1

Detection Engineer Jobs in Pennsylvania (NOW HIRING)

Conduct detection engineering activities aligned to the MITRE ATT&CK framework and known adversary behaviors. * Analyze threat intelligence, attack techniques, and emerging threats to identify new ...

New

Senior Adversary Emulation Engineer

Philadelphia, PA · On-site

$115K - $158K/yr

This role sits at the intersection of adversary emulation, threat detection engineering, threat hunting, telemetry validation, and purple team operations. The successful candidate will design and ...

New

Senior Security Engineer- GCP

York, PA · Hybrid

$112K - $154K/yr

Engineering preventive and detective controls using automation and infrastructure-as-code (guardrails, baselines, continuous configuration enforcement). * Coordinating with platform and application ...

CSOC & Detection Engineering Collaboration: Serve as the primary liaison between OSFT, CSOC, Threat Detection Engineering, Fraud Detection, and Cyber Threat Intelligence teams. Coordinate ...

next page

Showing results 1-20

Detection Engineer information

See Pennsylvania salary details

$9.9K

$140.7K

$173.2K

How much do detection engineer jobs pay per year?

As of Aug 10, 2026, the average yearly pay for detection engineer in Pennsylvania is $140,722.00, according to ZipRecruiter salary data. Most workers in this role earn between $128,666.00 and $155,209.00 per year, depending on experience, location, and employer.

What does a detection engineer do?

A Detection Engineer is responsible for identifying, analyzing, and mitigating security threats by developing detection rules, monitoring security systems, and responding to potential incidents. They work with security tools like SIEMs, EDRs, and IDS/IPS to detect malicious activity and improve threat detection capabilities. Additionally, they collaborate with security teams to enhance defensive strategies and automate detection processes.

What kind of projects or tasks does a detection engineer typically work on?

As a Detection Engineer, you can expect to work on designing, implementing, and refining security detection strategies to identify potential threats and vulnerabilities in company systems. Daily responsibilities often include developing detection logic, analyzing security alerts, conducting threat hunting exercises, and collaborating with incident response teams. You may also work closely with other cybersecurity professionals to evaluate the effectiveness of existing security measures and recommend improvements. This dynamic environment offers opportunities to work on complex technical challenges while directly contributing to the organization’s overall security posture.

What are the key skills and qualifications needed to thrive as a detection engineer?

To thrive as a Detection Engineer, you need strong analytical skills, a solid understanding of cybersecurity principles, and experience with threat detection and response, often supported by a degree in computer science or a related field. Proficiency with security information and event management (SIEM) tools, intrusion detection/prevention systems, and certifications like GIAC or CISSP are commonly required. Attention to detail, proactive problem-solving abilities, and effective communication enhance effectiveness in this role. These skills are crucial as Detection Engineers must accurately identify security threats, collaborate with teams, and minimize potential risks to the organization.

What job categories do people searching Detection Engineer jobs in Pennsylvania look for? The top searched job categories for Detection Engineer jobs in Pennsylvania are:
Infographic showing various Detection Engineer job openings in Pennsylvania as of August 2026, with employment types broken down into 92% Full Time, 2% Part Time, and 6% Contract. Highlights an 87% Physical, 4% Hybrid, and 9% Remote job distribution, with an average salary of $140,722 per year, or $67.7 per hour.

AI Threat Detection Engineer

Interon IT Solutions

Malvern, PA • On-site

Full-time

Re-posted 10 days ago


Job description

Job Title: Senior AI Threat Detection Engineer
Location: Malvern, PA – Primary | Plano, TX – Secondary Option
Position W2

Job Description

We are seeking a Senior AI Threat Detection Engineer to support Security Operations Center modernization initiatives. The ideal candidate will have strong experience in SOC operations, detection engineering, cloud security, automation, and hands-on programming. This role will focus on developing AI-driven security capabilities, improving threat detection, automating SOC workflows, and building secure, scalable solutions using modern engineering practices.

The consultant will work closely with security engineering, SOC, platform, and cross-functional teams to design and implement AI-enabled solutions that improve incident response, reduce manual effort, and strengthen overall security operations.

Key Responsibilities

  • Lead response efforts for escalated cybersecurity alerts, incidents, and security investigations.

  • Analyze complex attack patterns in real time and recommend effective mitigation strategies.

  • Develop, maintain, and enhance detection logic, alerts, rules, policies, and signatures across security platforms.

  • Support monitoring and detection of cyber threats, vulnerabilities, risks, and threat actor tactics, techniques, and procedures.

  • Build and enhance AI agents to streamline SOC operations and improve analyst efficiency.

  • Design and optimize prompts, workflows, and use cases for LLM-based security solutions.

  • Build APIs, integrations, and automation workflows to support AI-driven threat detection capabilities.

  • Develop clean, maintainable, production-ready code following engineering best practices.

  • Implement safeguards, controls, and responsible AI practices for secure AI usage within security operations.

  • Evaluate emerging AI, GenAI, and automation technologies and recommend improvements for SOC modernization.

  • Collaborate with SOC, security engineering, cloud, platform, and application teams to deliver scalable AI-enabled solutions.

  • Support deployment and continuous improvement of AI agents across SOC use cases.

  • Mentor junior team members and help improve overall technical capability within the team.

  • Participate in special security projects and support additional responsibilities as needed.

Required Qualifications

  • 4+ years of hands-on programming or scripting experience using Python, Java, Shell, or similar languages.

  • 5+ years of experience working with cloud platforms such as AWS or Microsoft Azure.

  • 4+ years of experience building or supporting automation solutions such as SOAR, GitHub workflows, CI/CD automation, or similar platforms.

  • 4+ years of experience working with security technologies or supporting SOC/security operations.

  • 5+ years of exposure to SIEM platforms, detection engineering, or security monitoring concepts.

  • Strong understanding of security telemetry, including logs, alerts, endpoint data, network data, and cloud security data.

  • Experience supporting incident response, threat detection, alert tuning, and security investigation workflows.

  • Exposure to AI, GenAI, LLM-based solutions, or AI agent development.

  • Strong API integration, automation, and workflow development experience.

  • Ability to work with cross-functional teams and communicate technical findings clearly.

Preferred Skills

  • Hands-on experience developing AI or GenAI solutions for cybersecurity use cases.

  • Experience with prompt engineering, AI agents, and LLM-based workflow automation.

  • Experience with SOAR platforms and security orchestration.

  • Knowledge of MITRE ATT&CK, threat actor TTPs, and modern detection engineering practices.

  • Experience with cloud security monitoring, security data pipelines, and scalable automation frameworks.

  • Strong understanding of responsible AI, security controls, and risk mitigation for AI-based systems.

Ideal Candidate

The ideal candidate is a senior-level security engineer with strong programming, cloud, automation, and SOC experience. They should be comfortable building AI-driven security solutions, working with security telemetry, improving detection workflows, and collaborating with engineering teams to deliver production-ready capabilities.