Threat Detection Analyst (Expert)
$70k - $140kHuntington National Bank
Description This position is an onsite position and is available to be filled at any Huntington Corporate office location: Detroit, MI Dallas, TX Columbus, OH Pittsburgh, PA Minnetonka, MN Atlanta, GA Threat Detection Analyst (Expert) The Threat Detection Analyst Expert develops, tunes, validates, and maintains threat detection content across the organization's security platforms. This role leverages threat intelligence, adversary tradecraft, attack simulations, and data analytics to identify detection opportunities and improve visibility into malicious activity. Analyze security telemetry, threat trends, and attack techniques to create high-fidelity detections that identify threats across the enterprise. The Threat Detection Analyst Expert works closely with Incident Response, Cybersecurity Operations, Threat Intelligence, Security Engineering, and IT Operations teams to improve detection coverage, reduce detection gaps, and enhance the organization's ability to identify adversary behavior. This role is responsible for the full detection lifecycle, including design, testing, deployment, tuning, validation, and continuous improvement of threat detections. Threat Detection Analyst Responsibilities Provide leadership, mentorship, and training opportunities for junior Threat Detection Analysts. Design, develop, test, deploy, and maintain threat detections across SIEM, XDR, EDR, cloud, and network security platforms. Conduct detection engineering activities aligned to the MITRE ATT&CK framework and known adversary behaviors. Analyze threat intelligence, attack techniques, and emerging threats to identify new detection opportunities. Develop and maintain detection use cases, analytics, correlation rules, anomaly detections, and behavioral detections. Perform detection validation through threat simulations, purple team exercises, adversary emulation, and attack replay testing. Conduct detection gap assessments and identify areas requiring additional visibility or telemetry. Continuously tune and optimize detection logic to improve fidelity and reduce false positives and false negatives. Create and maintain detection documentation, testing procedures, and coverage mappings. Analyze security telemetry and log sources to identify opportunities for improved monitoring coverage. Develop content and requirements for new log sources, telemetry collection, and data quality improvements. Partner with Incident Response teams to improve detection content based on investigations and lessons learned. Collaborate with Threat Intelligence teams to operationalize indicators, emerging threats, and attacker TTPs. Maintain awareness of emerging attack techniques, cybersecurity trends, and advancements in detection methodologies. Measure and report on detection health, coverage effectiveness, and detection performance metrics. Perform other duties as assigned. Basic Qualifications: High School Diploma or 8+ additional years of equivalent experience. 5+ years of experience in Cybersecurity. 1+ years data analytics experience within the threat detection space. Preferred Qualifications Bachelor's degree or 4+ additional years of equivalent experience. Professional experience with Palo Alto Cortex XSIAM, Microsoft Sentinel, Splunk, Microsoft Defender XDR, or similar detection platforms. Strong experience developing, testing, deploying, and maintaining threat detections across enterprise security technologies. Experience creating detection logic based on MITRE ATT&CK techniques, threat intelligence, and real-world adversary behaviors. Experience conducting detection validation using attack simulation, adversary emulation, or purple team methodologies. Experience tuning detections to reduce false positives while maintaining detection efficacy. Ability to conduct detection coverage analysis and detection gap assessments. Familiarity with detection-as-code methodologies and version-controlled detection development processes. Experience writing and optimizing KQL, SPL, XQL, SQL, or similar analytics languages. Strong understanding of attacker tactics, techniques, and procedures (TTPs). Experience working with large-scale security telemetry and log analytics. Knowledge of common attack vectors including phishing, credential theft, ransomware, cloud attacks, insider threats, and lateral movement. Familiarity with threat hunting concepts and the conversion of hunt hypotheses into operational detections. Understanding of Windows, Linux, macOS, Active Directory, Azure AD/Entra ID, and cloud security telemetry. Experience with scripting and automation using Python, PowerShell, Bash, or similar languages. Knowledge of common network protocols such as DNS, SMTP, SSH, LDAP, and Kerberos. Understanding of cybersecurity frameworks including MITRE ATT&CK, Cyber Kill Chain, NIST CSF, and detection engineering best practices. Strong analytical, communication, presentation, and problem-solving skills. Occasional travel may be required ( Exempt Status: (Yes = not eligible for overtime pay) (No = eligible for overtime pay) Yes Workplace Type: Office Our Approach to Office Workplace Type Certain positions outside our branch network may be eligible for a flexible work arrangement. We’re combining the best of both worlds: in-office and work from home. Our approach enables our teams to deepen connections, maintain a strong community, and do their best work. Remote roles will also have the opportunity to come together in our offices for moments that matter. Specific work arrangements will be provided by the hiring team. Compensation Range: $70,000 - $140,000 Annual Salary The compensation range represents the anticipated low and high end of the base compensation range for this position. Actual compensation will vary based on various factors including but not limited to location, experience, and education. Colleagues in this position are also eligible to participate in an applicable incentive compensation plan. In addition, Huntington provides a variety of benefits to colleagues, including health insurance coverage, wellness program, life and disability insurance, retirement savings plan, paid leave programs, paid holidays and paid time off (PTO). Huntington is an Equal Opportunity Employer. Tobacco-Free Hiring Practice: Visit Huntington's Career Web Site for more details. #J-18808-Ljbffr Huntington National Bank
- Huntington National Bank is seeking a Threat Detection Analyst Expert to lead the design, deployment, and continuous improvement of enterprise threat detections. You will work across SIEM, XDR, EDR, cloud, and network security platforms, applying MITRE ATT&CK, threat intelligence...Suggested
- United Airlines seeks a Principal Analyst to lead its Purple Team in Ohio. You will drive detection capability development, conduct pink/purple engagements and vulnerability... ...systems, and collaboration with cross-functional threat teams to strengthen the airline’s cybersecurity...Suggested
- Accenture is looking for an Epic Willow Inpatient Analyst to act as a subject matter expert for inpatient pharmacy workflows within the Epic EHR platform. The successful candidate will have at least three years of application management experience and active Epic Willow...Suggested
- In Strategy & Consulting we work with C-suite executives, leaders and boards of the world’s leading organizations, helping them reinvent every part of their enterprise to drive greater growth, enhance competitiveness, implement operational improvements, reduce cost, deliver...SuggestedFull timeLive inWork at officeLocal area
- EY in the Americas is seeking a Threat & Risk Analyst to lead strategic and tactical threat intelligence efforts in partnership with Global Security and Regional teams. You will collect, assess, and report intelligence to protect personnel, facilities, assets, and reputation...Suggested
$27 per hour
North Central Mental Health Services, Inc. is seeking a Full-time Medical Billing Data Analyst to support accurate charge capture, data entry, and AR analysis in Columbus, OH. You will reconcile data across payer sources and ensure compliance with HIPAA and federal guidelines...Hourly payFull time$110k - $120k
CND Analyst Columbus, OH, Fort Belvoir, VA, Battle Creek, MI Description Connected... ...perform actions to protect, monitor, detect, analyze, and respond to unauthorized... ...or emerging situational awareness/threat. Serves as an expert on CND requirements and compliance to...$68.4k
...results to perform investigations into potential and existing threats. Responsible for the investigation of reports of real or potential... ...tools, applications, and systems to continually enhance fraud detection strategies and to identify trends. Analyzes assessment results...Contract workFor contractorsWork at officeLocal area$72.6k - $135.7k
...teams and take your career wherever you want it to go. Join EY and help to build a better working world. The opportunity The Threat & Risk Analyst leads strategic and tactical threat intelligence efforts in partnership with Global Security and Regional Security teams,...Summer holidayLocal areaFlexible hours- ...production is mission-critical.We are seeking a Model Monitoring Analyst to design, build, and operate the systems that keep our... ...model observability across the APD portfolio - establishing how we detect performance degradation, data drift, and anomalous behavior for...Work at officeLocal areaRemote work2 days per week
- ...vs-buy strategy for that layer (e.g., Arize, Fiddler, Varonis, or equivalent).Develop and maintain STRIDE, MAESTRO, and MITRE ATLAS threat models for new AI system patterns, and contribute the Architecture Decision Records that keep the program defensible to internal...Full timeTemporary workWork experience placementH1bWork at officeMonday to Friday
- ...contribute to regulatory reporting. You will lead complex cases, spot patterns, and translate observations into actionable improvements in detection. Based in Columbus, OH, you will collaborate with Compliance and Operations to strengthen investigative controls and ensure our...
$77.54k - $110.88k
Financial Crime Intelligence: Investigations Expert @ KlarnaBack to all rolesFinancial Crime Intelligence: Investigations ExpertJob detailsBusiness... ...and ensuring what investigations uncover actually changes the detection infrastructure, not just the individual case outcome.Working...Local area- ...of the data. Experience profiling data, detecting data quality issues, and defining data quality... ...technology solutions are protected from threats and vulnerabilities. Provides technical... ...Data Governance. Partners with experts to implement and conduct quality assurance...Temporary workCasual workWork at officeLocal area
- ...who are passionate about delivering extraordinary care. The Sr. Analyst, Technology Practioner (Technology Operations) role supports... ...to ensure our data and technology solutions are protected from threats and vulnerabilities. Communicates status of issues/incidents (including...Temporary workCasual workWork at officeImmediate start
- ...Fiserv.Job TitleCyber Risk AnalystAbout your role:As a Cyber Risk Analyst, you will support cybersecurity and technology risk assessment... ...potential control gaps, recommend follow-up questions, detect inconsistencies across risk and control data sources, and generate...Full timeTemporary workH1bWork at officeMonday to Friday
$76k - $143k
...who are passionate about delivering extraordinary care.The Sr. Analyst, Quality Engineer will support Nationwide’s Excess & Specialty... ...to ensure our data and technology solutions are protected from threats and vulnerabilities.Uses the appropriate quality engineering tools...Full timeTemporary workPart timeCasual workWork at officeRemote work$105.4k - $207.8k
Position Summary Deloitte’s Cyber team helps organizations address evolving cyber threats with solutions that strengthen resilience, support compliance, and protect critical data. As part of this team, you will help clients design and implement Microsoft Purview...Local areaVisa sponsorship- Lighthouse Electric is seeking a Virtual Design Construction Specialist to advance BIM modeling, clash detection, and coordination across commercial projects in a fast-paced environment. You will contribute to 3D modeling, shop drawings, and ongoing workflow improvements...
$93.75k - $133.2k
...This role leverages security operations experience to advance to expert levels in investigations and national security work. With... ...technology, you will confront cyber, terrorism, fraud, and evolving threats while protecting our nation. Salaries range from $93,749 to $13...Work at office$167.28k - $196.8k
...Analytics Engineer to join the Compliance Technology team within the Platform organization. This team builds and operates data and detection capabilities that enable Coinbase to meet global BSA/AML and related regulatory obligations at scale, partnering with Compliance,...Local area- ...Research, the Senior Prospect Development Analyst is an integral contributor to the... ...across the Foundation. This role focuses on detecting, verifying, and synthesizing information... ...across the team. Serve as a subject matter expert in database management and analytics,...Work at officeLocal areaShift work
- Connected Logistics is seeking a Certified Network Defender (CND) Analyst to protect, monitor, detect, analyze, and respond to unauthorized activity within enterprise networks and cloud environments. The role operates in a 24x7 SOC/CSSP, analyzes logs from endpoints to...
- Connected Logistics is seeking a Certified Network Defender (CND) Analyst to protect, monitor, detect, analyze, and respond to unauthorized activity across enterprise networks and cloud environments as part of the DLA CSSP mission. The role requires 24x7 SOC operations,...
- Overview: Abacus’s Analyst, Enterprise Service Desk is responsible for serving as an initial point of contact for triaging, then resolving... ...applications, patches, and updates. Perform basic virus detection, removal, and system security maintenance. Monitor and address...Work at officeRemote workShift work
- ...part of a lifelong partnership, and that everyone could use an expert guide. We work hard, care deeply and reach further to help people... ...documents test results, issues, software defects, and problems detected during testing. Takes initiative to resolve problems noted...Local areaRemote workShift work
- ...USDType: Full timePosted: 2026-03-18Contact: ****@*****.*** the position You will act as a key subject-matter expert supporting Klarna’s US AML and Financial Crime operations, combining hands-on investigative work with process development and optimization...Local area
- ...behavior, transactional activity, and supporting documentation to identify and mitigate risk across Klarna’s products. You will apply expert judgement to complex, high-risk cases, determining when escalation, enhanced due diligence, or regulatory reporting is required....Local area
- Job Description - Human Capital Management Analyst (20098018, 20102833) (260005WN) Human Capital Management Analyst (20098018, 201028... ...sexual activity in the community facilitated by force, implied threats of force, or if the victim did not or was unable to consent; Individuals...Full timePart timeWork at office
- ...Head of Communications, Public Relations & Analyst Relations Marketing About the Company AI-driven cybersecurity company specializing in threat detection & response services Industry Information Technology and Services Type Privately Held, VC-backed...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Threat Detection Analyst (Expert). Be the first to apply!
- nonprofit analyst Columbus, OH
- provisioning analyst Columbus, OH
- senior contracts analyst Columbus, OH
- allocation analyst Columbus, OH
- sharepoint analyst Columbus, OH
- corporate strategy analyst Columbus, OH
- reimbursement analyst Columbus, OH
- contracts analyst Columbus, OH
- senior database analyst Columbus, OH
- trade analyst Columbus, OH

