1

Senior Detection Engineer Jobs in Alabama (NOW HIRING)

Senior System Engineer

Huntsville, AL · On-site

$103K - $140K/yr

The Senior System Engineer shall have at least 7+ years' experience related to being a system ... IP Networking oIntrusion Detection * Incident Response oIT System Administration * Federal Law ...

Overview Senior MBSE Systems Engineer LOCATION: Huntsville, Alabama JOB STATUS: Full Time CLEARANCE ... detect, track, engage and destroy adversary missiles. Your typical day - Our MDA analysts and ...

Senior MBSE Systems Engineer

Huntsville, AL · On-site

$108K - $148K/yr

Overview Senior MBSE Systems Engineer LOCATION: Huntsville, Alabama JOB STATUS: Full Time CLEARANCE ... detect, track, engage and destroy adversary missiles. Your typical day - Our MDA analysts and ...

Senior Network Engineer

Huntsville, AL · On-site

$102K - $140K/yr

... Intrusion Detection Sensor (IDS)/Intrusion Prevention System (IPS) and access control lists ... Experience providing senior-level engineering support * Large enterprise environment experience

Parsons is looking for an amazingly talented Senior Radar Engineer to join our team! In this role ... Decode radar signal processing techniques and detection algorithms * Characterize radar performance ...

Parsons is looking for an amazingly talented Senior Radar Engineer to join our team! In this role ... Decode radar signal processing techniques and detection algorithms * Characterize radar performance ...

next page

Showing results 1-20

Senior Detection Engineer information

What is the difference between Senior Detection Engineer vs Security Analyst?

AspectSenior Detection EngineerSecurity Analyst
Required CredentialsBachelor's in CS, Cybersecurity, or related; certifications like CISSP, GIACBachelor's in CS, Cybersecurity, or related; certifications like CompTIA Security+
Work EnvironmentDevelops detection tools, analyzes security data, creates detection rulesMonitors security alerts, investigates incidents, reports findings
Employer & Industry UsageTech companies, financial institutions, cybersecurity firmsIT departments, government agencies, large enterprises

While both roles focus on security, Senior Detection Engineers primarily develop and refine detection systems, whereas Security Analysts monitor and respond to security incidents. The Senior Detection Engineer role is more technical and development-oriented, while Security Analysts focus on incident response and analysis.

What are the key skills and qualifications needed to thrive as a senior detection engineer, and why are they important?

To excel as a Senior Detection Engineer, you need advanced knowledge of cybersecurity principles, threat detection methodologies, and experience with incident response, often supported by a degree in computer science or related certifications like CISSP or GIAC. Proficiency in SIEM platforms (such as Splunk or Sentinel), scripting languages (like Python), and EDR/XDR tools is typically required. Strong analytical thinking, problem-solving skills, and effective communication help you collaborate with teams and respond to evolving threats. These capabilities are crucial for proactively identifying and mitigating security risks to protect organizational assets.

What is a senior detection engineer?

A Senior Detection Engineer is a cybersecurity professional responsible for designing, implementing, and maintaining systems that detect threats and malicious activities within an organization's network. They create and refine detection rules, analyze security alerts, and work closely with incident response teams to mitigate risks. Senior Detection Engineers also lead efforts to improve detection capabilities by researching new attack techniques and developing advanced monitoring solutions. Their expertise helps organizations proactively defend against evolving cyber threats.

What are some common challenges a senior detection engineer faces when developing and tuning detection rules?

A Senior Detection Engineer often encounters challenges such as balancing detection accuracy with false positive rates, staying ahead of evolving threat landscapes, and ensuring detection rules adapt to new attack techniques. They must also collaborate closely with other security teams to understand operational impacts and validate the effectiveness of their rules in real-world scenarios. Regular communication, continuous learning, and iterative testing are crucial to overcoming these challenges and maintaining a robust security posture.

How much do detection engineers make?

Detection engineers typically earn a median salary ranging from $90,000 to $130,000 annually, depending on experience, location, and certifications. Senior detection engineers with specialized skills in cybersecurity tools and threat detection may earn higher salaries, often exceeding $150,000.
What are the most commonly searched types of Detection Engineer jobs in Alabama? The most popular types of Detection Engineer jobs in Alabama are:
What job categories do people searching Senior Detection Engineer jobs in Alabama look for? The top searched job categories for Senior Detection Engineer jobs in Alabama are:

Senior Consultant Cyber Engineering

Deloitte

Huntsville, AL • On-site

Other

This job post has expired today. Applications are no longer accepted.


Deloitte rating

8.2

Company rating: 8.2 out of 10

Based on 92 frontline employees who took The Breakroom Quiz

46th of 150 rated financial services


Job description

Are you passionate about technology and interested in joining a community of collaborative colleagues who respectfully and courageously seek to challenge the status quo? If so, read on to learn more about an exciting opportunity with Deloitte Technology US (DT - US). We are curious and life-long learners focused on technology and innovation.

Recruiting for this role ends on 7/31/2026.

Work you'll do

The position supports the SOC as an escalation point identifying and addressing potential SIEM content/level I and II engineering security concerns as this role is the first line of operational support.  This role is also responsible for supporting Security application patching, content creation as requested from all stake holders, and development of process documentation.

Responsibilities by category:

Administrative

  • Maintain ticket management and DevOps activity tracking to ensure accurate work intake, prioritization, and status reporting.
  • Monitor and communicate Microsoft product updates; assess and advise on impacts on the environment and customers.
  • Build strong stakeholder relationships and provide timely end-user support with clear follow-through and resolution documentation.
  • Create and maintain process documentation (runbooks, SOPs, workflows) to support consistent execution and knowledge transfer.
  • Maintain and enforce change control and peer review processes to promote quality, security, and auditability.

Threat Detection

  • Threat detection development in Microsoft Sentinel and Defender platforms sing KQL.
  • Align detection rules to current and emerging threats, leveraging external threat intelligence as appropriate.
  • Identify and remediate detection gaps using the MITRE ATT&CK framework, based on business risk and priorities.
  • Collaborate with Cybersecurity teams (e.g., Incident Response, Threat Intelligence, Engineering) to ensure cross-team alignment and coverage.
  • Develop, tune, and support analytics/detection rules, including performance monitoring and optimization.
  • Develop, maintain, and optimize playbooks/notebooks, including operational reliability and performance.
  • Develop, maintain, and optimize Logic Apps, including operational reliability and performance.
  • Develop, maintain, and optimize workbooks and dashboards to support detection engineering and SOC visibility.
  • Support reporting needs tied to threat detection outcomes, metrics, and operational insights.
  • Define and document required fields per data source to enable effective detection and investigation.
  • Identify and remediate high-cost/expensive detections to improve signal-to-noise ratio and manage platform consumption.

Automation

  • Design, build, and support automation solutions that improve efficiency, consistency, and time-to-response across security operations.

SOC Support & Collaboration

  • Maintain strong SOC partnerships and provide support for SOC inquiries related to the Azure and Microsoft Defender portals, including troubleshooting and operational guidance.

The successful candidate would possess these skills

  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to provide clear guidance to others

The team

Deloitte Technology US (DT - US) helps power Deloitte's success, which serves many of the world's largest, most respected organizations. We develop and deploy cutting-edge internal and go-to-market solutions that help Deloitte operate effectively and lead in the market. Our reputation is built on a tradition of delivering with excellence.

The ~3,000 professionals in DT - US deliver services including:

  • Cyber Security
  • Technology Support
  • Technology & Infrastructure
  • Applications
  • Relationship Management
  • Strategy & Communications
  • Project Management
  • Financials

Cyber Security

Cyber Security vigilantly protects Deloitte and client data. The team leads a strategic cyber risk program that adapts to a rapidly changing threat landscape, changes in business strategies, risks, and vulnerabilities. Using situational awareness, threat intelligence, and building a security culture across the organization, the team helps to protect the Deloitte brand.

Areas of focus include:

  • Risk & Compliance
  • Identity & Access Management
  • Data Protection
  • Cyber Design
  • Threat Detection
  • Incident Response
  • Security Architecture
  • Business Partnership

Qualifications

Required:

  • Bachelor's degree or equivalent in Computer Science, Computer Engineering, Business Administration.
  • Minimum 8 years of various technology experience.
  • Minimum 3 years' cyber security experience within SIEM Administration.
  • Hands-on experience with Microsoft Sentinel, including building and tuning analytics rules, hunting queries, workbooks, automation, and managing the SIEM data model and workspace.
  • Strong KQL proficiency for threat hunting, detection logic, investigation, and telemetry analysis.

Preferred:

  • MS Sentinel SC-200 badge
  • SOAR and automation experience, especially with Azure Logic Apps, playbooks, and integrations with ITSM or third-party APIs.
  • Cloud Fundamental Certificates.
  • Ability to communicate network security issues to peers and lower management.
  • Hands-on experience with Linux, working knowledge of multiple Cloud environments, Azure O365, and SOC processes.
  • An understanding of possible attack activities such as network probing/ scanning, DDOS, malicious code activity and possible abnormal activities, such as worms, Trojans, viruses, etc.

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $97,600 to $200,600.  

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance. 

EA_ExpHire

RITM10703562

Qualifications:

Are you passionate about technology and interested in joining a community of collaborative colleagues who respectfully and courageously seek to challenge the status quo? If so, read on to learn more about an exciting opportunity with Deloitte Technology US (DT - US). We are curious and life-long learners focused on technology and innovation.

Recruiting for this role ends on 7/31/2026.

Work you'll do

The position supports the SOC as an escalation point identifying and addressing potential SIEM content/level I and II engineering security concerns as this role is the first line of operational support.  This role is also responsible for supporting Security application patching, content creation as requested from all stake holders, and development of process documentation.

Responsibilities by category:

Administrative

  • Maintain ticket management and DevOps activity tracking to ensure accurate work intake, prioritization, and status reporting.
  • Monitor and communicate Microsoft product updates; assess and advise on impacts on the environment and customers.
  • Build strong stakeholder relationships and provide timely end-user support with clear follow-through and resolution documentation.
  • Create and maintain process documentation (runbooks, SOPs, workflows) to support consistent execution and knowledge transfer.
  • Maintain and enforce change control and peer review processes to promote quality, security, and auditability.

Threat Detection

  • Threat detection development in Microsoft Sentinel and Defender platforms sing KQL.
  • Align detection rules to current and emerging threats, leveraging external threat intelligence as appropriate.
  • Identify and remediate detection gaps using the MITRE ATT&CK framework, based on business risk and priorities.
  • Collaborate with Cybersecurity teams (e.g., Incident Response, Threat Intelligence, Engineering) to ensure cross-team alignment and coverage.
  • Develop, tune, and support analytics/detection rules, including performance monitoring and optimization.
  • Develop, maintain, and optimize playbooks/notebooks, including operational reliability and performance.
  • Develop, maintain, and optimize Logic Apps, including operational reliability and performance.
  • Develop, maintain, and optimize workbooks and dashboards to support detection engineering and SOC visibility.
  • Support reporting needs tied to threat detection outcomes, metrics, and operational insights.
  • Define and document required fields per data source to enable effective detection and investigation.
  • Identify and remediate high-cost/expensive detections to improve signal-to-noise ratio and manage platform consumption.

Automation

  • Design, build, and support automation solutions that improve efficiency, consistency, and time-to-response across security operations.

SOC Support & Collaboration

  • Maintain strong SOC partnerships and provide support for SOC inquiries related to the Azure and Microsoft Defender portals, including troubleshooting and operational guidance.

The successful candidate would possess these skills

  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to provide clear guidance to others

The team

Deloitte Technology US (DT - US) helps power Deloitte's success, which serves many of the world's largest, most respected organizations. We develop and deploy cutting-edge internal and go-to-market solutions that help Deloitte operate effectively and lead in the market. Our reputation is built on a tradition of delivering with excellence.

The ~3,000 professionals in DT - US deliver services including:

  • Cyber Security
  • Technology Support
  • Technology & Infrastructure
  • Applications
  • Relationship Management
  • Strategy & Communications
  • Project Management
  • Financials

Cyber Security

Cyber Security vigilantly protects Deloitte and client data. The team leads a strategic cyber risk program that adapts to a rapidly changing threat landscape, changes in business strategies, risks, and vulnerabilities. Using situational awareness, threat intelligence, and building a security culture across the organization, the team helps to protect the Deloitte brand.

Areas of focus include:

  • Risk & Compliance
  • Identity & Access Management
  • Data Protection
  • Cyber Design
  • Threat Detection
  • Incident Response
  • Security Architecture
  • Business Partnership

Qualifications

Required:

  • Bachelor's degree or equivalent in Computer Science, Computer Engineering, Business Administration.
  • Minimum 8 years of various technology experience.
  • Minimum 3 years' cyber security experience within SIEM Administration.
  • Hands-on experience with Microsoft Sentinel, including building and tuning analytics rules, hunting queries, workbooks, automation, and managing the SIEM data model and workspace.
  • Strong KQL proficiency for threat hunting, detection logic, investigation, and telemetry analysis.

Preferred:

  • MS Sentinel SC-200 badge
  • SOAR and automation experience, especially with Azure Logic Apps, playbooks, and integrations with ITSM or third-party APIs.
  • Cloud Fundamental Certificates.
  • Ability to communicate network security issues to peers and lower management.
  • Hands-on experience with Linux, working knowledge of multiple Cloud environments, Azure O365, and SOC processes.
  • An understanding of possible attack activities such as network probing/ scanning, DDOS, malicious code activity and possible abnormal activities, such as worms, Trojans, viruses, etc.

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $97,600 to $200,600.  

You may also be eligible to participate in a discretionary annual incentive...


What Deloitte employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom