Job offer

Detection Engineer

The Detection Engineer develops and implements advanced cyber threat detection mechanisms and works closely with security teams to anticipate and mitigate potential threats. The focus is on the creation of detection content, the automation of processes and the continuous improvement of security systems.

Job description

Job title:

Detection Engineer

Job details:

  • Working model: Hybrid
  • Working hours: Full-time
  • Locations: Naperville, IL, Chicago, IL

Tasks:

  • Build, refine, and manage detection content to identify and mitigate potential threats.
  • Develop a Detection-as-Code standard using code repositories and CI/CD pipelines to streamline content deployment via Infrastructure-as-Code methodologies.
  • Work closely with various teams in Security Operations to anticipate and detect potential threats before they fully materialize.
  • Participate in continuous improvement initiatives to enhance detection capabilities and efficiency.
  • Develop and maintain documentation for detection logic, use cases, and response playbooks.
  • Maintain up-to-date knowledge of the latest cybersecurity threats, tools, and best practices.
  • Contribute to automation of detection and response processes using SOAR platforms.

Requirements:

  • Bachelor's degree in Computer Science, Information Security, or a related field.
  • 3+ years of experience in cybersecurity, preferably in detection engineering, threat hunting, or incident response
  • Proficiency in writing and tuning detection logic in SIEM platforms (e.g., Splunk, Sentinel, Elastic).
  • Strong understanding of cyber security principles, including SIEM, IDS/IPS, and endpoint detection and response (EDR) solutions.
  • Experience with coding/scripting languages such as Python, PowerShell, or Bash.
  • Familiarity with CI/CD pipelines, code repositories (e.g., Git), and Infrastructure-as-Code tools (e.g., Terraform, Ansible).
  • Excellent problem-solving skills and attention to detail.
  • Strong communication and documentation abilities.

Preferred qualifications:

  • Experience in a cloud environment (e.g., AWS, Azure, GCP).
  • Knowledge of malware analysis, reverse engineering, and digital forensics.
  • Experience with performing insider threat analysis and detections
  • Knowledge of security orchestration and automation platforms

We offer:

  • Salary range: $114,500 - $194,700 USD
  • Flexible and collaborative working culture
  • Career development and further training
  • Integration into a globally recognized and award-winning financial institution

Other:

  • Northern Trust is committed to supporting people with disabilities and providing reasonable accommodation.

Job details

© 2025 House of Skills by skillaware. All rights reserved.
Our website uses cookies to make navigation easier for you and to analyze the use of the site. You can find more information in our privacy policy.