Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Director, Cyber Security Detection Engineering

Full-time

AstraZeneca

Leverage technology to impact patients and ultimately save lives Do you have expertise in, and passion for, information technology? Would you like to apply your expertise to impact the IT strategy in a company that follows the science and turns ideas into life changing medicines? If so, AstraZeneca might be the one for you! ABOUT ASTRAZENECA AstraZeneca is a global, science-led, patient-focused biopharmaceutical company that focuses on the discovery, development and commercialization of prescription medicines for some of the world’s most serious disease. But we’re more than one of the world’s leading pharmaceutical companies. At AstraZeneca, we're dedicated to being a Great Place to Work. ABOUT ROLE: The Director, Cyber Security Detection Engineering is a senior leader in the Cyber Operations function, based in Gaithersburg, Maryland, working with the Head of Cyber Operations. The role encompasses command of enterprise detection capabilities across cloud, on-premises, and OT/ICS environments, ownership of detection governance and validation, and delivery of executive reporting, coverage assessments, and capability maturation in partnership with GSOC, CTI, Vulnerability Management, Offensive Security, IT, Legal, Risk and Compliance, and business customers. What You'll Do: Detection strategy and roadmap: Direct the development and execution of comprehensive detection engineering programmes aligned to interpersonal risk appetite and threat landscape; establish capability roadmaps spanning data engineering, detection development, purple teaming, and automation/AI. Data engineering oversight: Ensure robust data pipelines support detection activities through telemetry collection, normalization, and quality assurance across hybrid and OT environments; define data retention, schema standards, and platform configuration to enable effective threat detection. Detection content development: Oversee creation, testing, and deployment of detection logic across SIEM, EDR, and cloud-native tooling; enforce detection standards, naming conventions, and MITRE ATT&CK mapping; prioritise coverage based on threat intelligence and risk assessments. Purple Team Exercising: Oversee purple team operations to validate detection efficacy systematically; orchestrate adversary emulation exercises across technology domains; drive remediation of detection gaps identified through testing and operational feedback. Automation and AI integration: Operationalise AI agents, machine learning models, and orchestration workflows to enhance detection accuracy, reduce false positives, and augment GSOC analyst capabilities; oversee development of automated enrichment, triage, and investigation playbooks. Metrics and reporting: Own detection engineering targets (e.g., MITRE ATT&CK coverage, mean time to detect, false positive rates, purple team success metrics) and deliver executive-ready briefings, dashboards, and quarterly maturity assessments. Policy and governance: Develop and enforce detection engineering policies, standards, and quality frameworks; maintain detection content libraries with version control and organizational change field; ensure regulatory compliance in data handling. People Leadership: Strategy and planning: Develop and maintain detection engineering area plans aligned to Cyber Operations strategy; set direction and goals with autonomy across data engineering, detection development, purple teaming, and automation functions. Performance and tiers: Define and review reporting and team targets; align objectives to detection outcomes, coverage improvements, and operational efficiency. Talent and capability: Lead inclusive recruitment; build career paths and targeted upskilling in detection development, threat hunting, cloud security, OT/ICS detection, and SOAR/AI through multi-functional, regional, and external partnerships. Knowledge, Experience, and Understanding Of: Detection engineering lifecycle: Proven leadership across detection development, testing, deployment, and tuning at enterprise scale; deep understanding of detection logic design, coverage mapping, and efficacy validation. Threat detection frameworks: Extensive knowledge of MITRE ATT&CK, Cyber Kill Chain, and detection engineering methodologies; experience mapping organisational coverage and prioritising development based on threat intelligence. Purple team operations: Experienced in designing and accomplishing adversary emulation exercises; skilled in translating purple team findings into actionable detection improvements and coverage enhancements. Automation and AI: Experience operationalizing modern detection platforms (SIEM, XDR, SOAR) including integration of artificial intelligence, machine learning models, and agentic features to enable detection at scale. Data engineering and platforms: Proficient with data pipeline architecture, log aggregation, normalisation, and query optimisation; solid grasp of data quality requirements for effective detection. Cloud, identity, and endpoint detection: Deep understanding of detection approaches across multi-cloud environments, identity systems, endpoints, and network infrastructure; familiar with cloud-native security services and integration patterns. Manufacturing Operational Technology/Industrial Control Systems: Coordinating detection engineering in industrial/OT environments with safety, availability, and production continuity considerations; knowledge of industrial protocols and OT-specific threats. Minimum Skills & Experience Required Education: Bachelor's degree in information security, computer science, or related field (or equivalent experience). Enterprise-scale detection leadership: Over 5 years managing detection engineering or security operations in enterprise-sized organisations, commanding capabilities across hybrid cloud, on-premises, and OT environments. Global coordination with distributed teams: Experience integrating and working alongside global, 24×7, geographically dispersed teams to deliver detection capabilities and support security operations missions. Communication and facilitation: Well-developed skills to explain complex technical concepts in clear business terms; produce concise written material (executive updates, coverage reports); and lead briefings to diverse stakeholders. Analytical decision making: Ability to analyse complex threat landscapes, assess detection gaps, and balance strategic capability development with tactical operational requirements, risk appetite, and resource constraints. Customer orientation and cross-cultural working: Demonstrated ability to collaborate across regions and functions (GSOC, IT, Legal, GRC, business units) with a strong service approach and commitment to enabling organisational resilience. Preferred Skills & Experience: Certifications: Security certifications preferred (e.g., CISSP, CISM, GIAC such as GCIA/GCDA/GMON; cloud certifications; ITIL). When we put unexpected teams in the same room, we unleash bold thinking with the power to encourage life-changing medicines. In-person working gives us the platform we need to connect, work at pace and challenge perceptions. That's why we work, on average, a minimum of three days per week from the office. But that doesn't mean we're not flexible. We balance the expectation of being in the office while respecting individual flexibility. Join us in our unique and ambitious world. The annual base pay for this position ranges from $169,320.00 - $253,980.00 USD Annual. Hourly and salaried non-exempt employees will also be paid overtime pay when working qualifying overtime hours. Base pay offered may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, and experience. In addition, our positions offer a short-term incentive bonus opportunity; eligibility to participate in our equity-based long-term incentive program (salaried roles), to receive a retirement contribution (hourly roles), and commission payment eligibility (sales roles). Benefits offered included a qualified retirement program [401(k) plan]; paid vacation and holidays; paid leaves; and, health benefits including medical, prescription drug, dental, and vision coverage in accordance with the terms and conditions of the applicable plans. Additional details of participation in these benefit plans will be provided if an employee receives an offer of employment. If hired, employee will be in an “at-will position” and the Company reserves the right to modify base pay (as well as any other discretionary payment or compensation program) at any time, including for reasons related to individual performance, Company or individual department/team performance, and market factors. Are you ready to bring new insights and fresh thinking to the table? Fantastic! We have one seat available, and we hope it’s yours. Apply today. AstraZeneca embraces diversity and equality of opportunity. We are committed to building an inclusive and diverse team representing all backgrounds, with as wide a range of perspectives as possible, and harnessing industry-leading skills. We believe that the more inclusive we are, the better our work will be. We welcome and consider applications to join our team from all qualified candidates, regardless of their characteristics. We follow all applicable laws and regulations on non-discrimination in employment (and recruitment), as well as work authorization and employment eligibility verification requirements. WHY JOIN US ? We’re a network of high-reaching self-starters who contribute to something far bigger. We enable AstraZeneca to perform at its peak by delivering premier technology and data solutions. We’re not afraid to take ownership and run with it. Empowered with unrivalled freedom. Put simply, it’s because we make a significant impact. Everything we do matters. Date Posted 28-May-2026 Closing Date 17-Jun-2026 Our mission is to build an inclusive environment where equal employment opportunities are available to all applicants and employees. In furtherance of that mission, we welcome and consider applications from all qualified candidates, regardless of their protected characteristics. If you have a disability or special need that requires accommodation, please complete the corresponding section in the application form. AstraZeneca is a global, science-led, patient-focused biopharmaceutical company. We focus on discovering, developing and commercialising prescription medicines for some of the world’s most serious diseases. But we are more than one of the world’s leading pharmaceutical companies. At AstraZeneca, we’re dedicated to being a Great Place to Work. Where you are empowered to push the boundaries of science, challenge convention and unleash your entrepreneurial spirit. To embrace differences and take bold actions to drive the change needed to meet global healthcare and sustainability challenges. There is no better place to make a difference in medicine, patients, and society. An inclusive culture where you will connect different thinking to generate new and valuable opportunities. Where you will find a commitment to lifelong learning, growth and development for all. Our Inclusion & Diversity (I&D) mission is to create an inclusive and equitable environment where people belong, using the power of our diversity to push the boundaries of science to deliver life-changing medicines to patients. Inclusion and diversity are fundamental to the success of our company, because innovation requires breakthrough ideas that only come from a diverse workforce empowered to challenge conventional thinking. We’re curious about science and the advancement of knowledge. We find creative ways to approach new challenges. We’re driven to make the right choices and be accountable for our actions. As an organisation centred around what makes us human, we put a big focus on people. Across our business, we want colleagues to wake up excited about their day at the office, in the field, or in the lab. Along with our purpose to bring life-changing medicines to people across the globe, we have a promise to you: to help you realise the full breadth of your potential. Here, you’ll do work that has the potential to change your life and improve countless others. And, together with your team, you’ll shape a culture that unites and inspires us every day. This is your life at AstraZeneca.

Vacancy posted 13 hours ago
Similar jobs that could be interesting for youBased on the Director, Cyber Security Detection Engineering in Gaithersburg, MD vacancy
  •  ...Director, Cyber Security Detection Engineering Leverage technology to impact patients and ultimately save lives Do you have expertise in, and passion for, information technology? Would you like to apply your expertise to impact the IT strategy in a company that... 
    Suggested
    Hourly pay
    Temporary work
    Work at office
    Flexible hours
    3 days per week

    AstraZeneca

    Gaithersburg, MD
    3 hours ago
  • $115k - $155k

     ...This role is responsible for the development and execution of cyber security engineering strategies and activities in support of plant design and...  ...solutions. Construct and exploit threat intelligence to detect, respond, and defeat advanced persistent threats (APTs).... 
    Suggested
    Full time
    Work at office
    Remote work

    X Energy, LLC

    Rockville, MD
    3 hours ago
  •  ...Senior Detection Engineer Leverage technology to impact patients and ultimately save lives...  ...technical specialist within the Global Security Operations Centre (GSOC), based in...  ...Gaithersburg, Maryland, working with the Director, Cyber Security Detection Engineering. The... 
    Suggested
    Hourly pay
    Temporary work
    Work experience placement
    Work at office
    Flexible hours
    3 days per week

    AstraZeneca

    Gaithersburg, MD
    3 hours ago
  •  ...Analysts, A&A Specialists, A&A SMEs, A&A Security Engineers, A&A Architects, Vulnerability...  ...Vulnerability Management Engineers to deliver the cyber authorization services. A Cybersecurity...  ...for SC GSS domains, including detection, analysis, containment, eradication, and... 
    Suggested
    For contractors
    Shift work

    Dunhill Professional Search

    Germantown, MD
    20 hours ago
  •  ...Industries (FPI). Our depth of experience allows us to provide IT security support for a wide range of IT General Support Systems (GSS)...  ...difficult and narrowly defined technical problems in engineering and other scientific applications to arrive at automated solutions... 
    Suggested
    Contract work
    Work at office

    NXTKey Corporation

    Rockville, MD
    2 days ago
  • $110.8k - $185.1k

     ...Information Systems Security Officer Location US-MD-...  ...189 Category IT / Cyber Security / Network Systems...  ...Evaluation, Program Mission Support, Engineering & Analysis, and Training....  ...security logs and alerts to detect and respond to security incidents... 
    Full time
    For contractors
    Remote work

    American Systems

    Gaithersburg, MD
    3 days ago
  • $86k - $138k

     ...Cyber Systems Administration, Lead Associate Job Locations US-MD-Germantown...  ...6818 Position Category Cyber Security Clearance CBOSS Agency...  ...including next-generation firewalls, intrusion detection/prevention systems (IDS/IPS) ~... 
    Contract work
    Shift work

    Peraton

    Germantown, MD
    2 days ago
  • $107.9k - $195.05k

    A leading defense contractor is seeking a Senior SCRM Analyst to conduct Cyber Supply Chain Risk Assessments and monitor adherence to security regulations. Candidates should have an active Top Secret clearance, significant experience in cybersecurity and risk management... 
    For contractors

    Leidos

    Gaithersburg, MD
    3 days ago
  • $150k - $190k

     ...Senior Cybersecurity Analyst / Information Security Manager We are seeking a highly skilled Senior Cybersecurity Analyst / Information Security Manager with expertise in IT security, risk management, and policy development. The ideal candidate will have a minimum of... 
    Full time
    Contract work
    Part time
    For contractors
    Remote work

    Akima

    Rockville, MD
    2 days ago
  • $141.92k - $212.89k

     ...Regulatory Authority) is the largest independent regulator of securities firms doing business in the United States. Our mission is to protect...  ...the financial sector? As a Senior Principal Risk Specialist, Cyber Engagements, you'll play a pivotal role in strengthening the... 
    For contractors
    For subcontractor
    Local area

    FINRA

    Rockville, MD
    3 days ago
  • $131.2k - $238.3k

    FINRA is seeking a Senior Principal Risk Specialist focused on cybersecurity in Rockville, Maryland. In this role, you will lead cybersecurity tabletop exercises and workshops, develop formal engagement documentation, and serve as a trusted advisor on incident management...

    FINRA

    Rockville, MD
    3 days ago
  • $107.9k - $195.05k

     ...Modernization sector is seeking an experienced Senior Zero Trust Cyber Security Analyst to support the delivery, enhancement, and adoption...  ...In this role, you will work alongside government partners, engineers, and other industry teammates to translate operational and... 
    Local area
    Immediate start

    Leidos

    Gaithersburg, MD
    2 days ago
  •  ...thrives here. Summary: The Senior Cyber Threat Analyst will lead efforts to...  ...a diverse group of teams including engineering, security, and network & system operations to ensure...  ...with SIEM, SOAR, and EDR tools for detection and response It is the policy of... 
    Remote work
    Flexible hours

    Donnelley Financial, LLC

    Rockville, MD
    3 hours ago
  • $100k - $150k

     ...cutting-edge technologies to create scalable, secure, and user-friendly applications. As...  ...we’re looking for a skilled AI Security Engineer to join our dynamic team and contribute...  ...model endpoints. Implement runtime detection and response capabilities for... 
    Full time
    H1b
    Local area
    Immediate start
    Remote work
    Visa sponsorship
    Work visa

    Bright Vision Technologies

    Gaithersburg, MD
    4 days ago
  • $86k - $138k

     ...seeking a qualified cybersecurity professional in Germantown, MD. The role involves managing firewall infrastructure, developing security policies, and conducting audits. Candidates must have at least 5 years' experience with a BS/BA, or equivalent work experience, along... 
    Work experience placement

    Peraton

    Germantown, MD
    3 days ago
  •  ...RMS is seeking a Senior Cybersecurity Engineer / Offensive Security Lead to support high‑visibility...  ...with federal stakeholders to strengthen cyber resilience across complex infrastructures...  ...with defensive teams to validate detections and strengthen security posture. Maintain... 

    Apogee Global RMS

    Highland, MD
    2 days ago
  • Leidos is seeking a Senior Zero Trust Cyber Security Analyst in Gaithersburg, Maryland. The role involves supporting the implementation of Zero Trust architecture and analyzing cybersecurity data to identify vulnerabilities. The ideal candidate must have an active Top... 

    Leidos

    Gaithersburg, MD
    2 days ago
  • $104k - $166k

     ...Cyber Systems Administration, Advisor - Team Lead Job Locations...  ...Category Cyber Security Clearance CBOSS Agency...  ...for a team of three firewall engineers, providing day-to-day...  ...Manage and tune Intrusion Detection/Prevention Systems (IDS/IPS)... 
    Contract work
    Shift work

    Peraton

    Germantown, MD
    4 days ago
  •  ...Description The Security Engineering Lead is responsible for engineering, implementing, and...  ...alert tuning, and alignment with incident detection and response objectives. Lead...  ...Software Engineering, Cloud Solutions, Cyber Security and IT Managed Services. With... 
    Full time
    Flexible hours

    ActioNet

    Rockville, MD
    4 days ago
  • $130k - $170k

     ...the SOC, responsible for advanced threat detection, incident response, threat hunting, and...  ...identify, analyze, and mitigate sophisticated cyber threats impacting Agency systems....  ...Contribute to automation and detection engineering efforts (scripts, playbooks, orchestration... 

    ActioNet, Inc.

    Rockville, MD
    4 days ago
  • $130k - $140k

     ...are designed to modernize, automate, secure, protect, and enhance the operations...  ...lead a team of security analysts and engineers who monitor, detect, analyze, and respond to security incidents...  ...'s assets, data, and reputation from cyber threats. Leadership skills, technical... 
    Work experience placement

    A TEK, Inc.

    Rockville, MD
    3 days ago
  • $68k - $119.83k

    Description A Lockheed Martin Cyber Intel Analyst Associate will work within a globally...  ...Creation and maintenance of resilient detections and countermeasures Consistent and effective...  ...Demonstrated experience with in-depth security log analysis Unix/Linux experience and... 
    Full time
    Temporary work
    Part time
    Remote work
    Relocation
    Flexible hours
    Shift work
    3 days per week

    Lockheed Martin

    Rockville, MD
    2 days ago
  •  ...Information Systems Security Officer (ISSO) Employment Type: Full-Time, Experienced...  ...Provide subject matter expertise for cyber security and trusted system technology....  ...test and evaluation reports, and security engineering practices and processes. Conduct research... 
    Full time
    Local area
    Flexible hours

    Contact Government Services LLC

    Rockville, MD
    1 day ago
  • $89k - $143.75k

     ...Development Job Sub Function: R&D Software/Systems Engineering Job Category: Scientific/Technology All...  ...software code reviews and design reviews with a cyber-lens. Performing periodic risk assessment of security vulnerabilities in software for the product by... 
    Full time
    Temporary work
    Work at office
    Local area
    Remote work
    Night shift

    Johnson & Johnson

    Gaithersburg, MD
    2 days ago
  • $155k - $165k

     ...level cybersecurity program in Rockville, MD. The role involves assisting the Cybersecurity Program Manager with risk assessment, security policy development, compliance monitoring, and report management. Candidates should have at least six years of experience in cybersecurity... 

    Customer Value Partners, Inc.

    Rockville, MD
    1 day ago
  • A national security firm in Gaithersburg, MD is seeking a Senior SCRM Analyst to support critical data and analytics programs. The role involves risk assessments, policy compliance, and continuous improvement of supply chain risk management processes. Candidates must have... 

    Via Logic LLC

    Gaithersburg, MD
    3 days ago
  •  ...Visa : USC, GC, GC EAD, H4, L2 This is hybrid from day-1. Candidate must be local Description : *role is not hardware security or cisco routers * Seeking a Lead Network Penetration Tester to head our network security team. This role involves... 
    Local area

    ShiftCode Analytics

    Rockville, MD
    4 days ago
  • $150k - $175k

     ...teams? Join WWT today! What will you be doing? World Wide Technology, Inc. (WWT) is seeking a highly driven and experienced Cyber Security Specialist to join our dynamic Security Sales team. In this role, you will collaborate closely with cross-functional teams to... 
    Full time
    Remote work
    Shift work

    World Wide Technology

    Gaithersburg, MD
    3 days ago
  • $100k - $172.5k

     ...Function: Technology Enterprise Strategy & Security Job Sub Function: Solution...  ...talent for a Principal Product Security Engineer to be located in Danvers, MA or Raritan,...  ...product security processes. Act as a SME on cyber security matters and provide guidance to... 
    Full time
    Temporary work
    Work at office
    Local area
    Immediate start
    Remote work
    3 days per week

    Johnson & Johnson

    Gaithersburg, MD
    3 days ago
  •  ...reputable IT solutions provider in Gaithersburg is seeking a Network Engineer for a contract to hire position. The role involves designing...  ..., configuring routers and switches, and ensuring network security. Ideal candidates should have knowledge of OSPF and BGP, relevant... 
    Contract work

    Quantix

    Gaithersburg, MD
    20 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Director, Cyber Security Detection Engineering. Be the first to apply!