Detection Engineer

Remote Full-time
About Hunter Strategy Hunter Strategy has a unique philosophy to technical project delivery. We treat all our customers like mission partners because they rely on our team to meet their objectives through complex software engineering, cloud operations, and cyber risk management solutions. Hunter Strategy was founded on the premise that IT is 21st century infrastructure - critically important but only instrumentally valuable. Accordingly, our teams look at problems with a single objective: the identification and enablement of the right capability to address the most vexing problems our Mission Partners face. We continue to support our partners' success by leveraging the right technology, with the right plan, and the right team to address tomorrow's challenges today. Detection Engineer We are seeking a motivated and technically skilled Detection Engineer to join our growing Detection Engineering team. This role is ideal for a self-starter who thrives in building scalable, automated solutions and wants to play a critical part in shaping the future of our detection engineering practice. As part of our MSSP SOC Engineering group, you will design, build, and deploy high-quality detections across multiple SIEM platforms (primarily Microsoft Sentinel, Splunk, and Google SecOps). You will work closely with both internal stakeholders and client teams, ensuring that detections align with business needs, normalize effectively across data sources, and scale consistently across environments. Our team is focused on engineering automation, scalable design, and operational excellence. You will help transition the team into a more technical, engineering-led practice while directly supporting client environments and security outcomes. Key Responsibilities: Detection Development: Design, implement, and optimize detection use cases across SIEM platforms beyond vendor-built detections (Microsoft Sentinel, Splunk, Google SecOps), ensuring they are scalable and reusable. Client Engagement: Participate in client standups and working sessions to capture business requirements, translate them into technical detections, and advise on detection strategy. SIEM Expertise: Apply a strong understanding of SIEM setup and operations, including data normalization (e.g., Sentinel ASIM, Splunk Data Models, etc.) and best practices for long-term success. Collaboration & Documentation: Work with peers across engineering, SOC (Security Operation Center), CTI (Counter Threat Intelligence), and OSO (Offensive Security Operations) to continuously refine detection coverage. Maintain documentation in Confluence and version control systems (Gitlab/GitHub). Innovation & Initiative: Identify gaps, bring forward new ideas, and independently drive improvements in detection coverage, scalability, and automation. Desired Qualifications: Technical SIEM Experience: Proficiency with at least two of the following: Microsoft Sentinel (KQL), Splunk (SPL), or Google SecOps (YARA-L). Detection Engineering Background: Demonstrated experience building, tuning, and maintaining detections in enterprise SIEM environments. SIEM Setup Knowledge: Understanding of data ingestion, parsing, normalization, and schema alignment. Experience configuring SIEMs for long-term operational success. Client-Facing Skills: Strong communication skills and experience engaging with customers to gather requirements, present solutions, and build trust. Tools & Platforms: Working knowledge of JIRA, Confluence, and related workflow tools. Preferred: Experience with detection frameworks (e.g., MITRE ATT&CK), cloud-native services (Azure, AWS, GCP), or prior SOC/MSSP experience. Originally posted on Himalayas
Apply Now →

Similar Jobs

DevSecOps Engineer

Remote Full-time

Senior Software Engineer

Remote Full-time

Staff Privacy Engineer

Remote Full-time

Wellness Sales Specialist - Global

Remote Full-time

[Job-24577] Mid Level QA Automation, Brazil

Remote Full-time

Market Access Specialist (UK&I) - Rapid Diagnostics

Remote Full-time

Oracle HCM Cloud Conversion Developer (US Cit to pass Security Clearance) - ec3 Federal Services

Remote Full-time

Product Sales Specialist

Remote Full-time

People Operations Administrator

Remote Full-time

Senior Account Executive, Special Situations & Investor Relations

Remote Full-time

Senior AI Data Engineer, Risk Engineering

Remote Full-time

Experienced Remote Data Entry Operator – Accurate and Efficient Data Management Professional

Remote Full-time

**Part-Time Data Entry Specialist – Remote Opportunity with arenaflex: Unlock a Rewarding Career in the Airline Industry**

Remote Full-time

Experienced Customer Support Representative - blithequark Remote Chat Support Team

Remote Full-time

Senior Sourcing Manager- Supply Chain, Logistics & Transportation Services

Remote Full-time

Senior Machine Learning Engineer, Platform

Remote Full-time

Experienced Online Data Entry Assistant and Part-Time Personal Assistant - Flexible Remote Work Opportunity with blithequark

Remote Full-time

Experienced Part-time Remote Data Entry Specialist – Work from Home Opportunity with arenaflex

Remote Full-time

Experienced Full Stack Software Engineer – Web & Cloud Application Development

Remote Full-time

Experienced Customer Service Representative – Remote Part-time Opportunities for Delivering Exceptional Support and Ensuring Customer Satisfaction at arenaflex

Remote Full-time
← Back to Home