Maintain ticket management and DevOps activity tracking to ensure accurate work intake ... Threat detection development in Microsoft Sentinel and Defender platforms sing KQL. * Align ...
Maintain ticket management and DevOps activity tracking to ensure accurate work intake ... Threat detection development in Microsoft Sentinel and Defender platforms sing KQL. * Align ...
Manager, Security Operations
$129K - $188K/yr
Lead detection engineering, threat hunting, and response improvements * Own and optimize SIEM, SOAR, EDR/XDR, and threat intelligence platforms * Develop incident response plans, playbooks, and ...
Manager, Security Operations
$129K - $188K/yr
Lead detection engineering, threat hunting, and response improvements * Own and optimize SIEM, SOAR, EDR/XDR, and threat intelligence platforms * Develop incident response plans, playbooks, and ...
Why be just a "Security Analyst", "Detection Developer" , or "Security Engineer" when you can be all three? As a GreyMatter Specialist, you will do all of that and more. This role is uniquely ...
Why be just a "Security Analyst", "Detection Developer" , or "Security Engineer" when you can be all three? As a GreyMatter Specialist, you will do all of that and more. This role is uniquely ...
Drive continuous improvement of threat detection engineering, including SIEM rule tuning, EDR/XDR configuration, threat intelligence integration, and behavioral analytics * Collaborate with SOC ...
New
Quick apply
Drive continuous improvement of threat detection engineering, including SIEM rule tuning, EDR/XDR configuration, threat intelligence integration, and behavioral analytics * Collaborate with SOC ...
New
GreyMatter Specialist
Las Vegas, NV · On-site
Why be just a "Security Analyst", "Detection Developer" , or "Security Engineer" when you can be all three? As a GreyMatter Specialist, you will do all of that and more. This role is uniquely ...
GreyMatter Specialist
Las Vegas, NV · On-site
Why be just a "Security Analyst", "Detection Developer" , or "Security Engineer" when you can be all three? As a GreyMatter Specialist, you will do all of that and more. This role is uniquely ...
Cyber Security Engineer
Las Vegas, NV · On-site
Incident Response Engineering - Build and refine detection rules, automation workflows, and response playbooks; support investigations led by the CIO and IT leadership. * Cloud Security - Implement ...
Cyber Security Engineer
Las Vegas, NV · On-site
Incident Response Engineering - Build and refine detection rules, automation workflows, and response playbooks; support investigations led by the CIO and IT leadership. * Cloud Security - Implement ...
Preferred: * Familiarity with cybersecurity concepts (e.g., application security, cloud security, identity, detection engineering). * Experience with DevSecOps practices and secure software ...
Preferred: * Familiarity with cybersecurity concepts (e.g., application security, cloud security, identity, detection engineering). * Experience with DevSecOps practices and secure software ...
Cyber Security Engineer
Las Vegas, NV · Hybrid
Incident Response Engineering - Build and refine detection rules, automation workflows, and response playbooks; support investigations led by the CIO and IT leadership. Cloud Security - Implement ...
Cyber Security Engineer
Las Vegas, NV · Hybrid
Incident Response Engineering - Build and refine detection rules, automation workflows, and response playbooks; support investigations led by the CIO and IT leadership. Cloud Security - Implement ...
Enhance Detection Capabilities Drive continuous improvement of threat detection engineering, including tuning of SIEM rules, EDR/XDR configurations, threat intelligence integration, and behavioral ...
Enhance Detection Capabilities Drive continuous improvement of threat detection engineering, including tuning of SIEM rules, EDR/XDR configurations, threat intelligence integration, and behavioral ...
Senior Cyber Defense Manager - Incident Response
$106K - $143K/yr
Enhance Detection Capabilities * Drive continuous improvement of threat detection engineering, including tuning of SIEM rules, EDR/XDR configurations, threat intelligence integration, and behavioral ...
Senior Cyber Defense Manager - Incident Response
$106K - $143K/yr
Enhance Detection Capabilities * Drive continuous improvement of threat detection engineering, including tuning of SIEM rules, EDR/XDR configurations, threat intelligence integration, and behavioral ...
Senior Cyber Defense Manager - Incident Response
$106K - $143K/yr
Enhance Detection Capabilities * Drive continuous improvement of threat detection engineering, including tuning of SIEM rules, EDR/XDR configurations, threat intelligence integration, and behavioral ...
Quick apply
Senior Cyber Defense Manager - Incident Response
$106K - $143K/yr
Enhance Detection Capabilities * Drive continuous improvement of threat detection engineering, including tuning of SIEM rules, EDR/XDR configurations, threat intelligence integration, and behavioral ...
Enhance Detection Capabilities * Drive continuous improvement of threat detection engineering, including tuning of SIEM rules, EDR/XDR configurations, threat intelligence integration, and behavioral ...
Enhance Detection Capabilities * Drive continuous improvement of threat detection engineering, including tuning of SIEM rules, EDR/XDR configurations, threat intelligence integration, and behavioral ...
Systems Design Engineer, Factory Systems Modeling
Mccarran, NV · On-site
$102K - $140K/yr
Systems Design Engineer, Factory Systems Modeling We are seeking a Systems Design Engineer to ... Integrate live factory data into models to detect equipment anomalies * Optimize plant efficiency ...
Systems Design Engineer, Factory Systems Modeling
Mccarran, NV · On-site
$102K - $140K/yr
Systems Design Engineer, Factory Systems Modeling We are seeking a Systems Design Engineer to ... Integrate live factory data into models to detect equipment anomalies * Optimize plant efficiency ...
Paid Holidays Alarm & Detection Technician This position requires the ability to service, repair ... Performing on-site emergency troubleshooting, programming, and repairs of our customers fire alarm ...
Paid Holidays Alarm & Detection Technician This position requires the ability to service, repair ... Performing on-site emergency troubleshooting, programming, and repairs of our customers fire alarm ...
Preferred: * Familiarity with cybersecurity concepts (e.g., application security, cloud security, identity, detection engineering). * Experience with DevSecOps practices and secure software ...
Preferred: * Familiarity with cybersecurity concepts (e.g., application security, cloud security, identity, detection engineering). * Experience with DevSecOps practices and secure software ...
Lead Artificial Intelligence Engineer
$99K - $130K/yr
This role focuses on building scalable, explainable, and compliant AI models for fraud detection ... Implement data pipelines, feature engineering, and model inference services. * Deploy and monitor ...
Lead Artificial Intelligence Engineer
$99K - $130K/yr
This role focuses on building scalable, explainable, and compliant AI models for fraud detection ... Implement data pipelines, feature engineering, and model inference services. * Deploy and monitor ...
Lead Artificial Intelligence Engineer
Las Vegas, NV · On-site
$99K - $130K/yr
This role focuses on building scalable, explainable, and compliant AI models for fraud detection ... Implement data pipelines, feature engineering, and model inference services. * Deploy and monitor ...
Lead Artificial Intelligence Engineer
Las Vegas, NV · On-site
$99K - $130K/yr
This role focuses on building scalable, explainable, and compliant AI models for fraud detection ... Implement data pipelines, feature engineering, and model inference services. * Deploy and monitor ...
Lead Artificial Intelligence Engineer
$99K - $130K/yr
This role focuses on building scalable, explainable, and compliant AI models for fraud detection ... Implement data pipelines, feature engineering, and model inference services. * Deploy and monitor ...
Lead Artificial Intelligence Engineer
$99K - $130K/yr
This role focuses on building scalable, explainable, and compliant AI models for fraud detection ... Implement data pipelines, feature engineering, and model inference services. * Deploy and monitor ...
Lead Artificial Intelligence Engineer
$99K - $130K/yr
This role focuses on building scalable, explainable, and compliant AI models for fraud detection ... Implement data pipelines, feature engineering, and model inference services. * Deploy and monitor ...
Quick apply
Lead Artificial Intelligence Engineer
$99K - $130K/yr
This role focuses on building scalable, explainable, and compliant AI models for fraud detection ... Implement data pipelines, feature engineering, and model inference services. * Deploy and monitor ...
Senior SOC Analyst - Weekends
Sparks, NV · On-site
Engineer, test, and deploy new detection logic, alerting mechanisms, behavioral analytics, and ATT&CK-aligned use cases. * Identify control gaps and collaborate with platform owners to implement both ...
Senior SOC Analyst - Weekends
Sparks, NV · On-site
Engineer, test, and deploy new detection logic, alerting mechanisms, behavioral analytics, and ATT&CK-aligned use cases. * Identify control gaps and collaborate with platform owners to implement both ...
Detection Engineer information
See Nevada salary details
$11.6K - $29.1K
0% of jobs
$29.1K - $46.5K
0% of jobs
$46.5K - $64K
0% of jobs
$64K - $81.4K
0% of jobs
$81.4K - $98.9K
0% of jobs
$98.9K - $116.3K
0% of jobs
$116.3K - $133.7K
22% of jobs
$147.9K is the 25th percentile. Wages below this are outliers.
$133.7K - $151.2K
4% of jobs
The median wage is $166.4K / yr.
$151.2K - $168.6K
28% of jobs
$180K is the 75th percentile. Wages above this are outliers.
$168.6K - $186.1K
33% of jobs
$186.1K - $203.5K
13% of jobs
$11.6K
$165.4K
$203.5K
How much do detection engineer jobs pay per year?
What does a Detection Engineer do?
A Detection Engineer is responsible for identifying, analyzing, and mitigating security threats by developing detection rules, monitoring security systems, and responding to potential incidents. They work with security tools like SIEMs, EDRs, and IDS/IPS to detect malicious activity and improve threat detection capabilities. Additionally, they collaborate with security teams to enhance defensive strategies and automate detection processes.
What kind of projects or tasks does a Detection Engineer typically work on?
As a Detection Engineer, you can expect to work on designing, implementing, and refining security detection strategies to identify potential threats and vulnerabilities in company systems. Daily responsibilities often include developing detection logic, analyzing security alerts, conducting threat hunting exercises, and collaborating with incident response teams. You may also work closely with other cybersecurity professionals to evaluate the effectiveness of existing security measures and recommend improvements. This dynamic environment offers opportunities to work on complex technical challenges while directly contributing to the organization’s overall security posture.
What are the key skills and qualifications needed to thrive in the Detection Engineer position, and why are they important?
To thrive as a Detection Engineer, you need strong analytical skills, a solid understanding of cybersecurity principles, and experience with threat detection and response, often supported by a degree in computer science or a related field. Proficiency with security information and event management (SIEM) tools, intrusion detection/prevention systems, and certifications like GIAC or CISSP are commonly required. Attention to detail, proactive problem-solving abilities, and effective communication enhance effectiveness in this role. These skills are crucial as Detection Engineers must accurately identify security threats, collaborate with teams, and minimize potential risks to the organization.

Deloitte rating
8.1
Based on 91 frontline employees who took The Breakroom Quiz
58th of 150 rated financial services
Job description
Are you passionate about technology and interested in joining a community of collaborative colleagues who respectfully and courageously seek to challenge the status quo? If so, read on to learn more about an exciting opportunity with Deloitte Technology US (DT - US). We are curious and life-long learners focused on technology and innovation.
Recruiting for this role ends on 7/31/2026.
Work you'll do
The position supports the SOC as an escalation point identifying and addressing potential SIEM content/level I and II engineering security concerns as this role is the first line of operational support. This role is also responsible for supporting Security application patching, content creation as requested from all stake holders, and development of process documentation.
Responsibilities by category:
Administrative
- Maintain ticket management and DevOps activity tracking to ensure accurate work intake, prioritization, and status reporting.
- Monitor and communicate Microsoft product updates; assess and advise on impacts on the environment and customers.
- Build strong stakeholder relationships and provide timely end-user support with clear follow-through and resolution documentation.
- Create and maintain process documentation (runbooks, SOPs, workflows) to support consistent execution and knowledge transfer.
- Maintain and enforce change control and peer review processes to promote quality, security, and auditability.
Threat Detection
- Threat detection development in Microsoft Sentinel and Defender platforms sing KQL.
- Align detection rules to current and emerging threats, leveraging external threat intelligence as appropriate.
- Identify and remediate detection gaps using the MITRE ATT&CK framework, based on business risk and priorities.
- Collaborate with Cybersecurity teams (e.g., Incident Response, Threat Intelligence, Engineering) to ensure cross-team alignment and coverage.
- Develop, tune, and support analytics/detection rules, including performance monitoring and optimization.
- Develop, maintain, and optimize playbooks/notebooks, including operational reliability and performance.
- Develop, maintain, and optimize Logic Apps, including operational reliability and performance.
- Develop, maintain, and optimize workbooks and dashboards to support detection engineering and SOC visibility.
- Support reporting needs tied to threat detection outcomes, metrics, and operational insights.
- Define and document required fields per data source to enable effective detection and investigation.
- Identify and remediate high-cost/expensive detections to improve signal-to-noise ratio and manage platform consumption.
Automation
- Design, build, and support automation solutions that improve efficiency, consistency, and time-to-response across security operations.
SOC Support & Collaboration
- Maintain strong SOC partnerships and provide support for SOC inquiries related to the Azure and Microsoft Defender portals, including troubleshooting and operational guidance.
The successful candidate would possess these skills
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to provide clear guidance to others
The team
Deloitte Technology US (DT - US) helps power Deloitte's success, which serves many of the world's largest, most respected organizations. We develop and deploy cutting-edge internal and go-to-market solutions that help Deloitte operate effectively and lead in the market. Our reputation is built on a tradition of delivering with excellence.
The ~3,000 professionals in DT - US deliver services including:
- Cyber Security
- Technology Support
- Technology & Infrastructure
- Applications
- Relationship Management
- Strategy & Communications
- Project Management
- Financials
Cyber Security
Cyber Security vigilantly protects Deloitte and client data. The team leads a strategic cyber risk program that adapts to a rapidly changing threat landscape, changes in business strategies, risks, and vulnerabilities. Using situational awareness, threat intelligence, and building a security culture across the organization, the team helps to protect the Deloitte brand.
Areas of focus include:
- Risk & Compliance
- Identity & Access Management
- Data Protection
- Cyber Design
- Threat Detection
- Incident Response
- Security Architecture
- Business Partnership
Qualifications
Required:
- Bachelor's degree or equivalent in Computer Science, Computer Engineering, Business Administration.
- Minimum 8 years of various technology experience.
- Minimum 3 years' cyber security experience within SIEM Administration.
- Hands-on experience with Microsoft Sentinel, including building and tuning analytics rules, hunting queries, workbooks, automation, and managing the SIEM data model and workspace.
- Strong KQL proficiency for threat hunting, detection logic, investigation, and telemetry analysis.
Preferred:
- MS Sentinel SC-200 badge
- SOAR and automation experience, especially with Azure Logic Apps, playbooks, and integrations with ITSM or third-party APIs.
- Cloud Fundamental Certificates.
- Ability to communicate network security issues to peers and lower management.
- Hands-on experience with Linux, working knowledge of multiple Cloud environments, Azure O365, and SOC processes.
- An understanding of possible attack activities such as network probing/ scanning, DDOS, malicious code activity and possible abnormal activities, such as worms, Trojans, viruses, etc.
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $97,600 to $200,600.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
EA_ExpHire
RITM10703562
Qualifications:Are you passionate about technology and interested in joining a community of collaborative colleagues who respectfully and courageously seek to challenge the status quo? If so, read on to learn more about an exciting opportunity with Deloitte Technology US (DT - US). We are curious and life-long learners focused on technology and innovation.
Recruiting for this role ends on 7/31/2026.
Work you'll do
The position supports the SOC as an escalation point identifying and addressing potential SIEM content/level I and II engineering security concerns as this role is the first line of operational support. This role is also responsible for supporting Security application patching, content creation as requested from all stake holders, and development of process documentation.
Responsibilities by category:
Administrative
- Maintain ticket management and DevOps activity tracking to ensure accurate work intake, prioritization, and status reporting.
- Monitor and communicate Microsoft product updates; assess and advise on impacts on the environment and customers.
- Build strong stakeholder relationships and provide timely end-user support with clear follow-through and resolution documentation.
- Create and maintain process documentation (runbooks, SOPs, workflows) to support consistent execution and knowledge transfer.
- Maintain and enforce change control and peer review processes to promote quality, security, and auditability.
Threat Detection
- Threat detection development in Microsoft Sentinel and Defender platforms sing KQL.
- Align detection rules to current and emerging threats, leveraging external threat intelligence as appropriate.
- Identify and remediate detection gaps using the MITRE ATT&CK framework, based on business risk and priorities.
- Collaborate with Cybersecurity teams (e.g., Incident Response, Threat Intelligence, Engineering) to ensure cross-team alignment and coverage.
- Develop, tune, and support analytics/detection rules, including performance monitoring and optimization.
- Develop, maintain, and optimize playbooks/notebooks, including operational reliability and performance.
- Develop, maintain, and optimize Logic Apps, including operational reliability and performance.
- Develop, maintain, and optimize workbooks and dashboards to support detection engineering and SOC visibility.
- Support reporting needs tied to threat detection outcomes, metrics, and operational insights.
- Define and document required fields per data source to enable effective detection and investigation.
- Identify and remediate high-cost/expensive detections to improve signal-to-noise ratio and manage platform consumption.
Automation
- Design, build, and support automation solutions that improve efficiency, consistency, and time-to-response across security operations.
SOC Support & Collaboration
- Maintain strong SOC partnerships and provide support for SOC inquiries related to the Azure and Microsoft Defender portals, including troubleshooting and operational guidance.
The successful candidate would possess these skills
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to provide clear guidance to others
The team
Deloitte Technology US (DT - US) helps power Deloitte's success, which serves many of the world's largest, most respected organizations. We develop and deploy cutting-edge internal and go-to-market solutions that help Deloitte operate effectively and lead in the market. Our reputation is built on a tradition of delivering with excellence.
The ~3,000 professionals in DT - US deliver services including:
- Cyber Security
- Technology Support
- Technology & Infrastructure
- Applications
- Relationship Management
- Strategy & Communications
- Project Management
- Financials
Cyber Security
Cyber Security vigilantly protects Deloitte and client data. The team leads a strategic cyber risk program that adapts to a rapidly changing threat landscape, changes in business strategies, risks, and vulnerabilities. Using situational awareness, threat intelligence, and building a security culture across the organization, the team helps to protect the Deloitte brand.
Areas of focus include:
- Risk & Compliance
- Identity & Access Management
- Data Protection
- Cyber Design
- Threat Detection
- Incident Response
- Security Architecture
- Business Partnership
Qualifications
Required:
- Bachelor's degree or equivalent in Computer Science, Computer Engineering, Business Administration.
- Minimum 8 years of various technology experience.
- Minimum 3 years' cyber security experience within SIEM Administration.
- Hands-on experience with Microsoft Sentinel, including building and tuning analytics rules, hunting queries, workbooks, automation, and managing the SIEM data model and workspace.
- Strong KQL proficiency for threat hunting, detection logic, investigation, and telemetry analysis.
Preferred:
- MS Sentinel SC-200 badge
- SOAR and automation experience, especially with Azure Logic Apps, playbooks, and integrations with ITSM or third-party APIs.
- Cloud Fundamental Certificates.
- Ability to communicate network security issues to peers and lower management.
- Hands-on experience with Linux, working knowledge of multiple Cloud environments, Azure O365, and SOC processes.
- An understanding of possible attack activities such as network probing/ scanning, DDOS, malicious code activity and possible abnormal activities, such as worms, Trojans, viruses, etc.
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $97,600 to $200,600.
You may also be eligible to participate in a discretionary annual incentive...