1

Detection Engineer Jobs in Connecticut (NOW HIRING)

Senior Security Engineer, IAM

Bridgeport, CT · On-site

$117K - $160K/yr

This engineer owns the architecture, strategy, and operational maturity of AI-enabled identity ... Detection, Response & Threat Context * Lead integration of identity telemetry into the detection ...

Cybersecurity Engineer

Stamford, CT · On-site

$130 - $190/hr

Build monitoring, detection, alerting, and incident response capabilities in partnership with engineering and security operations teams. * Integrate security tooling and automation into CI/CD ...

Collaborating with security operations center (SOC) analysts and threat detection engineers to prioritize, develop, tune, and maintain threat detection rules in Google SecOps to identify malicious ...

Collaborating with security operations center (SOC) analysts and threat detection engineers to prioritize, develop, tune, and maintain threat detection rules in Google SecOps to identify malicious ...

As a Senior Consultant - Cyber Defense and Resilience, you will help deliver security engineering solutions that modernize client security operations across monitoring, detection, response, and ...

Threat Detection and Response: Develop and maintain monitoring systems for detecting and responding ... Mentor cloud security engineers, providing guidance, support, and professional development ...

next page

Showing results 1-20

Detection Engineer information

See Connecticut salary details

$11K

$157K

$193.2K

How much do detection engineer jobs pay per year?

As of Sep 5, 2026, the average yearly pay for detection engineer in Connecticut is $156,963.00, according to ZipRecruiter salary data. Most workers in this role earn between $143,515.00 and $173,121.00 per year, depending on experience, location, and employer.

What does a detection engineer do?

A Detection Engineer is responsible for identifying, analyzing, and mitigating security threats by developing detection rules, monitoring security systems, and responding to potential incidents. They work with security tools like SIEMs, EDRs, and IDS/IPS to detect malicious activity and improve threat detection capabilities. Additionally, they collaborate with security teams to enhance defensive strategies and automate detection processes.

What are the key skills and qualifications needed to thrive as a detection engineer?

To thrive as a Detection Engineer, you need strong analytical skills, a solid understanding of cybersecurity principles, and experience with threat detection and response, often supported by a degree in computer science or a related field. Proficiency with security information and event management (SIEM) tools, intrusion detection/prevention systems, and certifications like GIAC or CISSP are commonly required. Attention to detail, proactive problem-solving abilities, and effective communication enhance effectiveness in this role. These skills are crucial as Detection Engineers must accurately identify security threats, collaborate with teams, and minimize potential risks to the organization.

What kind of projects or tasks does a detection engineer typically work on?

As a Detection Engineer, you can expect to work on designing, implementing, and refining security detection strategies to identify potential threats and vulnerabilities in company systems. Daily responsibilities often include developing detection logic, analyzing security alerts, conducting threat hunting exercises, and collaborating with incident response teams. You may also work closely with other cybersecurity professionals to evaluate the effectiveness of existing security measures and recommend improvements. This dynamic environment offers opportunities to work on complex technical challenges while directly contributing to the organization’s overall security posture.

What are popular job titles related to Detection Engineer jobs in Connecticut?

For Detection Engineer jobs in Connecticut, the most frequently searched job titles are:

What job categories do people searching Detection Engineer jobs in Connecticut look for?

The top searched job categories for Detection Engineer jobs in Connecticut are:

Infographic showing various Detection Engineer job openings in Connecticut as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $156,963 per year, or $75.5 per hour.

Sr. Security Engineer - Cloud Threat Detection

The Hartford

Hartford, CT • Hybrid

$115K - $158K/yr

Full-time

Posted 23 days ago


The Hartford rating

8.8

Company rating: 8.8 out of 10

Based on 122 frontline employees who took The Breakroom Quiz

57th of 315 rated insurance


Job description

Senior Security Engineer - IS07FE

We're determined to make a difference and are proud to be an insurance company that goes well beyond coverages and policies. Working here means having every opportunity to achieve your goals - and to help others accomplish theirs, too. Join our team as we help shape the future.

The Hartford's Information Protection (THIP) organization is seeking a Sr. Security Engineer, Cloud Threat Detection Engineer to design and enhance enterprise-scale cloud threat detection capabilities across AWS and Google Cloud Platform (GCP). This role will develop high-fidelity detections, integrate cloud telemetry into Splunk (RBA) and the enterprise SIEM, and improve visibility into cloud-based threats. The ideal candidate has hands-on experience with AWS GuardDuty, AWS CloudTrail, Google Security Command Center (SCC), Cloud Logging, and other cloud-native security tools, partnering closely with Cloud Operations, Incident Response, Detection Engineering, and SOC teams to strengthen cloud security monitoring and response.

This role will have aHybrid work schedule,with the expectation of working in an office (Columbus, OH, Chicago, IL, Hartford, CT or Charlotte, NC) 3 days a week (Tuesday - Thursday).

Responsibilities

  • Design, develop, test, and deploy detection content focused on AWS and GCP threats and suspicious activity.
  • Integrate and normalize cloud security telemetry from AWS and GCP into the enterprise SIEM platform.
  • Develop detections leveraging data sources including:
    • AWS GuardDuty
    • AWS CloudTrail
    • AWS VPC Flow Logs
    • AWS Config
    • Google Security Command Center (SCC)
    • Google Cloud Audit Logs
    • Google Cloud Logging
    • Identity and Access Management (IAM) telemetry
    • Other 3rd party CSMPs (Orca, CrowdStrike, Wiz)
  • Create and maintain SIEM detections, analytics, risk-based detections, dashboards, assets, identities, and alerting content.
  • Continuously tune and optimize detection logic to reduce false positives while improving detection fidelity and coverage.
  • Map detections to MITRE ATT&CK and cloud-specific attack techniques.
  • Participate in adversary emulation, purple team exercises, and cloud attack simulations to validate detection effectiveness.
  • Develop detection requirements and enrichment strategies to support AI/SOAR automation and incident response workflows.
  • Create and maintain Standard Operating Procedures (SOPs), runbooks, and investigation guides for cloud-based detections and alerts.
  • Train and mentor L1 and L2 SOC analysts on:
    • Cloud attack techniques and tactics
    • Use of cloud-native security tooling
    • Investigation workflows in the SIEM
    • CloudTrail and GCP Audit Log analysis
    • Pivoting from SIEM alerts to AWS and GCP consoles for validation and triage
  • Provide advanced escalation support to the SOC and Incident Response teams during cloud security investigations.
  • Participate in on-call support rotations (approximately 5 weeks annually).

RequiredQualifications

  • 5+ years of cybersecurity experience with direct involvement in security operations, incident response, threat detection, or detection engineering.
  • Hands-on operational experience securing both AWS and Google Cloud Platform (GCP) environments.
  • Strong knowledge of AWS security services and GCP security services.
  • Experience developing and tuning enterprise SIEM detections using cloud telemetry.
  • Experience integrating cloud-native security tools and log sources into enterprise security monitoring platforms such as Splunk Enterprise Security, Microsoft Sentinel, QRadar, Cortex XSIAM, etc.
  • Strong understanding of cloud attack methodologies, identity compromise, privilege escalation, persistence, lateral movement, and data exfiltration techniques.
  • Experience investigating alerts using raw cloud telemetry, including CloudTrail and GCP Audit Logs.
  • Ability to create operational documentation, investigation guides, SOPs, and analyst playbooks.
  • Experience training and mentoring SOC analysts on cloud threat investigation and triage processes.
  • Strong written and verbal communication skills.

Preferred Qualifications

  • Demonstrated experience with Splunk Enterprise Security, SPL, data modeling, Risk-Based Alerting (RBA), dashboard creation, etc.
  • Strong understanding of adversary behavior, MITRE ATT&CK, cyber kill chain, and threat modeling.
  • Experience with SOAR platforms and security automation workflows.
  • Scripting and automation experience using Python, PowerShell, or Bash.
  • Experience supporting multi-cloud security programs.
  • Hands-on threat hunting experience in cloud environments.
  • Exposure to EDR platforms such as CrowdStrike, SentinelOne, or Microsoft Defender XDR for Endpoint

Preferred Certifications

  • AWS Certified Security - Specialty
  • Google Professional Cloud Security Engineer
  • GIAC Cloud Threat Detection (GCTD)
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Cyber Threat Intelligence (GCTI)
  • Splunk Certified Architect or Consultant

Candidate must be authorized to work in the US without company sponsorship.The company will not support the STEM OPT I-983 Training Plan endorsement for this position.

Compensation

The listed annualized base pay range is primarily based on analysis of similar positions in the external market. Actual base pay could vary and may be above or below the listed range based on factors including but not limited to performance, proficiency and demonstration of competencies required for the role. The base pay is just one component of The Hartford's total compensation package for employees. Other rewards may include short-term or annual bonuses, long-term incentives, and on-the-spot recognition. The annualized base pay range for this role is:

$128,400 - $192,600

Equal Opportunity Employer/Sex/Race/Color/Veterans/Disability/Sexual Orientation/Gender Identity or Expression/Religion/Age

About Us|Our Culture|What It's Like to Work Here|Perks & Benefits


What The Hartford employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Hartford logo

About Hartford

Sourced by ZipRecruiter

Hartford Financial Services Group, widely recognized as The Hartford, is a renowned company based in Hartford, CT, US. Established in 1810, it has evolved into an industry leader in the insurance and financial services sector, proudly serving more than one million businesses in the US. The Hartford is committed to offering a gamut of insurance products that include homeowners, automobile, and business insurance as well as employee benefits and mutual funds. The company’s core values revolve around customer-focused innovations, diversity and inclusion, and ethical dealings that have earned them a customer-centric reputation. This shapes their mission which revolves around aiding their clients to overcome unforeseen obstacles and enhancing their wealth over time. Among the company's noted accomplishments is being consistently listed among the World's Most Ethical Companies, a testament to their unwavering commitment towards responsible business practices.

Industry

Finance and insurance

Company size

10,000+ Employees

Headquarters location

Hartford, CT, US

Year founded

1810

Social media