1

Detection Engineer Jobs in Portland, OR (NOW HIRING)

SIEM Infrastructure and Detection Engineer

Portland, OR · On-site +1

$151K/yr

The SIEM Infrastructure and Detection Engineer supports a federal energy sector cybersecurity program by engineering, maintaining, and optimizing the SIEM infrastructure and security monitoring ...

Partner with SOC analysts, Splunk engineers, security engineers, and threat intelligence analysts to improve detection fidelity and coverage * Support development of repeatable hunt playbooks ...

As an experienced Systems Engineer, you will be an expert in the field of perimeter intrusion detection systems (PIDS), design and integration. We are seeking a Systems Engineer to support design ...

As an experienced Systems Engineer, you will be an expert in the field ofperimeterintrusion detection systems (PIDS),designand integration.We are seeking a Systems Engineer to support design ...

As an experienced Systems Engineer, you will be an expert in the field ofperimeterintrusion detection systems (PIDS),designand integration.We are seeking a Systems Engineer to support design ...

Cloud Security Engineer

Portland, OR · Remote

$40 - $75/hr

Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...

Red Team Engineer

Gresham, OR · Remote

$40 - $75/hr

Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...

Trust & Safety Engineer

Vancouver, WA · Remote

$40 - $75/hr

Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...

Red Team Engineer

Beaverton, OR · Remote

$40 - $75/hr

Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...

Cloud Security Engineer

Vancouver, WA · Remote

$40 - $75/hr

Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...

Cloud Security Engineer

Hillsboro, OR · Remote

$40 - $75/hr

Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...

Trust & Safety Engineer

Gresham, OR · Remote

$40 - $75/hr

Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...

Red Team Engineer

Hillsboro, OR · Remote

$40 - $75/hr

Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...

Trust & Safety Engineer

Portland, OR · Remote

$40 - $75/hr

Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...

Red Team Engineer

Portland, OR · Remote

$40 - $75/hr

Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...

Trust & Safety Engineer

Hillsboro, OR · Remote

$40 - $75/hr

Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...

Red Team Engineer

Vancouver, WA · Remote

$40 - $75/hr

Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...

Trust & Safety Engineer

Beaverton, OR · Remote

$40 - $75/hr

Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...

Cloud Security Engineer

Beaverton, OR · Remote

$40 - $75/hr

Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...

Cloud Security Engineer

Gresham, OR · Remote

$40 - $75/hr

Qualifications: * 2+ years of hands-on experience in a cybersecurity role -- such as penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat ...

next page

Showing results 1-20

Detection Engineer information

What does a Detection Engineer do?

A Detection Engineer is responsible for identifying, analyzing, and mitigating security threats by developing detection rules, monitoring security systems, and responding to potential incidents. They work with security tools like SIEMs, EDRs, and IDS/IPS to detect malicious activity and improve threat detection capabilities. Additionally, they collaborate with security teams to enhance defensive strategies and automate detection processes.

What kind of projects or tasks does a Detection Engineer typically work on?

As a Detection Engineer, you can expect to work on designing, implementing, and refining security detection strategies to identify potential threats and vulnerabilities in company systems. Daily responsibilities often include developing detection logic, analyzing security alerts, conducting threat hunting exercises, and collaborating with incident response teams. You may also work closely with other cybersecurity professionals to evaluate the effectiveness of existing security measures and recommend improvements. This dynamic environment offers opportunities to work on complex technical challenges while directly contributing to the organization’s overall security posture.

What are the key skills and qualifications needed to thrive in the Detection Engineer position, and why are they important?

To thrive as a Detection Engineer, you need strong analytical skills, a solid understanding of cybersecurity principles, and experience with threat detection and response, often supported by a degree in computer science or a related field. Proficiency with security information and event management (SIEM) tools, intrusion detection/prevention systems, and certifications like GIAC or CISSP are commonly required. Attention to detail, proactive problem-solving abilities, and effective communication enhance effectiveness in this role. These skills are crucial as Detection Engineers must accurately identify security threats, collaborate with teams, and minimize potential risks to the organization.

What job categories do people searching Detection Engineer jobs in Portland, OR look for? The top searched job categories for Detection Engineer jobs in Portland, OR are:
What cities near Portland, OR are hiring for Detection Engineer jobs? Cities near Portland, OR with the most Detection Engineer job openings:
Infographic showing various Detection Engineer job openings in Portland, OR as of June 2026, with employment types broken down into 98% Full Time, and 2% Part Time. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution.
SIEM Infrastructure and Detection Engineer

SIEM Infrastructure and Detection Engineer

ECS

Portland, OR • On-site, Remote

$151K/yr

Full-time

Posted 20 days ago


Job description

Everforth ECS is seeking an SIEM Infrastructure and Detection Engineer to join our team in our Portland, OR (Hybrid) office.
The SIEM Infrastructure and Detection Engineer supports a federal energy sector cybersecurity program by engineering, maintaining, and optimizing the SIEM infrastructure and security monitoring platform, including detections, visualizations, dashboards, and reporting. This role ensures the reliability and effectiveness of SIEM and related monitoring tools to meet Information Security Continuous Monitoring (ISCM) and Department of Homeland Security (DHS) Continuous Diagnostics and Mitigation (CDM) requirements. The engineer works directly with security analysts, system owners, and DHS CDM teams to ensure continuous visibility, timely detection, and compliance with federal cybersecurity standards.
Core Capabilities
  • Lead the design, deployment, and monitoring of enterprise SIEM platforms (e.g., Splunk, Elastic Stack)
  • Architect, implement, and maintain integrations with enterprise systems, cloud environments, and security tools (e.g., EDR, IDS/IPS, firewalls, TIP)
  • Develop and optimize dashboards, alerts, and data pipelines
  • Automate platform tasks and SIEM processes using scripting (e.g., Python, PowerShell, bash)
  • Monitor and tune platform performance to ensure high availability and accuracy of security data
  • Troubleshoot and resolve platform-related issues in coordination with analysts and engineers
  • Collaborate with federal stakeholders to align SIEM capabilities with ISCM and CDM reporting requirements
  • Maintain documentation of platform configurations, standard operating procedures, and system baselines

  • U.S. Citizenship with ability to obtain and maintain a DOE "L" clearance
  • Hands-on experience with at least one enterprise SIEM platform (Splunk, Elastic, QRadar, or LogRhythm)
  • Experience integrating SIEM with enterprise IT systems, cloud platforms, or endpoint detection tools
  • Experience onboarding diverse log sources (network, endpoint, cloud, SaaS) and tuning correlation rules
  • Proficiency in scripting (Python, PowerShell, or Bash) for automation and data integration
  • Experience with configuration management tools (e.g., Ansible, Terraform, Chef, Puppet)
  • Experience with Application Control (Carbon Black) and Endpoint Detection and Response platforms (Microsoft Defender, CrowdStrike, Trend Micro)
  • Minimum 5 years of experience in cybersecurity engineering and security monitoring, including 3+ years dedicated to SIEM engineering