Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Lead Threat Detection Engineering

Mindlance

Information Security Engineering

Location: 1525 W W T Harris Blvd., Charlotte, NC – 28262 – Hybrid Roles Charlotte, Chandler, Minneapolis, Dallas (Las Colinas)

Job Descriptions:

In this contingent resource assignment, you may:

  • Consult on complex initiatives with broad impact and large-scale planning for Information Security Engineering.
  • Review and analyze complex multi-faceted, larger scale or longer-term Information Security Engineering challenges that require in-depth evaluation of multiple factors including intangibles or unprecedented factors.
  • Contribute to the resolution of complex and multi-faceted situations requiring solid understanding of the function, policies, procedures, and compliance requirements that meet deliverables.
  • Strategically collaborate and consult with client personnel.
Required Qualifications:

5+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work or consulting experience, training, military experience, education.

This is a Threat Detection Engineering position. - 5+ years in threat detection engineering, security operations, or incident response, with at least 3 years focused on writing and tuning detections.

Demonstrated ownership of a detection lifecycle or detection engineering program (requirements, design, implementation, tuning, decommission).

Proven experience working in large or complex environments (multi-tenant, multi-cloud, or global enterprises).

Technical Skills – Detection Engineering:

Strong experience writing and tuning detections in:

  • SIEM: Splunk (SPL proficiency required; advanced search, macros, data models, scheduled searches, alerting).
  • EDR/XDR: CrowdStrike (Falcon platform; custom IOA rules, detection tuning, exclusion logic).
  • Microsoft Security:
  • Microsoft Defender for Endpoint / Defender for Cloud Apps.
  • Kusto Query Language (KQL) for Microsoft Sentinel and M365 Defender.
  • Cloud Platforms:
  • Azure (log analytics, activity logs, Azure AD, Defender for Cloud).
  • GCP (Cloud Logging, Security Command Center, IAM, network telemetry).
  • Ability to translate attacker techniques (TTPs) into detection logic across multiple platforms.
Threat & Attack Knowledge:

Deep understanding of:

  • MITRE Telecommunication&CK (enterprise matrix; TTP coverage, mapping detections to Telecommunication&CK).
  • Common adversary tradecraft: phishing, ransomware, lateral movement, privilege escalation, exfiltration, cloud account compromise, identity misuse.
  • Ability to perform detection gap analysis based on recent threats (e.g., ransomware families, cloud-native attacks, identity-based attacks).
  • Familiarity with threat client sources and how to operationalize them into detection content.
Detection Fidelity & Quality:

Demonstrated experience:

  • Measuring and improving detection fidelity (precision/recall, false positive/negative analysis).
  • Designing and executing test plans for detections (simulations, red team findings, adversary emulation tools).
  • Using test frameworks (e.g., Atomic Red Team, Caldera, commercial breach & attack simulation) to validate detection coverage.
  • Experience building and maintaining:
  • Top talker" detection dashboards and metrics.
  • Feedback loops with SOC analysts to continuously refine detection logic.
  • Runbooks or playbooks tied to specific detections.
Data Engineering & Telemetry Understanding:

Strong grasp of logging and telemetry:

  • Windows event logs, Sysmon, Linux logs.
  • Network telemetry (NetFlow, firewall logs, proxy/DNS).
  • Identity and access logs (Azure AD, Okta, on-prem AD).
  • Cloud-native logs (Azure, GCP, AWS if applicable).

Ability to:

  • Assess log quality and coverage (what's being collected, from where, and how often).
  • Specify data requirements for new or improved detections.
  • Work with platform or infra teams to onboard or normalize new log sources.
Engineering & Automation Mindset:

Proficiency in one or more scripting/programming languages (Python, PowerShell, or similar) for:

  • Detection content automation (mass updates, testing, reporting).
  • Building small tools to support detection analysis or enrichment.
  • Experience with version control and SDLC-like processes for detection content:
  • Git (branching, pull requests, code review).
  • Change management, testing, and staged rollout of new rules.
  • Familiarity with infrastructure-as-code / configuration-as-code for security tooling (nice to have, not required).

EEO: "Mindlance is an Equal Opportunity Employer and does not discriminate in employment on the basis of – Minority/Gender/Disability/Religion/LGBTQI/Age/Veterans."

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Lead Threat Detection Engineering in Chandler, AZ vacancy
  •  ...Fraud Prev & Detect Lead Keeping our customers safe from fraud is critical to the success of our operation. If you are looking for a job that combines your passion for analytical thinking and problem solving with ample opportunity for growth, you've come to the right... 
    Suggested

    BOK Financial

    Tempe, AZ
    5 days ago
  •  ...IT Team Lead - Finance Tech The Company is a growing bank in an Innovation economy. As a member of Production Engineering Team, you will be responsible for supporting mission critical applications...  ...and build automation to proactively detect and prevent their re-occurrences... 
    Suggested

    Professional Recruiters

    Tempe, AZ
    4 days ago
  •  ...Overview SOSi is seeking a SOC Team Lead to support Security Operations Center (SOC...  ...x7 SOC operations, including monitoring, detection, and response to cybersecurity events...  ...functional areas including incident response, threat detection, and operational reporting Support... 
    Suggested
    Full time
    Contract work
    Work at office
    Worldwide
    Monday to Friday
    Weekend work
    Afternoon shift

    SOS International LLC

    Chandler, AZ
    2 days ago
  • $108.78k - $184.97k

     ...Sr Lead, Cybersecurity Engineering Job Description Seeking an individual contributor Sr Lead to drive secure enablement of Microsoft 365 Copilot...  ...Must‑Have AI Security Skills LLM security fundamentals and threat modeling, including data exposure and indirect prompt injection... 
    Suggested

    Koitecc Solutions

    Tempe, AZ
    1 day ago
  • $166.5k - $249.7k

     ...Chief Engineer: Level 6 - Integrated Product Team Lead RELOCATION ASSISTANCE: Relocation assistance may be available CLEARANCE REQUIRED FOR START: Yes CLEARANCE TYPE: Secret TRAVEL: Yes, 10% of the Time Description At Northrop Grumman, our employees have incredible... 
    Suggested
    For subcontractor
    Work at office
    Relocation package
    Shift work

    ClearanceJobs

    Chandler, AZ
    5 days ago
  • Intel Corporation is seeking a Customer Engineering professional for their Chandler, Arizona team to oversee NPI execution. You will be pivotal in ensuring timely delivery of silicon to customers while improving yield and performance. The ideal candidate will possess extensive... 
    Work at office
    Remote work

    Intel Corporation

    Chandler, AZ
    1 day ago
  • A major financial institution based in Chandler, Arizona, is seeking an Infrastructure Automation Engineering Leader to manage a global team and drive automation platforms like Ansible. This leadership role requires expertise in Unix/Linux systems and involves designing... 

    Bank of America

    Chandler, AZ
    1 day ago
  •  ...Systems Engineer - Level 4 RELOCATION ASSISTANCE: Relocation assistance may be availableCLEARANCE TYPE: SecretTRAVEL: Yes, 10% of the...  ...Interceptor (GPI) programs flight experiments and flight tests Lead Systems Engineer/Mission Manager. This position is 100% on site... 
    Relocation package

    Navstar

    Chandler, AZ
    4 days ago
  • $166.5k - $249.7k

     ...history, they're making history. Northrop Grumman Space Systems is seeking a Hardware-in-the-Loop (HWIL) Systems Engineer - Level 6 The technical lead to support the GPI program’s Test & Evaluation (T&E) Integrated Product Team (IPT). The T&E IPT has whole... 
    Relocation package
    Shift work

    Northrop Grumman

    Chandler, AZ
    8 days ago
  •  ...Ping Engineer/Lead/SME/Architect Location: Chandler AZ (Day 1 onsite at Chandler AZ or any of Wells Fargo or Persistent locations – but this is 100% onsite - Mandatory) Duration: Fulltime Job Description: Good understanding of concepts of IAM, MFA, SSO,... 
    Full time

    Zortech Solutions

    Chandler, AZ
    4 days ago
  • $68k

     ...- and it all starts in CAD. We're looking for a CAD Designer Lead to turn bold ideas into manufacturable reality at our Chandler...  ...bolted onto real trucks. You'll work hands-on with a prototype engineering team that takes parts from screen to physical reality. Made... 
    Full time
    Local area
    Monday to Friday
    Shift work
    Day shift

    Addictive Desert Designs

    Chandler, AZ
    2 days ago
  • $70k

     ...Job Description Job Description Hiring ASAP - Hiring bonus up to $3k - Lead Installer Must have: Valid Driver's License 5+ years experience (will consider 3+) Experience with installing all types of systems Duct work experience Insulation install... 
    Work experience placement
    Immediate start

    ELLSWORTH HOME SERVICES

    Gilbert, AZ
    29 days ago
  •  ..., Arizona is seeking an experienced Signal and Power Integrity engineer to join the SIPI team. This role offers the opportunity to enhance...  ...performance by working on novel System-in-Package designs and leading technical oversight. The ideal candidate will have over 5 years... 

    Arm Limited

    Chandler, AZ
    15 hours ago
  • A leading engineering firm in Chandler, Arizona, is looking for an experienced ELV Engineer to lead a team in design and construction phases of large projects. The candidate must have at least 8 years of relevant experience, hold a Professional Engineer Certification, and... 
    Remote job

    Exyte

    Chandler, AZ
    4 days ago
  • At ANS , we’re not just a consulting engineering firm—an engineering firm that shapes the future of multi-disciplinary engineering. Recognized...  ...and SDS experience who can work alongside our discipline leads, delivery team, and technology group to build a scalable and high... 
    Remote work

    Ans

    Gilbert, AZ
    4 days ago
  • A global engineering firm in Chandler, Arizona, is seeking a Senior Project Manager to lead roadway design projects. The ideal candidate will have over 12 years of experience in roadway engineering and project management. Responsibilities include consulting with clients... 

    Stantec Consulting International Ltd.

    Chandler, AZ
    4 days ago
  • Lead Solution/Domain Architect Remote U.S. (designated states) Reports To: SVP, Engineering & Innovation Department: Engineering This position may be performed from one of the following U.S. states: AL, AZ, FL, GA, IN, KS, MA, MI, MS, NC, NV, OR, PA, SC, TN, TX, VA.... 
    Temporary work
    Local area
    Remote work
    Work from home

    Raintree-Systems,-Inc.

    Chandler, AZ
    4 days ago
  • Industrial Design in Chandler, Arizona, is seeking a Mechanical Designer to lead the development of construction documents. The ideal candidate will possess significant experience in supervising drafters and developing detailed design packages. Responsibilities include... 
    Local area

    Industrial Design

    Chandler, AZ
    4 days ago
  • ARMORWORKS ENTERPRISES INC in Chandler, AZ seeks a Chief Engineer to lead product designs for R&D programs focusing on armor and security technologies. The role involves overseeing prototype builds and ensuring compliance with project specifications. Applicants should... 

    ARMORWORKS ENTERPRISES INC

    Chandler, AZ
    1 day ago
  • $175k - $225k

    Powerlattice Technologies Inc. in Chandler, AZ is seeking a highly experienced Staff / Sr. Staff Power Integrity Engineer to lead power integrity methodologies for innovative chiplet solutions. The ideal candidate will drive co-design for power delivery systems across... 

    Powerlattice Technologies Inc.

    Chandler, AZ
    3 days ago
  • $198.1k - $268k

     ...in Chandler, Arizona is seeking an experienced Signal and Power Integrity engineer. This role involves working on System‑in‑Package development and enhancing Arm's IP performance. You will lead technical oversight and deliver innovative solutions. The position requires... 

    Arm Limited

    Chandler, AZ
    4 days ago
  • A leading engineering company is seeking an experienced Architect to design and build data centers, focusing on air flow management and power distribution. Responsibilities include planning, designing, coordinating architectural work on projects, and mentoring staff. Candidates... 
    Part time
    Work at office
    Remote work
    Flexible hours

    Bechtel Oil, Gas & Chemicals Incorporated

    Chandler, AZ
    15 hours ago
  •  ...Overview Colliers Engineering & Design is seeking a Geographic Discipline Leader to join its Civil/Site Land Development team in Arizona...  ...of work throughout the discipline. Develops, executes, and leads discipline marketing and business development strategies in collaboration... 
    Contract work
    Temporary work
    Work at office
    Remote work

    Colliers Engineering & Design

    Gilbert, AZ
    1 day ago
  •  ...Forensics Lead Unlock the secrets of intelligence with MANTECH! Join a dynamic team...  ..." process to thwart Advanced Persistent Threats (APT). Key Responsibilities:...  ...enterprise forensic tools. Perform reverse engineering of malicious code to identify indicators... 
    Work at office
    Local area
    Remote work

    ManTech

    Chandler, AZ
    2 days ago
  •  ...Competitive salary Dental insurance Free uniforms Health insurance Opportunity for advancement Training & development Vision insurance Lead Technician Job Description Position Title: Lead Technician Reports To: General Manager Job Overview The Lead Technician is... 

    PuroSystems LLC

    Chandler, AZ
    3 days ago
  • Advantest is seeking a Thermal/Mechanical Engineer for their Chandler, AZ office. The role involves determining technology requirements, managing projects, and producing comprehensive design documentation. Ideal candidates should have a Bachelor's degree in Mechanical... 
    Work at office

    Advantest

    Chandler, AZ
    1 day ago
  • A leading global engineering firm is seeking an experienced Senior Surface Mining Engineer based in the Western US. This role requires robust project management and technical expertise to deliver solutions in the energy and mining sectors. Candidates should have a minimum... 

    Stantec Consulting International Ltd.

    Chandler, AZ
    1 day ago
  • $86k - $138k

     ...SOC Team Lead Job Locations US-AZ-Chandler Requisition ID 2026-163429 Position Category Cyber Security...  ...at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company... 
    Contract work
    Shift work

    Peraton

    Chandler, AZ
    3 days ago
  • A global infrastructure consulting firm is seeking a Senior Bridge Engineer to lead teams and design structures for diverse projects. Candidates should possess a Bachelor’s or Master’s degree in Civil/Structural Engineering, with at least 7 years of relevant experience... 

    Stantec

    Chandler, AZ
    15 hours ago
  •  ...Lead We are looking for a reliable and experienced Lead to ensure all facility operations follow policies and procedures. They...  ...is one of the world's largest providers of integrated facility, engineering, and infrastructure solutions. Every day, our over 100,000 team... 
    Work experience placement
    For subcontractor
    Local area
    Shift work

    ABM Industries

    Tempe, AZ
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Lead Threat Detection Engineering. Be the first to apply!