Understanding of cybersecurity frameworks including MITRE ATT&CK, Cyber Kill Chain, NIST CSF, and detection engineering best practices. * Strong analytical, communication, presentation, and problem ...
Understanding of cybersecurity frameworks including MITRE ATT&CK, Cyber Kill Chain, NIST CSF, and detection engineering best practices. * Strong analytical, communication, presentation, and problem ...
Threat Detection Analyst (Expert)
Detroit, MI · On-site
$70K - $140K/yr
Understanding of cybersecurity frameworks including MITRE ATT&CK, Cyber Kill Chain, NIST CSF, and detection engineering best practices. * Strong analytical, communication, presentation, and problem ...
Threat Detection Analyst (Expert)
Detroit, MI · On-site
$70K - $140K/yr
Understanding of cybersecurity frameworks including MITRE ATT&CK, Cyber Kill Chain, NIST CSF, and detection engineering best practices. * Strong analytical, communication, presentation, and problem ...
... cybersecurity discipline * Working knowledge of the threat-intelligence lifecycle, indicators of compromise, and adversary TTPs, with familiarity with frameworks such as MITRE ATT&CK and the Diamond ...
... cybersecurity discipline * Working knowledge of the threat-intelligence lifecycle, indicators of compromise, and adversary TTPs, with familiarity with frameworks such as MITRE ATT&CK and the Diamond ...
... cybersecurity discipline * Working knowledge of the threat-intelligence lifecycle, indicators of compromise, and adversary TTPs, with familiarity with frameworks such as MITRE ATT&CK and the Diamond ...
... cybersecurity discipline * Working knowledge of the threat-intelligence lifecycle, indicators of compromise, and adversary TTPs, with familiarity with frameworks such as MITRE ATT&CK and the Diamond ...
... cybersecurity discipline * Working knowledge of the threat-intelligence lifecycle, indicators of compromise, and adversary TTPs, with familiarity with frameworks such as MITRE ATT&CK and the Diamond ...
... cybersecurity discipline * Working knowledge of the threat-intelligence lifecycle, indicators of compromise, and adversary TTPs, with familiarity with frameworks such as MITRE ATT&CK and the Diamond ...
Cyber Threat Intelligence Analyst
Warren, MI · On-site
$95 - $130/hr
... cybersecurity disciplineWorking knowledge of the threat-intelligence lifecycle, indicators of compromise, and adversary TTPs, with familiarity with frameworks such as MITRE ATT&CK and the Diamond ...
Cyber Threat Intelligence Analyst
Warren, MI · On-site
$95 - $130/hr
... cybersecurity disciplineWorking knowledge of the threat-intelligence lifecycle, indicators of compromise, and adversary TTPs, with familiarity with frameworks such as MITRE ATT&CK and the Diamond ...
... cybersecurity discipline * Working knowledge of the threat-intelligence lifecycle, indicators of compromise, and adversary TTPs, with familiarity with frameworks such as MITRE ATT&CK and the Diamond ...
... cybersecurity discipline * Working knowledge of the threat-intelligence lifecycle, indicators of compromise, and adversary TTPs, with familiarity with frameworks such as MITRE ATT&CK and the Diamond ...
... cybersecurity discipline * Working knowledge of the threat-intelligence lifecycle, indicators of compromise, and adversary TTPs, with familiarity with frameworks such as MITRE ATT&CK and the Diamond ...
... cybersecurity discipline * Working knowledge of the threat-intelligence lifecycle, indicators of compromise, and adversary TTPs, with familiarity with frameworks such as MITRE ATT&CK and the Diamond ...
Senior Cybersecurity Engineer - Adversary Operations, Innovation & Purple Team Operations
Warren, MI · On-site
The Senior Cybersecurity Engineer will perform tactical purple operations, repeatable MSV-based ... Familiarity with ATT&CK-aligned reporting, detection engineering feedback loops, and enterprise ...
Senior Cybersecurity Engineer - Adversary Operations, Innovation & Purple Team Operations
Warren, MI · On-site
The Senior Cybersecurity Engineer will perform tactical purple operations, repeatable MSV-based ... Familiarity with ATT&CK-aligned reporting, detection engineering feedback loops, and enterprise ...
The Senior Cybersecurity Engineer will perform tactical purple operations, repeatable MSV-based ... Familiarity with ATT&CK-aligned reporting, detection engineering feedback loops, and enterprise ...
The Senior Cybersecurity Engineer will perform tactical purple operations, repeatable MSV-based ... Familiarity with ATT&CK-aligned reporting, detection engineering feedback loops, and enterprise ...
Senior Security Analyst
Farmington, MI · On-site
$73K/yr
Strong understanding of cybersecurity principles, including malware, threat hunting, and penetration testing * Familiarity with frameworks like MITRE ATT&CK and the Cyber Kill Chain * Experience with ...
Quick apply
Senior Security Analyst
Farmington, MI · On-site
$73K/yr
Strong understanding of cybersecurity principles, including malware, threat hunting, and penetration testing * Familiarity with frameworks like MITRE ATT&CK and the Cyber Kill Chain * Experience with ...
Business Sales Representative - Territory Accounts
Southfield, MI · On-site
$88K - $137K/yr
Position AT&T solutions across wireless, fiber, internet, voice, software defined networking and cybersecurity. * Serve multiple customer segments: Engage small and mid-sized businesses across ...
Business Sales Representative - Territory Accounts
Southfield, MI · On-site
$88K - $137K/yr
Position AT&T solutions across wireless, fiber, internet, voice, software defined networking and cybersecurity. * Serve multiple customer segments: Engage small and mid-sized businesses across ...
IT Security Ops Manager
Ann Arbor, MI · On-site
Required : • Bachelor's degree in Computer Science, Cybersecurity, or related field (or ... Linux a plus). • Solid understanding of endpoint attack techniques and MITRE ATT&CK. Preferred ...
IT Security Ops Manager
Ann Arbor, MI · On-site
Required : • Bachelor's degree in Computer Science, Cybersecurity, or related field (or ... Linux a plus). • Solid understanding of endpoint attack techniques and MITRE ATT&CK. Preferred ...
IT Security Ops Manager
Ann Arbor, MI · On-site
Required : • Bachelor's degree in Computer Science, Cybersecurity, or related field (or ... Linux a plus). • Solid understanding of endpoint attack techniques and MITRE ATT&CK. Preferred ...
IT Security Ops Manager
Ann Arbor, MI · On-site
Required : • Bachelor's degree in Computer Science, Cybersecurity, or related field (or ... Linux a plus). • Solid understanding of endpoint attack techniques and MITRE ATT&CK. Preferred ...
The role does not own enterprise cybersecurity strategy but is responsible for translating strategy ... Drive maturity around adversary-focused operations utilizing frameworks such as MITRE ATT&CK.
The role does not own enterprise cybersecurity strategy but is responsible for translating strategy ... Drive maturity around adversary-focused operations utilizing frameworks such as MITRE ATT&CK.
Deloitte's Cyber team helps clients address evolving cybersecurity challenges and opportunities by ... Experience with MITRE ATT&CK, the Cyber Kill Chain, VirusTotal, Mandiant, Google Threat ...
Deloitte's Cyber team helps clients address evolving cybersecurity challenges and opportunities by ... Experience with MITRE ATT&CK, the Cyber Kill Chain, VirusTotal, Mandiant, Google Threat ...
Deloitte's Cyber team helps clients address evolving cybersecurity challenges and opportunities by ... Experience with MITRE ATT&CK, the Cyber Kill Chain, VirusTotal, Mandiant, Google Threat ...
Deloitte's Cyber team helps clients address evolving cybersecurity challenges and opportunities by ... Experience with MITRE ATT&CK, the Cyber Kill Chain, VirusTotal, Mandiant, Google Threat ...
Investigate and respond to cybersecurity incidents involving endpoints, identities, cloud platforms ... Leverage MITRE ATT&CK techniques to improve detection and investigative effectiveness. Digital ...
Investigate and respond to cybersecurity incidents involving endpoints, identities, cloud platforms ... Leverage MITRE ATT&CK techniques to improve detection and investigative effectiveness. Digital ...
Bachelor's degree in computer science, cybersecurity, information systems, or equivalent work ... Experience with security principles and frameworks such as MITRE ATT&CK and Cyber Kill Chain
Bachelor's degree in computer science, cybersecurity, information systems, or equivalent work ... Experience with security principles and frameworks such as MITRE ATT&CK and Cyber Kill Chain
Bachelor's degree in computer science, cybersecurity, information systems, or equivalent work ... Experience with security principles and frameworks such as MITRE ATT&CK and Cyber Kill Chain
Bachelor's degree in computer science, cybersecurity, information systems, or equivalent work ... Experience with security principles and frameworks such as MITRE ATT&CK and Cyber Kill Chain
Att Cybersecurity information
What is the difference between Att Cybersecurity vs Cybersecurity Analyst?
| Aspect | Att Cybersecurity | Cybersecurity Analyst |
|---|---|---|
| Required Certifications | CompTIA Security+, CISSP, CEH | CompTIA Security+, CISSP, CEH |
| Work Environment | Security operations centers, corporate IT teams | Security teams, IT departments, consulting firms |
| Employer & Industry Usage | Government agencies, private sector, military | Businesses, government, cybersecurity firms |
| Common Search & Comparison | Yes | Yes |
Att Cybersecurity professionals focus on defending networks and systems through monitoring, threat detection, and incident response. Cybersecurity Analysts perform similar roles but may also include analyzing security data, conducting vulnerability assessments, and developing security strategies. Both roles require comparable certifications and often work in similar environments, but Att Cybersecurity roles are more specialized in active defense operations.
What are popular job titles related to Att Cybersecurity jobs in Michigan?
For Att Cybersecurity jobs in Michigan, the most frequently searched job titles are:
What job categories do people searching Att Cybersecurity jobs in Michigan look for?
The top searched job categories for Att Cybersecurity jobs in Michigan are:
What cities in Michigan are hiring for Att Cybersecurity jobs?
Cities in Michigan with the most Att Cybersecurity job openings:

Full-time
Medical, Life, Retirement, PTO
Posted 13 days ago
Job description
This position is an onsite position and is available to be filled at any Huntington Corporate office location:
- Detroit, MI
- Dallas, TX
- Columbus, OH
- Pittsburgh, PA
- Minnetonka, MN
- Atlanta, GA
The Threat Detection Analyst Expert develops, tunes, validates, and maintains threat detection content across the organization's security platforms. This role leverages threat intelligence, adversary tradecraft, attack simulations, and data analytics to identify detection opportunities and improve visibility into malicious activity. Analyze security telemetry, threat trends, and attack techniques to create high-fidelity detections that identify threats across the enterprise.
The Threat Detection Analyst Expert works closely with Incident Response, Cybersecurity Operations, Threat Intelligence, Security Engineering, and IT Operations teams to improve detection coverage, reduce detection gaps, and enhance the organization's ability to identify adversary behavior. This role is responsible for the full detection lifecycle, including design, testing, deployment, tuning, validation, and continuous improvement of threat detections.
Threat Detection Analyst Responsibilities- Provide leadership, mentorship, and training opportunities for junior Threat Detection Analysts.
- Design, develop, test, deploy, and maintain threat detections across SIEM, XDR, EDR, cloud, and network security platforms.
- Conduct detection engineering activities aligned to the MITRE ATT&CK framework and known adversary behaviors.
- Analyze threat intelligence, attack techniques, and emerging threats to identify new detection opportunities.
- Develop and maintain detection use cases, analytics, correlation rules, anomaly detections, and behavioral detections.
- Perform detection validation through threat simulations, purple team exercises, adversary emulation, and attack replay testing.
- Conduct detection gap assessments and identify areas requiring additional visibility or telemetry.
- Continuously tune and optimize detection logic to improve fidelity and reduce false positives and false negatives.
- Create and maintain detection documentation, testing procedures, and coverage mappings.
- Analyze security telemetry and log sources to identify opportunities for improved monitoring coverage.
- Develop content and requirements for new log sources, telemetry collection, and data quality improvements.
- Partner with Incident Response teams to improve detection content based on investigations and lessons learned.
- Collaborate with Threat Intelligence teams to operationalize indicators, emerging threats, and attacker TTPs.
- Maintain awareness of emerging attack techniques, cybersecurity trends, and advancements in detection methodologies.
- Measure and report on detection health, coverage effectiveness, and detection performance metrics.
- Perform other duties as assigned.
Basic Qualifications:
- High School Diploma or 8+ additional years of equivalent experience.
- 5+ years of experience in Cybersecurity.
- 1+ years data analytics experience within the threat detection space.
- Bachelor's degree or 4+ additional years of equivalent experience.
- Professional experience with Palo Alto Cortex XSIAM, Microsoft Sentinel, Splunk, Microsoft Defender XDR, or similar detection platforms.
- Strong experience developing, testing, deploying, and maintaining threat detections across enterprise security technologies.
- Experience creating detection logic based on MITRE ATT&CK techniques, threat intelligence, and real-world adversary behaviors.
- Experience conducting detection validation using attack simulation, adversary emulation, or purple team methodologies.
- Experience tuning detections to reduce false positives while maintaining detection efficacy.
- Ability to conduct detection coverage analysis and detection gap assessments.
- Familiarity with detection-as-code methodologies and version-controlled detection development processes.
- Experience writing and optimizing KQL, SPL, XQL, SQL, or similar analytics languages.
- Strong understanding of attacker tactics, techniques, and procedures (TTPs).
- Experience working with large-scale security telemetry and log analytics.
- Knowledge of common attack vectors including phishing, credential theft, ransomware, cloud attacks, insider threats, and lateral movement.
- Familiarity with threat hunting concepts and the conversion of hunt hypotheses into operational detections.
- Understanding of Windows, Linux, macOS, Active Directory, Azure AD/Entra ID, and cloud security telemetry.
- Experience with scripting and automation using Python, PowerShell, Bash, or similar languages.
- Knowledge of common network protocols such as HTTP/S, DNS, SMTP, SSH, LDAP, and Kerberos.
- Understanding of cybersecurity frameworks including MITRE ATT&CK, Cyber Kill Chain, NIST CSF, and detection engineering best practices.
- Strong analytical, communication, presentation, and problem-solving skills.
- Occasional travel may be required (<10%).
Exempt Status: (Yes= not eligible for overtime pay) (No= eligible for overtime pay)
Workplace Type:
OfficeOur Approach to Office Workplace Type
Certain positions outside our branch network may be eligible for a flexible work arrangement. We're combining the best of both worlds: in-office and work from home. Our approach enables our teams to deepen connections, maintain a strong community, and do their best work. Remote roles will also have the opportunity to come together in our offices for moments that matter. Specific work arrangements will be provided by the hiring team.
Compensation Range:
$70,000 - $140,000 Annual SalaryThe compensation range represents the anticipated low and high end of the base compensation range for this position. Actual compensation will vary based on various factors including but not limited to location, experience, and education. Colleagues in this position are also eligible to participate in an applicable incentive compensation plan. In addition, Huntington provides a variety of benefits to colleagues, including health insurance coverage, wellness program, life and disability insurance, retirement savings plan, paid leave programs, paid holidays and paid time off (PTO).
Huntington is an Equal Opportunity Employer.
Tobacco-Free Hiring Practice: Visit Huntington's Career Web Site for more details.
Note to Agency Recruiters: Huntington will not pay a fee for any placement resulting from the receipt of an unsolicited resume. All unsolicited resumes sent to any Huntington colleagues, directly or indirectly, will be considered Huntington property. Recruiting agencies must have a valid, written and fully executed Master Service Agreement and Statement of Work for consideration.