Lead Threat Detection Engineering
Mindlance
Information Security Engineering
Location: 1525 W W T Harris Blvd., Charlotte, NC – 28262 – Hybrid Roles Charlotte, Chandler, Minneapolis, Dallas (Las Colinas)
Job Descriptions:
In this contingent resource assignment, you may:
- Consult on complex initiatives with broad impact and large-scale planning for Information Security Engineering.
- Review and analyze complex multi-faceted, larger scale or longer-term Information Security Engineering challenges that require in-depth evaluation of multiple factors including intangibles or unprecedented factors.
- Contribute to the resolution of complex and multi-faceted situations requiring solid understanding of the function, policies, procedures, and compliance requirements that meet deliverables.
- Strategically collaborate and consult with client personnel.
Required Qualifications:
5+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work or consulting experience, training, military experience, education.
This is a Threat Detection Engineering position. - 5+ years in threat detection engineering, security operations, or incident response, with at least 3 years focused on writing and tuning detections.
Demonstrated ownership of a detection lifecycle or detection engineering program (requirements, design, implementation, tuning, decommission).
Proven experience working in large or complex environments (multi-tenant, multi-cloud, or global enterprises).
Technical Skills – Detection Engineering:
Strong experience writing and tuning detections in:
- SIEM: Splunk (SPL proficiency required; advanced search, macros, data models, scheduled searches, alerting).
- EDR/XDR: CrowdStrike (Falcon platform; custom IOA rules, detection tuning, exclusion logic).
- Microsoft Security:
- Microsoft Defender for Endpoint / Defender for Cloud Apps.
- Kusto Query Language (KQL) for Microsoft Sentinel and M365 Defender.
- Cloud Platforms:
- Azure (log analytics, activity logs, Azure AD, Defender for Cloud).
- GCP (Cloud Logging, Security Command Center, IAM, network telemetry).
- Ability to translate attacker techniques (TTPs) into detection logic across multiple platforms.
Threat & Attack Knowledge:
Deep understanding of:
- MITRE Telecommunication&CK (enterprise matrix; TTP coverage, mapping detections to Telecommunication&CK).
- Common adversary tradecraft: phishing, ransomware, lateral movement, privilege escalation, exfiltration, cloud account compromise, identity misuse.
- Ability to perform detection gap analysis based on recent threats (e.g., ransomware families, cloud-native attacks, identity-based attacks).
- Familiarity with threat client sources and how to operationalize them into detection content.
Detection Fidelity & Quality:
Demonstrated experience:
- Measuring and improving detection fidelity (precision/recall, false positive/negative analysis).
- Designing and executing test plans for detections (simulations, red team findings, adversary emulation tools).
- Using test frameworks (e.g., Atomic Red Team, Caldera, commercial breach & attack simulation) to validate detection coverage.
- Experience building and maintaining:
- Top talker" detection dashboards and metrics.
- Feedback loops with SOC analysts to continuously refine detection logic.
- Runbooks or playbooks tied to specific detections.
Data Engineering & Telemetry Understanding:
Strong grasp of logging and telemetry:
- Windows event logs, Sysmon, Linux logs.
- Network telemetry (NetFlow, firewall logs, proxy/DNS).
- Identity and access logs (Azure AD, Okta, on-prem AD).
- Cloud-native logs (Azure, GCP, AWS if applicable).
Ability to:
- Assess log quality and coverage (what's being collected, from where, and how often).
- Specify data requirements for new or improved detections.
- Work with platform or infra teams to onboard or normalize new log sources.
Engineering & Automation Mindset:
Proficiency in one or more scripting/programming languages (Python, PowerShell, or similar) for:
- Detection content automation (mass updates, testing, reporting).
- Building small tools to support detection analysis or enrichment.
- Experience with version control and SDLC-like processes for detection content:
- Git (branching, pull requests, code review).
- Change management, testing, and staged rollout of new rules.
- Familiarity with infrastructure-as-code / configuration-as-code for security tooling (nice to have, not required).
EEO: "Mindlance is an Equal Opportunity Employer and does not discriminate in employment on the basis of – Minority/Gender/Disability/Religion/LGBTQI/Age/Veterans."
- ...Fraud Prev & Detect Lead Keeping our customers safe from fraud is critical to the success of our operation. If you are looking for a job that combines your passion for analytical thinking and problem solving with ample opportunity for growth, you've come to the right...Suggested
- ...IT Team Lead - Finance Tech The Company is a growing bank in an Innovation economy. As a member of Production Engineering Team, you will be responsible for supporting mission critical applications... ...and build automation to proactively detect and prevent their re-occurrences...Suggested
- ...Overview SOSi is seeking a SOC Team Lead to support Security Operations Center (SOC... ...x7 SOC operations, including monitoring, detection, and response to cybersecurity events... ...functional areas including incident response, threat detection, and operational reporting Support...SuggestedFull timeContract workWork at officeWorldwideMonday to FridayWeekend workAfternoon shift
$108.78k - $184.97k
...Sr Lead, Cybersecurity Engineering Job Description Seeking an individual contributor Sr Lead to drive secure enablement of Microsoft 365 Copilot... ...Must‑Have AI Security Skills LLM security fundamentals and threat modeling, including data exposure and indirect prompt injection...Suggested$166.5k - $249.7k
...Chief Engineer: Level 6 - Integrated Product Team Lead RELOCATION ASSISTANCE: Relocation assistance may be available CLEARANCE REQUIRED FOR START: Yes CLEARANCE TYPE: Secret TRAVEL: Yes, 10% of the Time Description At Northrop Grumman, our employees have incredible...SuggestedFor subcontractorWork at officeRelocation packageShift work- Intel Corporation is seeking a Customer Engineering professional for their Chandler, Arizona team to oversee NPI execution. You will be pivotal in ensuring timely delivery of silicon to customers while improving yield and performance. The ideal candidate will possess extensive...Work at officeRemote work
- A major financial institution based in Chandler, Arizona, is seeking an Infrastructure Automation Engineering Leader to manage a global team and drive automation platforms like Ansible. This leadership role requires expertise in Unix/Linux systems and involves designing...
- ...Systems Engineer - Level 4 RELOCATION ASSISTANCE: Relocation assistance may be availableCLEARANCE TYPE: SecretTRAVEL: Yes, 10% of the... ...Interceptor (GPI) programs flight experiments and flight tests Lead Systems Engineer/Mission Manager. This position is 100% on site...Relocation package
$166.5k - $249.7k
...history, they're making history. Northrop Grumman Space Systems is seeking a Hardware-in-the-Loop (HWIL) Systems Engineer - Level 6 The technical lead to support the GPI program’s Test & Evaluation (T&E) Integrated Product Team (IPT). The T&E IPT has whole...Relocation packageShift work- ...Ping Engineer/Lead/SME/Architect Location: Chandler AZ (Day 1 onsite at Chandler AZ or any of Wells Fargo or Persistent locations – but this is 100% onsite - Mandatory) Duration: Fulltime Job Description: Good understanding of concepts of IAM, MFA, SSO,...Full time
$68k
...- and it all starts in CAD. We're looking for a CAD Designer Lead to turn bold ideas into manufacturable reality at our Chandler... ...bolted onto real trucks. You'll work hands-on with a prototype engineering team that takes parts from screen to physical reality. Made...Full timeLocal areaMonday to FridayShift workDay shift$70k
...Job Description Job Description Hiring ASAP - Hiring bonus up to $3k - Lead Installer Must have: Valid Driver's License 5+ years experience (will consider 3+) Experience with installing all types of systems Duct work experience Insulation install...Work experience placementImmediate start- ..., Arizona is seeking an experienced Signal and Power Integrity engineer to join the SIPI team. This role offers the opportunity to enhance... ...performance by working on novel System-in-Package designs and leading technical oversight. The ideal candidate will have over 5 years...
- A leading engineering firm in Chandler, Arizona, is looking for an experienced ELV Engineer to lead a team in design and construction phases of large projects. The candidate must have at least 8 years of relevant experience, hold a Professional Engineer Certification, and...Remote job
- At ANS , we’re not just a consulting engineering firm—an engineering firm that shapes the future of multi-disciplinary engineering. Recognized... ...and SDS experience who can work alongside our discipline leads, delivery team, and technology group to build a scalable and high...Remote work
- A global engineering firm in Chandler, Arizona, is seeking a Senior Project Manager to lead roadway design projects. The ideal candidate will have over 12 years of experience in roadway engineering and project management. Responsibilities include consulting with clients...
- Lead Solution/Domain Architect Remote U.S. (designated states) Reports To: SVP, Engineering & Innovation Department: Engineering This position may be performed from one of the following U.S. states: AL, AZ, FL, GA, IN, KS, MA, MI, MS, NC, NV, OR, PA, SC, TN, TX, VA....Temporary workLocal areaRemote workWork from home
- Industrial Design in Chandler, Arizona, is seeking a Mechanical Designer to lead the development of construction documents. The ideal candidate will possess significant experience in supervising drafters and developing detailed design packages. Responsibilities include...Local area
- ARMORWORKS ENTERPRISES INC in Chandler, AZ seeks a Chief Engineer to lead product designs for R&D programs focusing on armor and security technologies. The role involves overseeing prototype builds and ensuring compliance with project specifications. Applicants should...
$175k - $225k
Powerlattice Technologies Inc. in Chandler, AZ is seeking a highly experienced Staff / Sr. Staff Power Integrity Engineer to lead power integrity methodologies for innovative chiplet solutions. The ideal candidate will drive co-design for power delivery systems across...$198.1k - $268k
...in Chandler, Arizona is seeking an experienced Signal and Power Integrity engineer. This role involves working on System‑in‑Package development and enhancing Arm's IP performance. You will lead technical oversight and deliver innovative solutions. The position requires...- A leading engineering company is seeking an experienced Architect to design and build data centers, focusing on air flow management and power distribution. Responsibilities include planning, designing, coordinating architectural work on projects, and mentoring staff. Candidates...Part timeWork at officeRemote workFlexible hours
- ...Overview Colliers Engineering & Design is seeking a Geographic Discipline Leader to join its Civil/Site Land Development team in Arizona... ...of work throughout the discipline. Develops, executes, and leads discipline marketing and business development strategies in collaboration...Contract workTemporary workWork at officeRemote work
- ...Forensics Lead Unlock the secrets of intelligence with MANTECH! Join a dynamic team... ..." process to thwart Advanced Persistent Threats (APT). Key Responsibilities:... ...enterprise forensic tools. Perform reverse engineering of malicious code to identify indicators...Work at officeLocal areaRemote work
- ...Competitive salary Dental insurance Free uniforms Health insurance Opportunity for advancement Training & development Vision insurance Lead Technician Job Description Position Title: Lead Technician Reports To: General Manager Job Overview The Lead Technician is...
- Advantest is seeking a Thermal/Mechanical Engineer for their Chandler, AZ office. The role involves determining technology requirements, managing projects, and producing comprehensive design documentation. Ideal candidates should have a Bachelor's degree in Mechanical...Work at office
- A leading global engineering firm is seeking an experienced Senior Surface Mining Engineer based in the Western US. This role requires robust project management and technical expertise to deliver solutions in the energy and mining sectors. Candidates should have a minimum...
$86k - $138k
...SOC Team Lead Job Locations US-AZ-Chandler Requisition ID 2026-163429 Position Category Cyber Security... ...at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company...Contract workShift work- A global infrastructure consulting firm is seeking a Senior Bridge Engineer to lead teams and design structures for diverse projects. Candidates should possess a Bachelor’s or Master’s degree in Civil/Structural Engineering, with at least 7 years of relevant experience...
- ...Lead We are looking for a reliable and experienced Lead to ensure all facility operations follow policies and procedures. They... ...is one of the world's largest providers of integrated facility, engineering, and infrastructure solutions. Every day, our over 100,000 team...Work experience placementFor subcontractorLocal areaShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Lead Threat Detection Engineering. Be the first to apply!


