1

Senior Threat Detection Engineer Jobs (NOW HIRING)

Lead Threat Detection Engineer

Irving, TX · On-site +1

$139K - $231K/yr

McKesson's Lead Threat Detection Engineer will be a member of our global cyber threat intelligence, incident response, analytics, and engineering team responsible for advancing our detection ...

Sr Threat Hunt Engineer

Milwaukee, WI

$112K - $154K/yr

The Senior Threat Hunt Engineer is an advanced and highly trusted role supporting the enterprise ... Partner with detection engineering to translate hunt findings into production rules and analytics.

Showing results 21-40

Senior Threat Detection Engineer information

See salary details

$59.5K

$126.6K

$183.5K

How much do senior threat detection engineer jobs pay per year?

As of Sep 8, 2026, the average yearly pay for senior threat detection engineer in the United States is $126,557.00, according to ZipRecruiter salary data. Most workers in this role earn between $104,500.00 and $143,500.00 per year, depending on experience, location, and employer.

What does a senior threat detection engineer do?

A Senior Threat Detection Engineer is responsible for designing, implementing, and maintaining systems that identify and respond to cybersecurity threats within an organization's network. They analyze security alerts, develop detection logic, and work closely with incident response teams to mitigate risks. Their role often includes researching emerging threats, improving detection capabilities, and mentoring junior engineers. By proactively identifying potential security breaches, they help safeguard sensitive information and ensure the organization’s cyber resilience.

How does a senior threat detection engineer typically collaborate with other teams to enhance organizational security?

A Senior Threat Detection Engineer works closely with security operations, incident response, IT, and development teams to identify and mitigate threats. This often involves sharing intelligence, developing detection rules, and coordinating responses to security incidents. Regular collaboration ensures that detection strategies align with evolving threats and organizational priorities, fostering a proactive security posture. Effective communication and teamwork are essential, as these engineers often lead efforts to improve detection capabilities and mentor junior staff.

What are the key skills and qualifications needed to thrive as a senior threat detection engineer, and why are they important?

A Senior Threat Detection Engineer requires deep expertise in cybersecurity, threat analysis, and incident response, often backed by a degree in computer science or a related field and industry certifications like CISSP or GIAC. Proficiency with SIEM platforms (such as Splunk or QRadar), EDR solutions, scripting languages, and threat intelligence tools is crucial. Strong analytical thinking, problem-solving abilities, and effective communication skills distinguish top performers in this role. These competencies ensure accurate threat identification, swift mitigation, and robust organizational security in an ever-evolving threat landscape.

What is the difference between Senior Threat Detection Engineer vs Security Analyst?

AspectSenior Threat Detection EngineerSecurity Analyst
CertificationsGICSP, CISSP, GIAC certificationsCompTIA Security+, GIAC certifications
Work EnvironmentAdvanced threat detection, incident response, security architectureMonitoring, analyzing security alerts, reporting
Industry UsageUsed in cybersecurity teams focusing on threat detection and responseUsed across organizations for security monitoring and analysis

While both roles focus on cybersecurity, the Senior Threat Detection Engineer primarily develops and implements advanced detection strategies and handles complex incident responses. The Security Analyst monitors security alerts and performs initial analysis. The Senior Threat Detection Engineer typically requires more technical expertise and experience in threat hunting, whereas Security Analysts focus on alert management and reporting.

More about Senior Threat Detection Engineer jobs

What cities are hiring for Senior Threat Detection Engineer jobs?

Cities with the most Senior Threat Detection Engineer job openings:

What are the most commonly searched types of Threat Detection Engineer jobs?

The most popular types of Threat Detection Engineer jobs are:

What states have the most Senior Threat Detection Engineer jobs?

States with the most job openings for Senior Threat Detection Engineer jobs include:

Infographic showing various Senior Threat Detection Engineer job openings in the United States as of August 2026, with employment types broken down into 93% Full Time, 3% Part Time, and 4% Contract. Highlights an 86% Physical, 5% Hybrid, and 9% Remote job distribution, with an average salary of $126,557 per year, or $60.8 per hour.

Lead Threat Detection Engineer

McKesson Corporation

Irving, TX • On-site, Remote

$139K - $231K/yr

Full-time

Re-posted 10 days ago


McKesson rating

8.0

Company rating: 8.0 out of 10

Based on 211 frontline employees who took The Breakroom Quiz

43rd of 86 rated pharmaceutical


Job description

McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve - we care.
What you do at McKesson matters. We foster a culture where you can grow, make an impact, and are empowered to bring new ideas. Together, we thrive as we shape the future of health for patients, our communities, and our people. If you want to be part of tomorrow's health today, we want to hear from you.
McKesson's Lead Threat Detection Engineer will be a member of our global cyber threat intelligence, incident response, analytics, and engineering team responsible for advancing our detection capabilities and tools. This team is responsible for building detection content, enabling integration, automation, enrichment, and performance of alerts. This role enables speed, quality, and coverage of threats for security operations and reduces risk to McKesson business operations.
Position Description/Responsibilities
  • Mature from a manual detection practice to a modern, automated, and standardized Detection-as-Code practice and infrastructure.
  • Develop use-cases based on intelligence, red team results, and incident data
  • Develop IOC workflows and a feedback loop for the Threat Intel Platform (TIP)
  • Write detection and correlation rules to identify threats across our stack
  • Assist in onboarding logs and identifying gaps in logs or alert results
  • Develop a deep understanding of data models, macros, indexes, sources, and field alias and the technology foundation our detection stack is built
  • Understand data schema/API standards, automation, and messaging systems
  • Bring a metrics-driven mindset to our rules, signals (IOCs), and alerts

Critical Requirements
  • Prioritize detection use-case and scope and create a logical rule
  • Ability to prioritize decisions to either write a rule and/or tune a tool/policy
  • Practical experience with threat Actor tracking, tactics, tools, and techniques and working closely with Intel, SOC, and Red Teams (Purple Teams)
  • Ability to measure detection coverage across common frameworks (e.g. NIST CSF, MITRE, KC) and simplify rules and configurations to optimize alerts
  • Ability to automate tasks via scripting, automating inputs and outputs of APIs, and programming skills such as python to enable detection engineering tasks
  • Exceptional interpersonal, organizational, and communication skills and ability to internalize and exemplify Mckesson core values.
  • Splunk SPL knowledge and SIEM experience or additional SIEM background

Following Qualifications would be advantageous:
  • 10+ years of professional experience in two or more domains, including: detection engineering, data engineering, incident response, threat hunting, threat intelligence.
  • Bachelor's degree in computer science, Information Security, Security Engineering, Statistics, or Data Science
  • Chronicle Experience, Splunk Certifications (1,2), Automation certifications (Security with Python SEC573), Sigma Rules

We are proud to offer a competitive compensation package at McKesson as part of our Total Rewards. This is determined by several factors, including performance, experience and skills, equity, regular job market evaluations, and geographical markets. The pay range shown below is aligned with McKesson's pay philosophy, and pay will always be compliant with any applicable regulations. In addition to base pay, other compensation, such as an annual bonus or long-term incentive opportunities may be offered. For more information regarding benefits at McKesson, please click here.
Our Base Pay Range for this position
$139,000 - $231,600
McKesson is an Equal Opportunity Employer
McKesson provides equal employment opportunities to applicants and employees and is committed to a diverse and inclusive environment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age or genetic information. For additional information on McKesson's full Equal Employment Opportunity policies, visit our Equal Employment Opportunity page.
Join us at McKesson!

What McKesson employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom