Security Engineer
Myers and Stauffer
Security Detection Engineer
The Security Detection Engineer is a senior, hands-on technical role responsible for building, tuning, validating, and operating security detections across CBIZ environments. Detection engineering is the core of the role: translating threat intelligence, adversary behavior, incident findings, and business risk into dependable analytics that identify suspicious activity with useful context. The engineer also investigates incidents, improves supporting controls, and uses automation to increase speed, consistency, and coverage. This is not a passive monitoring or ticket-routing role; the engineer owns detection problems from use-case design and telemetry validation through deployment, triage support, measurement, and continuous improvement.
Essential Functions and Primary Duties
Detection Engineering and Threat Analytics
- Design, test, deploy, document, and maintain detection content across SIEM, XDR, NDR, identity, email, endpoint, network, cloud, and application security platforms.
- Turn threat intelligence, adversary tactics and techniques, incident findings, and business risk into prioritized detection use cases; develop behavioral, correlation, threshold, anomaly, and indicator-based analytics.
- Map detection coverage to recognized adversary behaviors and maintain clear traceability among threats, telemetry, analytics, response actions, and control owners.
- Validate detections through structured testing, historical-log review, attack simulation, purple-team exercises, and post-incident analysis; tune for meaningful signal while reducing false positives and duplicates.
- Own the detection lifecycle, including intake, prioritization, peer review, testing, release, version control, performance review, exception handling, and retirement.
- Monitor detection health, data freshness, rule execution, alert quality, and coverage gaps; drive corrective action when controls or telemetry degrade.
Telemetry, Logging, and Detection Architecture
- Partner with cloud, identity, endpoint, network, infrastructure, and application teams to onboard, normalize, and retain security-relevant telemetry.
- Assess log quality and availability, including timestamps, identity context, event fidelity, field mapping, parsing, retention, and ingestion health required for reliable investigations and detections.
- Document data dependencies and recovery procedures for critical detections, and contribute to detection architecture, data-source strategy, and use-case roadmaps across hybrid and multi-cloud environments
Security Operations, Incident Response, and Engineering
- Investigate and respond to alerts and incidents across SIEM, XDR, NDR, identity, email, endpoint, network, and cloud platforms; lead work from triage and scoping through containment, eradication, recovery, validation, and lessons learned.
- Perform root-cause analysis, reconstruct activity across data sources, preserve relevant evidence, validate remediation, and convert incidents, near misses, and control failures into improved detections, playbooks, and preventive controls.
- Configure, harden, maintain, and troubleshoot security controls across Microsoft Azure, Azure Virtual Desktop, AWS, and Microsoft 365 security and compliance platforms, including identity protection, Conditional Access, email defense, endpoint security, DLP, cloud workload protection, and tenant baselines.
- Support certificate-based authentication, encryption, and PKI dependencies; coordinate remediation and control changes with technology owners and confirm intended security outcomes.
- Participate in an on-call rotation and after-hours response as needed.
Automation, Documentation, and Collaboration
- Use PowerShell, Python, Bash, APIs, SOAR workflows, and other automation methods to enrich alerts, test controls, improve data quality, orchestrate response, and reduce repetitive work.
- Build reusable queries, scripts, integrations, dashboards, investigation guidance, runbooks, playbooks, SOPs, and knowledge articles that improve operational consistency.
- Evaluate AI-enabled security capabilities responsibly to improve detection development and investigation efficiency while retaining appropriate human review and control.
- Partner with Security Operations, GRC, IT, Cloud, Networking, Systems, Endpoint, application owners, threat intelligence, vulnerability management, and red/purple teams; provide technical guidance and peer review when appropriate.
Preferred Qualifications
- 3-5 years of experience in information security, security operations, detection engineering, incident response, threat hunting, or security engineering.
- Proven hands-on experience creating and tuning detections in an enterprise SIEM, XDR, or comparable security analytics platform.
- Strong ability to analyze authentication, endpoint, network, email, cloud, and application telemetry and translate findings into durable detection logic.
- Hands-on experience with security investigations, incident response, log analysis, root-cause analysis, and remediation validation.
- Working knowledge of adversary behavior, common attack techniques, detection lifecycle practices, and methods for validating detection coverage.
- Experience securing Azure and/or AWS environments and operating Microsoft 365 security capabilities; experience supporting or securing Azure Virtual Desktop is required.
- Working knowledge of PKI, certificate-based authentication, encryption, enterprise logging architectures, networking, identity and access, endpoint security, and malware fundamentals.
- Strong PowerShell skills and experience with Linux command-line administration, logs, and services; ability to work independently, exercise sound judgment, and drive complex work to completion.
- Advanced skill with SIEM query languages, detection-as-code, source control, testing frameworks, SOAR, APIs, and automated response.
- Experience with threat hunting, attack simulation, purple teaming, adversary emulation, breach-and-attack simulation, or measuring detection coverage and quality.
- Experience with AI-assisted security analytics and responsible use of AI in detection and response workflows.
- Relevant certifications such as Security+, GIAC, Microsoft security certifications, ISC2 CC or CISSP, or comparable credentials.
- Experience in a large enterprise SOC, hybrid or multi-cloud environment, or large-scale security transformation.
Minimum Qualifications Required
- College Degree or equivalent required
- 1 year related experience
- Proficient use of applicable technology
- Ability to follow technical instructions and guidelines
- Ability to document daily activities and system functions
- Able to work in team environment
- Demonstrated ability to communicate verbally and in writing throughout all levels of organization both internally and externally
- Ability to travel as required by business and on-call availability
- Able to lift up to 50 lbs
- Company DescriptionIDEALFORCE has a CONTRACT position available immediately for Security Engineer (Nexpose & Nessus) to join our customer in Phoenix AZ. This is an ONSITE position. Please find below additional details about this job. Kindly respond with your most up to...SuggestedContract workLocal areaImmediate start
$105.3k - $148.66k
...join us and do something wonderful.Who we Are:Intel's Information Security organization enables Intel to provide secure products,... ...Information Security organization is seeking a Identity Security - PKI Engineer. The candidate chosen for this role will assist senior...SuggestedFull timeInternshipLocal areaImmediate startShift work- ...with the opportunity to work within an innovative and collaborative environment. Join our Technology Team as an Identity and Security Engineer located in various offices.We are seeking a professional who thrives in a fast-paced, deadline-driven environment. The ideal candidate...SuggestedRemote workFlexible hours
- Engineer II Premium (Cloud Security Consultant) Focus: Security assessment of GCP-based conversational AI, telephony, API, and backend integration architecture.Suggested
- ...from increasingly sophisticated cyber and AI-driven threats, securing their AI transformation. Why Join Us? Why Join Us At... ...Qualifications What you bring to the table ~8+ years of engineering and pre-sales experience ~ Possess strong analytical and problem...SuggestedWorldwide
- ...SOC Engineering Position SOC Engineering – Engineer and enhance Security Operations Center (SOC) capabilities, integrating security monitoring tools, SIEM solutions, and automation workflows in 24x7 mission critical environments. Security Operations Enablement -...Work at office
- OverviewThe Security Engineer II is a mid-level individual contributor responsible for implementing, administering, and maintaining the security controls that protect Sprouts' stores, systems, and data. Working across areas such as email, identity, endpoint, data, cloud...Temporary workWork at officeImmediate startFlexible hours
- ...here to access. Time Type:Full timeRemote Type:Job Family Group:Information TechnologyJob Description Summary: The Senior IT Security Engineer is responsible for planning, deploying, administering, and maintaining security platforms and technologies to protect the organization...Full time
- Job SummaryRequisition ID: 2026-127441Posted Date: 5 hours ago(9/30/2026 4:35 PM)Category: TechnologySalary Range: USD $135,000.00 - $165,000.00 / YearApplication deadline: 10/9/2026Position Type: Full timeFull time
- ...One Step Secure I/T is an MSP providing the latest in managed services and cybersecurity. We're a stable, privately-owned company... ...matter, you'll feel right at home here. The Security Engineer Level 2 at One Step Data, Inc., designs, implements, and maintains...Full time
- ...applications. We bridge commercial innovation with defense-grade security to ensure our warfighters and allies have the technological advantage.Mercury is seeking a highly motivated Principal Systems Engineer to develop the next generation of Mercury’s industry-leading...Permanent employmentCasual workWorldwide
- ...IT Security Specialist Work-Experience: 4-6 Years of total IT experience with significant experience in managing a group of professionals to deliver IT Security services for client-based environments. Type of Experience Administer and support F5 appliances...Work experience placement
$89.41k - $136.72k
The Security Operations Engineer II is responsible for leading day-to-day operations of the physical security systems and applications. In this role, the Security Operations Engineer will provide organizational expertise in usage of security equipment, train and monitor...Full timeRemote work- ...Position Description & Qualifications Are you an Information System Security Engineer (ISSE) looking for a place where you can make an impact every day? Serco is the place for you! Join our Defense team supporting our CNIC program in this exciting role based out of...Full timeContract workPart timeInterim roleLocal areaFlexible hours
- ...Systems Security Engineer Location: Phoenix, AZ Company Stage of Funding: Early-Stage Autonomous Robotics & Defense Technology Startup Office Type: On-site Salary: Competitive + Equity Company Description We're representing an early-stage autonomous...Work at office
$104k - $154k
...Information Systems Security Engineer (ISSE) Womble Bond Dickinson (US) LLP is seeking an Information Systems Security Engineer (ISSE) for our Phoenix, AZ, Denver, CO, or Las Vegas, NV office. The Information Systems Security Engineer reports to the Information Systems...Work at officeFlexible hours- ...Time)Employment Type: Full TimeIndustry: Computer SoftwareClient: WiproContact: Meghana GorusuCompany: SRI Tech SolutionsNetwork Security Engineer - L4 (Cisco ACI & Cloud Networking)Location: Phoenix AZ (onsite)ACI - MandatoryAzure - MandatoryF5 - MandatoryJob Title:...Full time
- ...package, along with the opportunity to work within an innovative and collaborative environment. Join our Technology Team as a Cloud Security Engineer located in various offices.We are seeking a professional who thrives in a fast-paced, deadline-driven environment. The ideal...
- ...IMPACT Technology Recruiting is looking for a hands-on Azure Cloud Security Engineer to join a cybersecurity team in the Phoenix area. Tempe/Phoenix, AZ – Hybrid (4 days onsite / 1 remote) Permanent Opening | U.S. Citizen or Green Card (Now Corp to Corp, No 3rd...Permanent employmentFull timeRemote work
- ...Security assessment of GCP-based conversational AI, telephony, API, and backend integration architecture. Responsibilities: Assess the end-to-end architecture from a data security and privacy standpoint. Review security controls for GCP Shared VPC, interconnects...Full time
- Company DescriptionIDEALFORCE has multiple CONTRACT positions available immediately for Information Security Engineer to join our customer in Phoenix AZ. This is an ONSITE position. Please find below additional details about this job. Kindly respond with your most up to...Contract workLocal areaImmediate start
- ...Senior Product Security Engineer The Senior Product Security Engineer is a deeply technical, hands-on engineering and architect-level role responsible for establishing and leading the Product Security function at CBIZ. As the first dedicated hire in this domain, this...
- Job Title:Principal Security Platform EngineerLocation:Block 23What you'll do:As a Principal Engineer I you'll provide SME expertise in your respective domain as well as adjacent domains to ensure solutions are safe, secure, compliant, and reliable. You'll identify development...Full timeWork at officeFlexible hoursShift work
- ...collaborate and to push for solutions that will delight our customers.Senior AI Security and Governance EngineerJob Summary:VIAVI Solutions is seeking a Senior AI Security & Governance Engineer to lead the company's strategy for securing AI technologies across the...Full timeWork from homeHome office
$128k - $181.25k
...moments that reflect who they uniquely are.This is an exciting time for Shutterfly, and we are looking for a Senior Application Security Engineer to join our team. In this role you will help shape an evolving offensive security practice, leading Red Team engagements...Remote work$100k
...technology needs. The well-established MSP is looking to bring on a Senior Microsoft 365 Engineer with deep expertise across Purview, Intune, and the broader M365 security stack. This is a high-impact role focused on security, compliance, data governance, and endpoint...Full time- ...Job Description Security assessment of GCP-based conversational AI, telephony, API, and backend integration architecture. \n \n Responsibilities: \n \n \n Assess the end-to-end architecture from a data security and privacy standpoint. \n Review security...
$100k - $130k
...the opportunity. Job Details:- Job Title: Azure Security Analyst Location: Phoenix, AZ Onsite Duration:... ...configuration issues, and collaborate effectively with application, engineering, architecture, and security teams. Preferred: Working...Full time$175k - $200k
...Type:Job Family Group:Information TechnologyJob Description Summary: We are seeking an experienced Director, Cloud Security Architecture and Engineering to serve as a hands-on leader, providing both strategic direction and active technical contribution. This role will...Full timeWork experience placementNight shiftWeekend work$190.61k - $361.48k
Job Details:Job Description: We are seeking a Sr. Security Architect to drive security architecture for Client and Data Center SoCs,... ...Partner deeply with SoC architects, silicon designers, firmware engineers, and OS/virtualization teams to translate discovered risks...Full timeLocal areaImmediate startShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Engineer. Be the first to apply!
- application security engineer Phoenix, AZ
- senior cloud security engineer Phoenix, AZ
- aws cloud security engineer Phoenix, AZ
- sr information security engineer Phoenix, AZ
- network security engineer Phoenix, AZ
- information technology security engineer Phoenix, AZ
- senior application security engineer Phoenix, AZ
- security engineer Phoenix, AZ
- senior security operations engineer Phoenix, AZ
- IT security engineer Phoenix, AZ





