The Manager, Threat Detection Engineering leads a team of threat detection engineers within the Vanguard CSOC, responsible for the strategy, execution, and continuous maturation of the organization ...
The Manager, Threat Detection Engineering leads a team of threat detection engineers within the Vanguard CSOC, responsible for the strategy, execution, and continuous maturation of the organization ...
Threat Detection Engineer
Sarasota, FL ยท On-site
Tenex is seeking a highly motivated and skilled Threat Detection Engineer to join our growing Security Operations team. In this critical role, you will be responsible for proactively identifying and ...
Threat Detection Engineer
Sarasota, FL ยท On-site
Tenex is seeking a highly motivated and skilled Threat Detection Engineer to join our growing Security Operations team. In this critical role, you will be responsible for proactively identifying and ...
Manager, Threat Detection Engineer
Washington, DC ยท On-site
$160 - $180/hr
## Manager, Threat Detection EngineerApplyremote type: Hybridlocations: Washington, DCtime type: Full timeposted on: Posted Todayjob requisition id: R-00213**Position Summary**The Threat Detection ...
Manager, Threat Detection Engineer
Washington, DC ยท On-site
$160 - $180/hr
## Manager, Threat Detection EngineerApplyremote type: Hybridlocations: Washington, DCtime type: Full timeposted on: Posted Todayjob requisition id: R-00213**Position Summary**The Threat Detection ...
The Manager, Threat Detection Engineering leads a team of threat detection engineers within the Vanguard CSOC, responsible for the strategy, execution, and continuous maturation of the organization ...
The Manager, Threat Detection Engineering leads a team of threat detection engineers within the Vanguard CSOC, responsible for the strategy, execution, and continuous maturation of the organization ...
The Threat Detection Engineer chooses among AI-assisted methods, deterministic automation and process changes based on the problem, risk and expected value. This is a hands-on technical leadership ...
The Threat Detection Engineer chooses among AI-assisted methods, deterministic automation and process changes based on the problem, risk and expected value. This is a hands-on technical leadership ...
The Threat Detection Engineer chooses among AI-assisted methods, deterministic automation and process changes based on the problem, risk and expected value. This is a hands-on technical leadership ...
The Threat Detection Engineer chooses among AI-assisted methods, deterministic automation and process changes based on the problem, risk and expected value. This is a hands-on technical leadership ...
Manager, Threat Detection Engineer
Washington, DC ยท On-site
$160 - $180/hr
The Threat Detection Engineer chooses among AIโassisted methods, deterministic automation and process changes based on the problem, risk and expected value. This is a handsโon technical ...
Manager, Threat Detection Engineer
Washington, DC ยท On-site
$160 - $180/hr
The Threat Detection Engineer chooses among AIโassisted methods, deterministic automation and process changes based on the problem, risk and expected value. This is a handsโon technical ...
Senior Threat Detection Engineer
Bellevue, WA ยท On-site
$128K - $176K/yr
As a Senior Threat Detection Engineer, you will take ownership of technical areas, leading initiatives to enhance threat detection and collaborate across teams to ensure security for Salesforce ...
Senior Threat Detection Engineer
Bellevue, WA ยท On-site
$128K - $176K/yr
As a Senior Threat Detection Engineer, you will take ownership of technical areas, leading initiatives to enhance threat detection and collaborate across teams to ensure security for Salesforce ...
Manager, Threat Detection Engineer
Washington, DC ยท On-site
$140 - $190/hr
Translate the Threat Detection and Intelligence strategy into an actionable roadmap and prioritized backlog * Build partnerships across incident response, vulnerability management, engineering ...
Manager, Threat Detection Engineer
Washington, DC ยท On-site
$140 - $190/hr
Translate the Threat Detection and Intelligence strategy into an actionable roadmap and prioritized backlog * Build partnerships across incident response, vulnerability management, engineering ...
AI Threat Detection Engineer
Malvern, PA ยท On-site
Senior AI Threat Detection Engineer Location: Malvern, PA - Primary | Plano, TX - Secondary Option Position W2 We are seeking a Senior AI Threat Detection Engineer to support Security Operations ...
Quick apply
AI Threat Detection Engineer
Malvern, PA ยท On-site
Senior AI Threat Detection Engineer Location: Malvern, PA - Primary | Plano, TX - Secondary Option Position W2 We are seeking a Senior AI Threat Detection Engineer to support Security Operations ...
As a Threat Detection & Automation Engineer, you will enable end-to-end detection engineering across telemetry onboarding, detection content development, response automation, and threat reporting ...
As a Threat Detection & Automation Engineer, you will enable end-to-end detection engineering across telemetry onboarding, detection content development, response automation, and threat reporting ...
Senior Threat Detection Engineer
$129K - $177K/yr
As a Senior Threat Detection Engineer, you will take on complete ownership of a technical area, responsible for delivering all necessary research and features to achieve our team's goals in that area.
Senior Threat Detection Engineer
$129K - $177K/yr
As a Senior Threat Detection Engineer, you will take on complete ownership of a technical area, responsible for delivering all necessary research and features to achieve our team's goals in that area.
The Cybersecurity Threat Detection & Automation Manager will lead a team responsible for designing, developing, automating, tuning, and continuously improving advanced threat detection and response ...
The Cybersecurity Threat Detection & Automation Manager will lead a team responsible for designing, developing, automating, tuning, and continuously improving advanced threat detection and response ...
Cybersecurity Threat Detection & Automation Manager
Columbus, IN ยท On-site
$103K - $139K/yr
The Cybersecurity Threat Detection & Automation Manager will lead a team responsible for designing, developing, automating, tuning, and continuously improving advanced threat detection and response ...
Cybersecurity Threat Detection & Automation Manager
Columbus, IN ยท On-site
$103K - $139K/yr
The Cybersecurity Threat Detection & Automation Manager will lead a team responsible for designing, developing, automating, tuning, and continuously improving advanced threat detection and response ...
The Cybersecurity Threat Detection & Automation Manager will lead a team responsible for designing, developing, automating, tuning, and continuously improving advanced threat detection and response ...
The Cybersecurity Threat Detection & Automation Manager will lead a team responsible for designing, developing, automating, tuning, and continuously improving advanced threat detection and response ...
The Cybersecurity Threat Detection & Automation Manager will lead a team responsible for designing, developing, automating, tuning, and continuously improving advanced threat detection and response ...
The Cybersecurity Threat Detection & Automation Manager will lead a team responsible for designing, developing, automating, tuning, and continuously improving advanced threat detection and response ...
As a Threat Detection & Automation Engineer, you will enable end-to-end detection engineering across telemetry onboarding, detection content development, response automation, and threat reporting ...
As a Threat Detection & Automation Engineer, you will enable end-to-end detection engineering across telemetry onboarding, detection content development, response automation, and threat reporting ...
Engineering Manager, Threat Detection & AI
Manhattan, NY ยท On-site
$130 - $160/hr
jobr.pro is seeking an Engineering Manager for Threat Detection to lead a high-performing team dedicated to enhancing Datadog's detection program in New York. In this impactful leadership role, you ...
Engineering Manager, Threat Detection & AI
Manhattan, NY ยท On-site
$130 - $160/hr
jobr.pro is seeking an Engineering Manager for Threat Detection to lead a high-performing team dedicated to enhancing Datadog's detection program in New York. In this impactful leadership role, you ...
The Cybersecurity Threat Detection & Automation Manager will lead a team responsible for designing, developing, automating, tuning, and continuously improving advanced threat detection and response ...
The Cybersecurity Threat Detection & Automation Manager will lead a team responsible for designing, developing, automating, tuning, and continuously improving advanced threat detection and response ...
Cyber Threat Detection & Response Analyst Location: Richmond, VA, USA - 9954 Mayland Drive (on-site) The Opportunity The Cybersecurity Threat Detection & Response (TDR) Analyst is responsible for ...
Cyber Threat Detection & Response Analyst Location: Richmond, VA, USA - 9954 Mayland Drive (on-site) The Opportunity The Cybersecurity Threat Detection & Response (TDR) Analyst is responsible for ...
Threat Detection information
See salary details
$47.12 - $49.39
6% of jobs
$49.39 - $51.66
9% of jobs
$51.66 - $53.93
4% of jobs
$55.56 is the 25th percentile. Wages below this are outliers.
$53.93 - $56.21
7% of jobs
$56.21 - $58.48
20% of jobs
The median wage is $59.24 / hr.
$58.48 - $60.75
9% of jobs
$60.75 - $63.02
11% of jobs
$64.62 is the 75th percentile. Wages above this are outliers.
$63.02 - $65.30
10% of jobs
$65.30 - $67.57
10% of jobs
$67.57 - $69.84
5% of jobs
$69.84 - $72.12
6% of jobs
$47
$60
$72
How much do threat detection jobs pay per hour?
What is threat detection?
What are the key skills and qualifications needed to thrive as a threat detection specialist, and why are they important?
What are the most common challenges faced by professionals in threat detection roles, and how can they be addressed?
What is the difference between Threat Detection vs Security Analyst?
| Aspect | Threat Detection | Security Analyst |
|---|---|---|
| Required Credentials | Certifications like CompTIA Security+, CEH, CISSP | Certifications like CISSP, CISA, Security+ |
| Work Environment | Security operations centers, cybersecurity teams | IT departments, security teams, consulting firms |
| Employer & Industry Usage | Tech companies, finance, government agencies | Any organization with IT infrastructure |
| Common Search & Comparison | Focuses on identifying threats and vulnerabilities | Broader role including incident response and policy development |
Threat Detection specialists primarily focus on identifying and analyzing security threats using various tools and techniques. Security Analysts have a broader role that includes monitoring, analyzing, and responding to security incidents, often involving policy and compliance tasks. While both roles require similar certifications and work in cybersecurity environments, Threat Detection is more specialized in threat identification, whereas Security Analysts handle a wider range of security responsibilities.
What cities are hiring for Threat Detection jobs?
Cities with the most Threat Detection job openings:
What states have the most Threat Detection jobs?
States with the most job openings for Threat Detection jobs include:
What job categories do people searching Threat Detection jobs look for?
The top searched job categories for Threat Detection jobs are:
- Threat Intelligence Manager
- Cyber Threat Intelligence Director
- Contract Cyber Threat Intelligence Manager
- Senior Microsoft Threat Intelligence
- Certified Threat Intelligence Analyst
- Manager Remote Threat Intelligence
- Senior Threat Intelligence Manager
- Overnight Microsoft Threat Intelligence
- Grem Remote
- Threat Detection Engineer

Job description
The Manager, Threat Detection Engineering leads a team of threat detection engineers within the Vanguard CSOC, responsible for the strategy, execution, and continuous maturation of the organization's threat detection capabilities. This role sits at the intersection of people leadership, technical excellence, and security strategy to guide a high-performing engineering team that translates adversary behaviors into high-fidelity, scalable detections across the full security stack. The manager will set team direction, drive measurable outcomes, and serve as a key stakeholder and partner across the CSOC including Threat Hunting, Adversary Emulation, Cyber Threat Intelligence, and Incident Management, to advance Vanguard's defensive posture against the evolving cybersecurity threat landscape.
Core Responsibilities
People Leadership
- Lead, mentor, and develop a team of threat detection engineers, fostering a culture of technical excellence, continuous learning, and collaboration
- Conduct regular 1:1s, performance reviews, and career development conversations to grow individual contributors and retain top talent
- Identify skill gaps and build targeted training, development plans, and knowledge-sharing programs within the team
- Drive hiring, onboarding, and team capacity planning in partnership with HR and senior leadership
Strategy & Program Ownership
- Define and own the detection engineering roadmap, aligning team priorities to the broader CSOC strategy and Vanguard's risk posture
- Develop and maintain the team's detection engineering framework, methodology, and standards across all platforms and workflows
- Drive the team's MITRE ATT&CK coverage strategy, establishing measurable goals and tracking progress over time
- Stay current on the evolving threat landscape and adversary tradecraft, ensuring the team's detection philosophy reflects emerging attacker behaviors
- Champion detection-as-code adoption and engineering best practices across the CSOC
Execution & Delivery
- Oversee the delivery of custom threat detection content across the full security stack, including SIEM, EDR, CNAPP, ITP, NIDS/NIPS, and SaaS security monitoring
- platforms
- Manage detection intake and prioritization from Purple Team and Red Team findings, threat intelligence, incident retrospectives, and investigation reviews
- Ensure the team maintains structured development, review, and deployment pipelines for all detection content
- Drive automation and orchestration initiatives using SOAR platforms, CI/CD pipelines, and AI-assisted tooling to improve team efficiency and detection velocity
- Oversee development and maintenance of synthetic unit test frameworks for detection validation
Metrics & Reporting
- Define, track, and report on key detection engineering metrics including coverage, detection quality, false positive rates, mean time to detect (MTTD), and backlog
- health
- Provide regular program updates to CSOC leadership and stakeholders on team performance, program health, and strategic initiatives
- Maintain visibility into detection gaps and remediation progress, driving accountability to measurable outcomes
- Contribute to board and executive-level reporting on detection capability maturity as needed
Cross-Functional Partnership
- Partner closely with Threat Hunting, Adversary Emulation, Cyber Threat Intelligence, and Incident Management teams to ensure detection content reflects real-world threats and operational feedback
- Represent the detection engineering team in Red Team and Purple Team exercises, translating exercise outcomes into actionable detection improvements
- Collaborate with platform and infrastructure teams to ensure detection tooling is properly maintained, scaled, and integrated
Qualifications
- Bachelor's degree in Cybersecurity, Information Technology, or a related field preferred
- 7+ years of experience in security operations, detection engineering, threat hunting, incident response, or a closely related discipline
- People management or formal team leadership experience in a security engineering context
- Hands-on experience writing and tuning detections in one or more SIEM platforms
- Hands-on background with SOAR or security automation platforms
- Experience with endpoint detection and response (EDR) and/or asset visibility and control platforms
- Strong familiarity and working knowledge of MITRE ATT&CK, Cyber Kill Chain, or similar frameworks and their application to detection strategy
- Familiarity with detection-as-code concepts, including version control, code review workflows, and CI/CD pipelines
- Demonstrated ability to define team roadmaps, manage priorities, and deliver programs against measurable goals
- Expert-level understanding of the threat landscape including adversary tools such as C2 frameworks, RMMs, credential theft utilities, proxy and tunneling tools, cloud attack tooling, data exfiltration utilities, malware loaders, ransomware, and post-exploitation frameworks, and the TTPs associated with their use
- Strong communication skills with the ability to translate technical concepts for both engineering audiences and senior leadership
- Experience building or scaling a detection engineering program or practice from the ground up
Special Factors
Sponsorship
Vanguard is not offering visa sponsorship for this position.About Vanguard
At Vanguard, we don't just have a mission-we're on a mission.
To work for the long-term financial wellbeing of our clients. To lead through product and services that transform our clients' lives. To learn and develop our skills as individuals and as a team. From Malvern to Melbourne, our mission drives us forward and inspires us to be our best.
How We Work
Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.
About Vangard
Sourced by ZipRecruiter
Company size
11 - 50 Employees
Headquarters location
Tacoma, WA, US
Year founded
2001