Threat Detection Engineer - TX, MN, AZ, NC
Apex Systems Inc
Information Security Engineer 4 – Threat Detection Engineer (Contingent)
This senior Information Security Engineering role focuses on Threat Detection Engineering for large-scale, multi-cloud enterprise environments. The engineer will design, build, tune, and validate detections across SIEM, EDR/XDR, cloud platforms, and identity systems. The role requires advanced threat understanding, strong detection lifecycle ownership, and high-fidelity detection development aligned with MITRE ATT&CK.
The engineer will partner with SOC, IR, logging/telemetry teams, cloud security, and platform engineering to strengthen threat visibility, reduce noise, and drive high-quality, actionable detection content. Automation, structured engineering processes, and an attacker-mindset approach are essential to success.
Top requirements include:
- 5+ years Information Security Engineering / Threat Detection Engineering / SOC / Incident Response experience, with 3+ years writing & tuning detections.
- Ownership of full detection lifecycle: requirements → design → build → tuning → validation → decommission.
- Hands-on experience with Splunk (SPL), CrowdStrike (custom IOA), Microsoft Defender, Sentinel (KQL).
- Experience detecting threats across Azure + GCP cloud environments.
- Strong understanding of MITRE ATT&CK, adversary TTPs, and detection gap analysis.
Plusses include:
- Experience with AIOps, adversary simulation tools (Atomic Red Team, Caldera, BAS platforms).
- Strong automation skills (Python / PowerShell) for detection pipelines.
- Experience in multi-tenant, multi-cloud, global enterprises.
- Experience building detection dashboards, runbooks, feedback loops with SOC.
- Experience with large datasets, log telemetry engineering, and cloud-native security controls.
Day-to-day responsibilities include:
- Develop and tune detections across Splunk, CrowdStrike, Microsoft Defender, Sentinel (KQL).
- Interpret attacker TTPs and convert them into detection logic across SIEM, EDR, and cloud telemetry.
- Perform detection gap assessments and prioritize detections tied to emerging threats.
- Map detections to MITRE ATT&CK ensure enterprise TTP coverage.
- Track evolving threats (phishing, ransomware, cloud account compromise, identity abuse).
- Operationalize threat intelligence into actionable detections.
- Measure and improve signal fidelity (precision/recall).
- Conduct false-positive/negative analysis and refine rules.
- Use adversary simulation tools (Atomic Red Team, Caldera, BAS) to validate coverage.
- Maintain detection dashboards, metrics, and SOC feedback loops.
- Assess log quality and coverage across Windows, Sysmon, Linux, network telemetry, identity, cloud-native logs.
- Define requirements for new logs; work with infra teams to onboard/normalize sources.
- Use Python or PowerShell to automate detection testing, deployment, and reporting.
- Manage detection content through SDLC-like processes: Git, pull requests, staged releases.
- Support infrastructure-as-code patterns for security controls (nice-to-have).
EEO Employer
Apex Systems is an equal opportunity employer. We do not discriminate or allow discrimination on the basis of race, color, religion, creed, sex (including pregnancy, childbirth, breastfeeding, or related medical conditions), age, sexual orientation, gender identity, national origin, ancestry, citizenship, genetic information, registered domestic partner status, marital status, disability, status as a crime victim, protected veteran status, political affiliation, union membership, or any other characteristic protected by law. Apex will consider qualified applicants with criminal histories in a manner consistent with the requirements of applicable law. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation in using our website for a search or application, please contact our Employee Services Department.
$69 - $74 per hour
...Software Engineer 4 / ServiceNow Lead Software Engineer (Vulnerability Response) Client: Financial Services Location: Charlotte, NC / McLean, VA / Minneapolis, MN / San Antonio, TX / Chandler, AZ – Hybrid (3 days onsite) Contract Length: 12mo Pay Rate: $69...SuggestedContract work$69 - $74 per hour
...Software Engineer 4 / ServiceNow Lead Software Engineer (Vulnerability Response) Location: Charlotte, NC / McLean, VA / Minneapolis, MN / San Antonio, TX / Chandler, AZ – Hybrid (3 days onsite) Contract Length: Not specified Pay Rate: $69 - $74 Top Requirements...SuggestedContract work$53 - $57 per hour
...Information Security Engineer This role supports security monitoring, logging, and incident... ...focuses on analyzing logs, identifying threats, supporting investigations, and ensuring... ...coverage. Contribute to threat detection, modeling, and risk management practices...SuggestedHourly payContract work$81 - $87 per hour
...Location - Minneapolis, MN - Charlotte, (CIC +Brevard) Des Moine, IO, San Antonio, TX candidate), Chandler, AZ Employment type - Contract... ...This position will design, engineer, and advance enterprise security... ...to candidates in Charlotte, NC, Des Moines, IA, or San Antonio...SuggestedHourly payContract work$41 - $44 per hour
...Information Security Engineer The Information Security Engineer will support low to moderately complex Information Security Engineering initiatives focused on baseline configurations and secure standards across the enterprise. This role contributes to defining, documenting...SuggestedHourly pay$69 - $74 per hour
...Software Engineer 4 / Full Stack.NET Engineer Client: Financial Services Team: TBA Location: Charlotte, NC/ Minneapolis, MN / Irving, TX – Hybrid Contract Length: 18mo Pay Rate: $69 - $74 Top Requirements: #5+ years of full stack development using...Contract work$80 - $87 per hour
...Business Execution Consultant 5 / Senior IAM Business Analyst Client: Financial Services Location: Charlotte, NC (Brevard) / Chandler, AZ / Minneapolis, MN / Iowa (any hub) – Hybrid Contract Length: 12mo (no conversion) Pay Rate: $80 - $87 Top Requirements...Contract work- ...Net Core Developer Location: Chandler, AZ/Charlotte, NC/Minneapolis, MN (Hybrid) Duration: Long-term Rate: DOE US citizens, GC, EAD (H4, L2), E3 TN visa holders preferred, NO third party corp to corp accepted for this job Skills and Experience Needed...Immediate start
- ...MS Sql Developer Location: Charlotte NC, Minneapolis MN, Chandler AZ Position Type: Contract US Citizen, Green Card, TN, GC EAD and H4 EAD only No Third-party agencies corp to corp. Job Description: • Must Have: ~8+ years of MS SQL server experience in...Contract work
$82.97k - $110.63k
.... The Role Senior Engineer position requires a high... ...management equipment to detect faults and minimize malfunctions... ...these states: AL, AR, AZ, FL, GA, IA, ID, IN, KS,... ...states: CO, HI, MI, MN, NC, NH, NV, OR, and RI. $... ...DE, IL, MA, MD, NJ, NY, TX, VA, and WA. Lumen...Full timeTemporary workWork at officeRemote workNight shift- ...Contract Engineer Opportunity Hybrid 3 days onsite/2 days remote in either Irving, TX or Charlotte, NC or Minneapolis, MN or Chandler, AZ Our client seeks a contract engineer to accelerate an enterprise automation framework and unify the SD-Branch architecture. The...Hourly payContract workLocal areaRemote work
- ...IAM System Operations Engineer Duration: 24 Months Location: Raleigh, NC/Charlotte, NC/Dallas, TX/Minneapolis, MN/Des Moines, IA/Chandler, AZ Hybrid Role (3 Days Onsite/2 Days WFH) This is more of an Operations role - but need strong technical candidate. Resources...Work from homeShift work
$250.25k - $305.86k
...Cybersecurity Shared Services Engineering Director Collaborate with... ...team: platform engineers, detection engineers, crypto/PKI specialists... ..., risk management, and threat mitigations Own the platform... ...the 3M Center in Maplewood, MN or Austin, TX locations. ~ Travel: May...Full timeH1bWork at officeFlexible hours$132.23k - $176.31k
...SAIC seeks a Lumen Network Design Engineer V (WAN / Work Package Engineer)... ...176,310 in these states: AL AR AZ FL GA IA ID IN KS KY LA ME MO... ...,124 in these states: CO HI MI MN NC NH NV OR RI $145,456 - $193,9... ...AK CA CT DC DE IL MA MD NJ NY TX VA WA Lumen offers a comprehensive...Contract workTemporary workFor contractorsRemote work$150k - $160k
...Senior Systems Network Engineer Department: Information... ...Location: Bloomington, MN Reporting To: IT... ...Firewalls: Advanced threat protection (IPS, SSL inspection... ..., and anomaly detection. Integrate network telemetry... ...Microsoft Azure (AZ-104, AZ-500) Key Competencies...Full timeRemote workMonday to Friday- ...Electrical Engineer - Data Centers Locations: Overland Park, KS, US; Los Angeles, CA, US; Canonsburg, PA, US; Phoenix, AZ, US; Dallas, TX, US; Cary, NC, US; Denver, CO, US; Bloomington, MN, US; Orlando, FL, US; San Marcos, CA, US; Ann Arbor, MI, US; Houston, TX, US...Full timePart timeWork experience placementLocal areaRelocationVisa sponsorshipFlexible hours
$53.09 - $58.18 per hour
...Analytics Consultant - Irving, TX - Hybrid Contract - Risk/AML Models - Banking Irving, Texas Hybrid... ...Irving, TX (Hybrid). This role can also work from Tempe, AZ, or Minneapolis, MN, or St. Louis, MO or Charlotte, NC offices. Work with the brightest minds at one of the...Long term contractFull timeContract workTemporary workWork at officeFlexible hours$59 - $63 per hour
...Network Engineer The Network Engineer will support Security Network Services network tooling across the enterprise. This role covers voice services, configuration management, fault management, performance monitoring, and WiFi tools. The engineer will handle both engineering...3 days per week$53 - $60 per hour
...Job Title: Power BI Reports Developer Location: Minneapolis, MN (Hybrid) Employment Type: 24 months Contract Pay Rate: $53... ...and consult on moderately complex initiatives within Software Engineering. Contribute to large-scale planning related to Software...Contract work$128.1k - $239.6k
...experience. Information Security (Info Sec) - Info Sec prevents, detects, responds and mitigates cyber-risk, protecting EY and client... ..., thus enhancing the abilities of defensive teams. In the threat hunting capacity, the analyst will identify security vulnerabilities...Summer holidayLocal areaRemote workFlexible hoursNight shiftWeekend work- ...QA Test Automation Engineer Location: Minneapolis, MN Duration: 6 Months Rate: $43/hr. on w2 only US Citizen and Green Card only Description: Must have 7 years of information technology quality assurance and systems application testing experience. 5 years of Selenium...
- ...Archer Developer Location: Charlotte, NC - Jacksonville, FL - Minneapolis, MN - Des Moines, IA Position Type: Full Time (No C2C) Salary: DOE... ...consultant within technology and business groups by engineering technical processes for greater efficiencies with significant...Full time
- ...when faced with electro-mechanical issues. Location Minneapolis, MN, USA Skills Excellent communication abilities Comfortable... ...license Education Requirements Post-Secondary Degree related to engineering (or relevant experience) Work Experience Requirements 2 years Experience...Work experience placementRemote work
- ...Automation Engineer Location: Minneapolis, MN Duration: 06 Months contract Rate: DOE Job Description 7 to 10 years of experience QA automation using technologies such as REST Assured, Selenium, Playwright, BDD framework, end-to-end testing, Hogan knowledge (preferred...Contract work
- ...Job Title: Principal Systems Engineer Company: Adraxe Job... ...-Time Location: Plymouth, MN (Hybrid) Adraxe - Company... ..., and optimization of seizure detection algorithms within a regulated... ...for connected medical systems (threat modeling, encryption, key management...Full timeWork at officeRemote work
- ...Micro Services Developer Location: Minneapolis, MN Position Type: Full Time Salary: DOE US Citizen, Green Card and GC EAD Only. NO Visa Sponsorship (H1B Transfer) or no Corp. to Corp no 1099 Must Have Extensive experience in developing applications with...Full timeWork experience placementH1bVisa sponsorship
- ...Application Support/ Operational support/ Systems Operations Engineer/ Production Support Engineer Charlotte, NC or Dallas, TX or New York City, NY or Iselin, New Jersey or Minneapolis, MN or Des Moines, IA or San Francisco, CA (Hybrid 3 days onsite in a week...Work at officeFlexible hoursShift workWeekend work3 days per week
- ...Systems Security Engineer Location: Minneapolis, MN Position Type: Contract Rate: DOE $/hr. on w2 only No Visa sponsorship available for this Job (US Citizen, Green Card, GC-EAD only) Job Description • 5+ years of experience and advanced technical proficiency...Contract workVisa sponsorship
- ...ETL Test Engineer Location: Minneapolis, MN 6 months Contract Rate: $40/hr. on w2 US Citizen and Green Card, H4-EAD only Job Description: Expert in writing database queries. Should have prior experience in testing batch jobs which have flat files CSVs...Contract work
$40 per hour
...feedback to improve how AI systems reason about real-world threats and defenses. Cybersecurity platforms are increasingly powered... ...(e.g., penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat intelligence, or similar)...Hourly payFull timePart timeRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Threat Detection Engineer - TX, MN, AZ, NC. Be the first to apply!


