Global RMS

    Highland, MD
    4 days ago
  •  ...work focuses on sustaining, operating, and improving essential government...  .... - Execute directed cyber actions including network access...  ...alert triage, threat detection, and initial response actions...  ...internal value analysis including seniority and merit systems, as well as... 
    Operations
    Cyber
    Minimum wage
    Full time
    Contract work
    Temporary work
    Work experience placement
    Remote work

    Maximus

    Gaithersburg, MD
    6 days ago
  • $130k - $170k

     ...Analyst in Rockville, MD. This senior technical position focuses on advanced threat detection, incident response, and forensic...  ...in incident response and cyber forensics. Responsibilities include...  ...integrating threat intelligence into operations. The salary range is $130k-$170... 
    Operations
    Cyber
    Senior

    ActioNet, Inc.

    Rockville, MD
    13 hours ago
  • $100k - $125k

     ...Senior Cybersecurity Engineer Join Aprio's Information Technology team and you will help clients maximize...  ...Engineering team builds and operates the controls that make the firm defensible...  ...problems with them, not at them. Detection/response engineering support :... 
    Operations
    Senior
    Permanent employment
    Full time
    Remote work
    Flexible hours

    Aprio

    Rockville, MD
    6 days ago
  • $131.3k - $237.35k

    Leidos is seeking an experienced SME Cloud Operations Engineer in Gaithersburg, Maryland to support mission-critical data and analytics capabilities. This role involves collaborating with government partners to deliver scalable solutions while ensuring compliance with NIST... 
    Operations
    Senior

    Leidos

    Gaithersburg, MD
    4 days ago
  • TryApplyNow is seeking a Senior Cloud Operations Engineer to support the delivery and enhancement of enterprise data and analytics products. This role involves managing cloud infrastructure across AWS, GCP, or Azure and implementing Infrastructure as Code. The ideal candidate... 
    Operations
    Senior

    TryApplyNow

    Gaithersburg, MD
    4 days ago
  •  ...sector is seeking an experienced Senior SCRM Analyst to support the...  ...alongside government partners, engineers, and other industry teammates to translate operational and strategic requirements into...  ...Responsibilities Conducts comprehensive Cyber Supply Chain Risk Assessments on... 
    Operations
    Cyber
    Senior
    Work at office

    Leidos Inc

    Gaithersburg, MD
    2 days ago
  •  ...Summary The Lead IAM Engineer/Architect leads enterprise...  ...to a Director or Senior Director. Key Responsibilities...  ...assurance, intrusion detection, defense and incident...  ...understanding of cyber security tools (configuration...  ..., AWS and Azure IAM operations, and hybrid... 
    Operations
    Cyber
    Local area

    Financial Industry Regulatory Authority, Inc.

    Rockville, MD
    13 hours ago
  • $107.9k - $195.05k

     ...and mission software capabilities in the areas of cyber, logistics, security operations, and decision analytics to support our defense and...  ...Intel Sector, is currently seeking a highly motivated Senior Software Engineer (SWE) for the Chinook Program. The Chinook Program... 
    Operations
    Cyber
    Senior
    Contract work

    Leidos

    Gaithersburg, MD
    1 day ago
  •  ...Summary of Role: The Senior Project Engineer – PMO provides advanced technical leadership and engineering governance for complex capital...  ...mitigated, and sustainable from design through handover and operational integration.  Responsibilities: Technical... 
    Operations
    Senior
    Hourly pay
    Temporary work
    For contractors
    Work at office
    Flexible hours
    3 days per week

    AstraZeneca

    Gaithersburg, MD
    2 days ago
  • $107.9k - $195.05k

     ...services and mission software capabilities in the areas of cyber, logistics, security operations, and decision analytics to support our defense and...  ...Business Area, is currently seeking an experienced Software Engineer for the Maru Program. The Maru Program delivers mission... 
    Operations
    Cyber
    Senior
    Contract work
    Local area
    Immediate start

    Via Logic LLC

    Gaithersburg, MD
    1 day ago
  • $84.63k - $112.84k

     ...building the future. The Role This position is for a Field Engineer that will perform multiple tasks to include site surveys, Bill...  ...the program Field Engineering team to implement and sustain operational network requirements. Provide estimates for Installation Ready... 
    Operations
    Senior
    Full time
    Temporary work
    For subcontractor
    Remote work

    Lumen

    Gaithersburg, MD
    5 days ago
  • $107.9k - $195.05k

     ...federal agency context. This senior engineering role sits at the center of...  ..., outages, and operational risks. The successful candidate...  ...Microsoft Sentinel for threat detection, alerting, and response across...  ...cross-team collaboration (Cyber, Ops, EA, ICAM, Comms).... 
    Operations
    Cyber
    Local area
    Immediate start
    Night shift
    Day shift

    Leidos

    Kensington, MD
    3 days ago
  •  ...Security Engineer As a mid to senior-level technology professional, the referenced Security Engineer...  ...Responsibilities Participate in systems operations or engineering task completion in...  ...understanding of technology and in specific cyber security based engineering approaches... 
    Operations
    Cyber
    Senior

    The Consortium

    Rockville, MD
    4 days ago
  • AstraZeneca GmbH in Gaithersburg, Maryland, is seeking a Director of Cyber Security Detection Engineering to lead enterprise detection capabilities across cloud and on-premises environments. This role entails managing detection governance and validation while delivering... 
    Cyber

    AstraZeneca GmbH

    Gaithersburg, MD
    2 days ago
  • $107.9k - $195.05k

     ...Description Leidos is seeking a Systems Engineer who will be the Concurrent Engineering Lead for a dynamic team working on the...  ...NextGen Air Traffic Control capabilities to improve air traffic operations in the National Airspace System (NAS). The Terminal Flight... 
    Operations
    Senior
    Local area
    Immediate start

    Leidos

    Gaithersburg, MD
    3 days ago
  • $107.9k - $195.05k

    # Senior Cloud Operations EngineerLeidosFull TimeseniorGaithersburg, Maryland, USPosted Yesterday## Resume Keywords to IncludeMake sure these...  ...Modernization sector is seeking an experienced Senior Cloud Operations Engineer to support the delivery, enhancement, and adoption of... 
    Operations
    Senior
    Local area
    Immediate start

    TryApplyNow

    Gaithersburg, MD
    4 days ago
  •  ...Clarksburg, Maryland, is seeking a highly experienced Signal Processing Engineer. This role focuses on designing and prototyping advanced signal processing capabilities for our Electromagnetic Spectrum Operations products. The ideal candidate will develop algorithms for RF... 
    Operations
    Senior

    Forterra Inc.

    Clarksburg, MD
    13 hours ago
  •  ...thrives here. Summary: The Senior Cyber Threat Analyst will lead efforts...  ...group of teams including engineering, security, and network & system operations to ensure effective adoption of...  ...with SIEM, SOAR, and EDR tools for detection and response It is the policy... 
    Operations
    Cyber
    Senior
    Remote work
    Flexible hours

    Donnelley Financial, LLC

    Rockville, MD
    2 days ago
  •  ...exciting opportunity for a Cybersecurity Engineer to support U.S. Navy's Team Submarine...  ...Force. Serco-NA is seeking a motivated cyber engineer to provide engineering and...  ...Assist in the development of standard operating procedures and policy regarding the implementation... 
    Operations
    Cyber
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Immediate start
    Flexible hours

    Serco

    Rockville, MD
    5 days ago
  • $85.41k - $109.13k

     ...Senior Buyer (DRT) Req Id: 346 Location: GERMANTOWN...  ...Tampa Microwave, and Trusted Cyber Technologies), supports U.S. Joint Services, special operations forces and multi-national...  ...Costpoint is a plus. ~ Knowledge of Engineering Data such as specification... 
    Operations
    Cyber
    Senior
    Contract work
    Work experience placement
    Local area
    Immediate start

    Thales Defense & Security, Inc.

    Germantown, MD
    1 day ago
  •  ...cybersecurity resilience in the financial sector? As a Senior Principal Risk Specialist - Cyber Engagements, you will strengthen the industry's...  ...examinations and risk reviews, collaborating with Regulatory Operations staff and addressing matters from tips, referrals, and... 
    Operations
    Cyber
    Senior
    Local area

    Financial Industry Regulatory Authority, Inc.

    Rockville, MD
    4 days ago
  • X-energy in Rockville, MD, is seeking an Engineering Strategy & Operations Engineer to drive the advancement of small modular reactor projects. This role involves identifying obstacles, ensuring project progress, and synthesizing complex technical data for decision-making... 
    Operations
    Senior

    X-energy

    Rockville, MD
    3 days ago
  •  ...experienced SME Cybersecurity Systems Engineer to support the delivery,...  ...teammates to translate operational and strategic requirements into...  ...certification appropriate for Advanced Cyber Defense Analyst roles (e.g.,...  ..., SIEM/SOAR integration, or detection engineering teams.... 
    Cyber

    Koitecc Solutions

    Gaithersburg, MD
    2 days ago
  •  .... Morton Thomas and Associates, Inc. (AMT) is seeking a Senior Traffic Analysis Engineer for positions in Towson, MD, Rockville, MD, or Raleigh,...  ...traffic engineering experience and expertise in traffic operations and modeling. Responsibilities include conducting analyses... 
    Operations
    Senior

    Ring Inc

    Rockville, MD
    13 hours ago
  • $141.92k - $212.89k

     ...cybersecurity resilience in the financial sector? As a Senior Principal Risk Specialist, Cyber Engagements, you'll play a pivotal role in...  ...the highest complexity, collaborating with Regulatory Operations staff and addressing matters originating from tips, referrals... 
    Operations
    Cyber
    Senior
    For contractors
    For subcontractor
    Local area

    FINRA

    Rockville, MD
    13 hours ago
  • Senior Network Consultant Port Cyber Corporation, Kensington, Maryland, United States - Information Technology About this position About Port Cyber...  ...a portfolio of clients and reports to the Chief Operating Officer. The successful candidate will be responsible for... 
    Operations
    Cyber
    Senior
    Work at office
    Remote work
    Relocation

    Port Cyber Corporation

    Kensington, MD
    3 days ago
  •  ...Description The Senior Cloud Architect/Engineer is responsible for designing and validating enterprise...  ...Engineering, Cloud Solutions, Cyber Security and IT Managed Services. With...  ...SIGINT Data Center Engineering & Operations Engineering & Installation... 
    Operations
    Cyber
    Senior
    Full time
    Flexible hours

    ActioNet

    Rockville, MD
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Operations Senior Detection Engineer. Be the first to apply!