Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Lead Threat Detection Engineering

Mindlance

Information Security Engineering

Location: 1525 W W T Harris Blvd., Charlotte, NC – 28262 – Hybrid Roles Charlotte, Chandler, Minneapolis, Dallas (Las Colinas)

Job Descriptions:

In this contingent resource assignment, you may:

  • Consult on complex initiatives with broad impact and large-scale planning for Information Security Engineering.
  • Review and analyze complex multi-faceted, larger scale or longer-term Information Security Engineering challenges that require in-depth evaluation of multiple factors including intangibles or unprecedented factors.
  • Contribute to the resolution of complex and multi-faceted situations requiring solid understanding of the function, policies, procedures, and compliance requirements that meet deliverables.
  • Strategically collaborate and consult with client personnel.
Required Qualifications:

5+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work or consulting experience, training, military experience, education.

This is a Threat Detection Engineering position. - 5+ years in threat detection engineering, security operations, or incident response, with at least 3 years focused on writing and tuning detections.

Demonstrated ownership of a detection lifecycle or detection engineering program (requirements, design, implementation, tuning, decommission).

Proven experience working in large or complex environments (multi-tenant, multi-cloud, or global enterprises).

Technical Skills – Detection Engineering:

Strong experience writing and tuning detections in:

  • SIEM: Splunk (SPL proficiency required; advanced search, macros, data models, scheduled searches, alerting).
  • EDR/XDR: CrowdStrike (Falcon platform; custom IOA rules, detection tuning, exclusion logic).
  • Microsoft Security:
  • Microsoft Defender for Endpoint / Defender for Cloud Apps.
  • Kusto Query Language (KQL) for Microsoft Sentinel and M365 Defender.
  • Cloud Platforms:
  • Azure (log analytics, activity logs, Azure AD, Defender for Cloud).
  • GCP (Cloud Logging, Security Command Center, IAM, network telemetry).
  • Ability to translate attacker techniques (TTPs) into detection logic across multiple platforms.
Threat & Attack Knowledge:

Deep understanding of:

  • MITRE Telecommunication&CK (enterprise matrix; TTP coverage, mapping detections to Telecommunication&CK).
  • Common adversary tradecraft: phishing, ransomware, lateral movement, privilege escalation, exfiltration, cloud account compromise, identity misuse.
  • Ability to perform detection gap analysis based on recent threats (e.g., ransomware families, cloud-native attacks, identity-based attacks).
  • Familiarity with threat client sources and how to operationalize them into detection content.
Detection Fidelity & Quality:

Demonstrated experience:

  • Measuring and improving detection fidelity (precision/recall, false positive/negative analysis).
  • Designing and executing test plans for detections (simulations, red team findings, adversary emulation tools).
  • Using test frameworks (e.g., Atomic Red Team, Caldera, commercial breach & attack simulation) to validate detection coverage.
  • Experience building and maintaining:
  • Top talker" detection dashboards and metrics.
  • Feedback loops with SOC analysts to continuously refine detection logic.
  • Runbooks or playbooks tied to specific detections.
Data Engineering & Telemetry Understanding:

Strong grasp of logging and telemetry:

  • Windows event logs, Sysmon, Linux logs.
  • Network telemetry (NetFlow, firewall logs, proxy/DNS).
  • Identity and access logs (Azure AD, Okta, on-prem AD).
  • Cloud-native logs (Azure, GCP, AWS if applicable).

Ability to:

  • Assess log quality and coverage (what's being collected, from where, and how often).
  • Specify data requirements for new or improved detections.
  • Work with platform or infra teams to onboard or normalize new log sources.
Engineering & Automation Mindset:

Proficiency in one or more scripting/programming languages (Python, PowerShell, or similar) for:

  • Detection content automation (mass updates, testing, reporting).
  • Building small tools to support detection analysis or enrichment.
  • Experience with version control and SDLC-like processes for detection content:
  • Git (branching, pull requests, code review).
  • Change management, testing, and staged rollout of new rules.
  • Familiarity with infrastructure-as-code / configuration-as-code for security tooling (nice to have, not required).

EEO: "Mindlance is an Equal Opportunity Employer and does not discriminate in employment on the basis of – Minority/Gender/Disability/Religion/LGBTQI/Age/Veterans."

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Lead Threat Detection Engineering in Minneapolis, MN vacancy
  •  ...days per week. U.S. Bank is seeking a Lead Cyber Threat Intelligence (CTI) Analyst to serve as...  ...including Threat Hunting, Threat Detection, and Incident Response. This position...  ...response, threat hunting, or detection engineering (as a supplement to CTI experience)... 
    Suggested
    Temporary work
    Local area
    3 days per week

    U.S. Bank

    Minneapolis, MN
    4 days ago
  • $35 - $40 per hour

     ...improvements that focus on reduced errors. Lead cycle counting activities for improved...  ...exclude individuals who pose a direct threat or significant risk to the health or safety...  ...manufacturing company-a combination of engineering expertise and precision-machining technologies... 
    Suggested
    Hourly pay
    Permanent employment
    Contract work
    Temporary work
    Work at office
    Relocation package
    Day shift

    ARCH Global Precision company

    Minneapolis, MN
    1 day ago
  • $35 - $40 per hour

     ...Shipping & Receiving Lead-Day Shift Job Category: Shipping/Receiving Requisition...  ...may exclude individuals who pose a direct threat or significant risk to the health or safety...  ...manufacturing company-a combination of engineering expertise and precision-machining technologies... 
    Suggested
    Hourly pay
    Permanent employment
    Contract work
    Temporary work
    Work at office
    Relocation package
    Day shift

    ARCH

    Minneapolis, MN
    3 days ago
  • $135k - $150k

     ...About Legence Legence ( (Nasdaq: LGN) is a leading provider of engineering, consulting, installation, and maintenance services for mission-critical systems in buildings. The company specializes in designing, fabricating, and installing complex HVAC, process piping,... 
    Suggested
    Work at office
    Local area
    Immediate start
    Flexible hours

    Legence

    Minneapolis, MN
    4 days ago
  • $80k - $158k

     ...Solution Lead L1 (Contract) Wipro Limited is a leading technology services and consulting company focused on building innovative...  ...our holistic portfolio of capabilities in consulting, design, engineering, and operations, we help clients realize their boldest ambitions... 
    Suggested
    Minimum wage
    Contract work
    Local area

    Wipro

    Minneapolis, MN
    1 day ago
  • $91.7k - $163.7k

    A healthcare innovation leader is seeking a seasoned professional to lead AI/ML adoption and develop cutting-edge AI-powered solutions. This role demands a minimum of 6 years in software engineering, focusing on AI/ML technologies. You'll work remotely within the U.S. and... 
    Remote work

    Optum

    Minnetonka, MN
    6 days ago
  • $23 - $26 per hour

     ...Lead Pay: $23.00-$26.00 The pay listed is the hourly range or the hourly rate for this position. A specific offer will vary based...  ...one of the world's largest providers of integrated facility, engineering, and infrastructure solutions. Every day, our over 100,000 team... 
    Hourly pay
    Full time
    Work experience placement
    For subcontractor
    Local area
    Shift work

    ABM Industries

    Minneapolis, MN
    2 days ago
  •  ...System Protection and Studies Team Lead At HDR, our employee-owners are fully engaged in creating a welcoming environment where...  ...possible not only in your community, but around the world. HDR Engineering is looking for a System Protection and Studies (SPS) Team Lead... 
    Local area

    HDR

    Minneapolis, MN
    5 days ago
  • A global engineering consulting firm is seeking a Reality Capture Project Manager to oversee 3D scanning projects. The candidate will lead field data collection, manage budgets, and ensure quality control while integrating data into project workflows. The ideal applicant... 
    Flexible hours

    Stantec Consulting International Ltd.

    Minneapolis, MN
    3 days ago
  •  ...Lead Preventive Maintenance Technician Join a USA Today Top Workplace! Morris Group, Inc., one of the largest machine tool distribution...  ...of CNC machine tools, tooling and accessories, and related engineering and support services. We are seeking a motivated Lead... 
    Work at office

    Morris Midwest

    Minneapolis, MN
    17 hours ago
  •  ...Lead Field Control Specialist WSP is currently initiating a search for a Lead Field Control Specialist for our Overland Park, KS...  ...generation, and project management with the recent acquisition of POWER Engineers, Inc. Our vision is to be the preeminent pure-play global... 
    Temporary work
    For contractors
    Work at office
    Local area
    Worldwide
    Flexible hours

    WSP

    Minneapolis, MN
    3 days ago
  • $112.7k - $193.2k

     ...start Caring. Connecting. Growing together. Optum AI is UnitedHealth Group's enterprise AI team. We are AI/ML scientists and engineers with deep expertise in AI/ML engineering for health care. We develop AI/ML solutions for the highest impact opportunities across... 
    Minimum wage
    Full time
    Work experience placement
    Work at office
    Local area
    Remote work

    Optum

    Eden Prairie, MN
    2 days ago
  • $107k - $117k

     ...The University of Minnesota is looking for a Vulnerability Management Engineer who will oversee the University-wide vulnerability management program. This position collaborates with IT teams to ensure effective remediation of vulnerabilities and compliance with security... 
    Remote work

    University of Minnesota

    Minneapolis, MN
    13 days ago
  • $32.25 - $43.75 per hour

     ...solutions across multiple Lifeline Sectors, including Power, Renewables, Transportation, and Water. Ulteig is a trusted partner in engineering North America's essential infrastructure and leverages its expertise with a wide range of public and private clients. At... 
    Work at office
    Remote work
    Work from home
    Flexible hours

    Ulteig

    Minneapolis, MN
    5 days ago
  • $112.7k - $193.2k

     ...to start Caring. Connecting. Growing together. Optum AI is UnitedHealth Group's enterprise AI team. We are AI/ML scientists and engineers with deep expertise in AI/ML engineering for health care. We develop AI/ML solutions for the highest impact opportunities across... 
    Minimum wage
    Full time
    Work experience placement
    Work at office
    Local area
    Remote work

    UnitedHealthcare At Home

    Eden Prairie, MN
    1 day ago
  •  ...Health Campus in Woodbury. Position Summary The Security Lead position is responsible for the oversight of maintaining a safe...  .... * Skill in operating portable radio devices. * Ability to detect irregularities, such as security breaches, facility and safety hazards... 
    Full time
    Part time
    Work at office
    Local area
    Shift work
    Night shift
    Weekend work

    Children's Minnesota

    Minneapolis, MN
    21 days ago
  •  ...Job Description Job Description Job Description BA/BS degree in IT, Business, Computer Science or Engineering – or equivalent work experience. • 10+ years of relevant Utilities Meter to Cash experience with strong technical and functional expertise. • Experience... 
    Work experience placement

    Talent Search PRO

    Minneapolis, MN
    3 days ago
  • $24 per hour

     ...detail and commitment to quality About Us ABM (NYSE: ABM) is one of the world's largest providers of integrated facility, engineering, and infrastructure solutions. Every day, our over 100,000 team members deliver essential services that make spaces cleaner,... 
    Hourly pay
    Full time
    Local area

    ABM Industries

    Brooklyn Park, MN
    2 days ago
  • $118.3k - $207.4k

     ...risk, compliance and healthcare rely on Wolters Kluwer's market leading information-enabled tools and software solutions to manage...  ...Business License Solutions product, collaborating with product, engineering, and business stakeholders to translate complex functional needs... 
    Work at office

    Wolters Kluwer

    Minneapolis, MN
    1 day ago
  • $159.52k - $207.38k

    Canon Medical Informatics, Inc. is looking for an experienced Engineering Manager to lead a software engineering team in Minnetonka, Minnesota. In this role, you will guide delivery commitments, manage team performance, and ensure high standards in software quality by collaborating... 

    Canon Medical Informatics, Inc.

    Minnetonka, MN
    1 day ago
  •  ...Title : Lead technical Consultant Required : JDE Technical with DSI DC Link Minneapolis, MN - Onsite. Strong knowledge of JDE EnterpriseOne and related tools. Experience with dcLink features and functionality. Familiarity with related... 

    United IT Solutions

    Minneapolis, MN
    4 days ago
  • $90k - $130k

    Apex Engineering Group, Inc. is seeking an Environmental Planner to join their team in Minnetonka, MN or work remotely. This role requires preparation of NEPA documentation, participation in business development, and collaboration on transportation and water projects. Candidates... 
    Remote work

    Apex Engineering Group, Inc.

    Minnetonka, MN
    2 days ago
  • $125k - $175k

    A leading engineering firm is seeking a Senior Municipal Engineer in Minnesota to manage and grow municipal services for public and private clients. This role involves developing revenue goals, recruiting staff, and collaborating with key stakeholders. Candidates should... 

    Apex Engineering Group, Inc.

    Minnetonka, MN
    4 days ago
  • $119k - $187k

     ...seeking a highly experienced and motivated Lead Cyber Wargame Facilitator to lead the...  ...and improve the organization's ability to detect, respond to, and recover from cyberattacks...  ...scenarios that simulate real-world cyber threats and attacks. Facilitate wargames, guiding... 
    Work experience placement

    Wells Fargo

    Minneapolis, MN
    3 days ago
  • $119.77k - $140.9k

    U.S. Bank is seeking a professional who will supervise and develop multi-platform converged enterprise engineering solutions. The role requires at least 7 years of experience in IT and a Bachelor's degree. Candidates should have hands-on experience with NoSQL databases... 
    3 days per week

    U.S. Bank

    Hopkins, MN
    3 days ago
  • A leading engineering firm is seeking an experienced individual for an environmental planning role based in Minnetonka or remotely within 100 miles of North Dakota. Responsibilities include preparing NEPA documentation, participating in business development, and collaborating... 
    Remote job
    Flexible hours

    Apex Engineering Group

    Minnetonka, MN
    4 days ago
  • $115.1k - $165.45k

     ...Presales Enablement and Innovation seeks an energetic, sales‑focused Lead Presales Demo Solutions Technologist to support how UKG brings...  ...The team partners closely with Presales, Sales, Product, and Engineering to build, maintain, and evolve demo datasets and demo stories... 
    Local area

    UKG

    Saint Paul, MN
    2 days ago
  •  ...Lead Business Analyst The Engineering Enablement team is part of Technology Design & Integration (TechDI), a function that plays a critical role in supporting Thomson Reuters' transformation into an operating and content-driven technology company. TechDI enables better... 
    Work at office
    Local area
    Flexible hours
    2 days per week
    3 days per week

    Thomson Reuters

    Saint Paul, MN
    2 days ago
  • $113.79k - $142.24k

     ...JE Dunn Construction is seeking an M/E Engineer 3 in Minneapolis. The role involves complex mechanical and electrical activities, along with developing M/E estimates and performing quality inspections. Candidates will require a bachelor’s degree in engineering and at... 

    JE Dunn Construction

    Minneapolis, MN
    17 hours ago
  •  ...A leading engineering and construction firm is seeking a Flex Staff Project Controls Scheduler to provide independent monitoring of project costs, schedules, and scopes on complex federal construction projects. The ideal candidate will manage project budgets, prepare cost... 
    Temporary work
    Flexible hours

    CDM Smith

    Minneapolis, MN
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Lead Threat Detection Engineering. Be the first to apply!