1

Detection Engineer Jobs in California (NOW HIRING)

Principal Software Engineer

Santa Clara, CA · On-site

$158K - $212K/yr

You will work at the intersection of network security, detection engineering, and high-performance systems software toidentifysuspicious activity, improve threat visibility, and strengthen Gigamon ...

They are looking for a deep learning engineer to design weapon detection models with low latency and high accuracy to prevent school shootings. Responsibilities : • Research, design, implement ...

Senior Detection and Response Engineer

San Mateo, CA · Hybrid

$130K - $178K/yr

As a Senior Security Engineer on the Detection and Response (D&R) team at Roblox, you'll protect our user community alongside the underlying platform infrastructure. You'll design high-fidelity ...

Senior Security Engineer

Los Angeles, CA · On-site

$123K - $169K/yr

... detection engineering, alert triage, threat hunting, and incident response. • Tune and operate ... the SIEM, SOAR, and EDR stack (e.g., CrowdStrike). Author and maintain detections as code. • ...

Senior Security Engineer

Los Angeles, CA · On-site

$123K - $169K/yr

... detection engineering, alert triage, threat hunting, and incident response. • Tune and operate ... the SIEM, SOAR, and EDR stack (e.g., CrowdStrike). Author and maintain detections as code. • ...

Showing results 21-40

Detection Engineer information

What does a detection engineer do?

A Detection Engineer is responsible for identifying, analyzing, and mitigating security threats by developing detection rules, monitoring security systems, and responding to potential incidents. They work with security tools like SIEMs, EDRs, and IDS/IPS to detect malicious activity and improve threat detection capabilities. Additionally, they collaborate with security teams to enhance defensive strategies and automate detection processes.

What kind of projects or tasks does a detection engineer typically work on?

As a Detection Engineer, you can expect to work on designing, implementing, and refining security detection strategies to identify potential threats and vulnerabilities in company systems. Daily responsibilities often include developing detection logic, analyzing security alerts, conducting threat hunting exercises, and collaborating with incident response teams. You may also work closely with other cybersecurity professionals to evaluate the effectiveness of existing security measures and recommend improvements. This dynamic environment offers opportunities to work on complex technical challenges while directly contributing to the organization’s overall security posture.

What are the key skills and qualifications needed to thrive as a detection engineer?

To thrive as a Detection Engineer, you need strong analytical skills, a solid understanding of cybersecurity principles, and experience with threat detection and response, often supported by a degree in computer science or a related field. Proficiency with security information and event management (SIEM) tools, intrusion detection/prevention systems, and certifications like GIAC or CISSP are commonly required. Attention to detail, proactive problem-solving abilities, and effective communication enhance effectiveness in this role. These skills are crucial as Detection Engineers must accurately identify security threats, collaborate with teams, and minimize potential risks to the organization.

What are the most commonly searched types of Detection Engineer jobs in California? The most popular types of Detection Engineer jobs in California are:
What job categories do people searching Detection Engineer jobs in California look for? The top searched job categories for Detection Engineer jobs in California are:
What cities in California are hiring for Detection Engineer jobs? Cities in California with the most Detection Engineer job openings:
Infographic showing various Detection Engineer job openings in California as of July 2026, with employment types broken down into 91% Full Time, 6% Part Time, and 3% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution.

Principal Detection and Response Engineer

Roblox

San Mateo, CA • Hybrid

Other

Re-posted 2 days ago


Job description

About the role:

As a Principal Security Engineer on the Detection and Response (D&R) team at Roblox, you'll play a key role designing and developing effective custom security data pipeline systems, detection strategies and automations for response workflows to defend our critical assets from threat actors. You will also lead real-time incident response, actively investigate events and analyze threat actor techniques to prioritize emerging threats to ensure Roblox is equipped to mitigate and react to critical challenges. You will play a vital part to ensure the safety of our community and enterprise by proactively fostering a high-performing, inclusive security culture. This is a hybrid in-office role.

You Will:

  • Be a D&R authority! You will deliver robust detection & response capabilities: build new threat detection systems (keeping false positives low) while also automating processes with scripts, playbooks and orchestration tooling.
  • Implement ETL pipelines: Design and develop customized data processing pipelines.
  • Conduct security operations: Actively monitor security events and participate in on-call rotations to lead real-time incident response to contain and mitigate potential security issues.
  • Build positive relationships: Collaborate with internal teams like InfoSec, Engineering, Product and Safety to design scalable solutions.
  • Help grow the D&R team: Guide and support junior engineer careers and contribute to hiring.

You Have:

  • 8+ years of experience in Detection and/or Response: with a passion for security engineering, threat detection, threat hunting, and incident management.
  • 4+ years of Security Data Engineering experience with streaming pipelines: You've built production grade ETL data processing pipelines end to end using Kafka / PubSub, Spark / Flink, Athena / BigQuery or similar.
  • Software Development (SWE): Mastery building efficient, reliable, CI/CD deployed, scalable systems using programming languages like C, Golang or Java.
  • Engineering experience with SIEM, EDR, NDR, and SOAR technologies: You have on-boarded logs in your sleep and built custom detections/automations for complex environments.
  • Conducted incident response: Structured, mature incident response processes are your vocabulary to swiftly resolve security incidents. Afterwards, you use evidence and data to tell the story and ensure action items are meticulous and complete.
  • Familiarity across multiple domains: Deep understanding of network protocols, operating systems, cloud environments, virtualized hosts, containers, in order to identify potential threats to each.
  • Core security skills: Analytical thinking, crisis management, root cause analysis, and problem-solving, with a meticulous approach to identifying, investigating, and responding to incidents.