NVIDIA Logo

NVIDIA

Senior Security Engineer, Detection Engineering

Reposted 2 Days Ago
Be an Early Applicant
In-Office or Remote
2 Locations
168K-311K Annually
Senior level
In-Office or Remote
2 Locations
168K-311K Annually
Senior level
Design, build, validate, and maintain high-confidence detections across SIEMs and security platforms. Translate incidents, hunts, and threat intelligence into production-ready detection logic, drive detection-as-code workflows, and partner with responders to reduce noise, improve context, and monitor detection health. Coach teams, shape telemetry requirements, and own the full detection lifecycle from development to retirement.
The summary above was generated by AI

NVIDIA Security is seeking a Senior Detection Engineer to join the Detection and Automation Engineering team. On this team, we build reliable detection coverage that helps responders identify real threats quickly, reduce unnecessary noise, and protect NVIDIA's enterprise, cloud, developer, AI, and production environments. ​Do you enjoy turning sophisticated security signals into detections responders can trust? Can you read an incident write-up, a red-team result, or an unusual authentication pattern and decide what is worth alerting on? We want someone who can move from hypothesis to tested production content and explain the tradeoffs clearly.

We work closely with incident response, threat intelligence, security operations, cloud security, and engineering teams. We protect enterprise, cloud, identity, endpoint, collaboration, developer, AI, and production environments. We care about detections that are explainable, measured, maintainable, and useful during real investigations.

What You'll Be Doing:

  • Build and tune high-confidence detections across platforms such as Splunk, Microsoft Sentinel / Defender, CrowdStrike, cloud-native logs, identity telemetry, endpoint data, SaaS platforms, and developer systems.

  • Translate incidents, hunts, threat intelligence, red-team findings, and vulnerability context into detection logic we can test and operate.

  • Investigate real telemetry before we alert on it, including field behavior, timing, joins, baselines, and the false positives a responder will actually see.

  • Drive the full detection lifecycle: design, query development, validation, peer review, documentation, deployment, tuning, monitoring, and retirement.

  • Strengthen detection-as-code workflows, including test data, quality checks, metadata, rollout safety, coverage tracking, and detection health reporting.

  • Partner with responders to cut noise, add useful context, improve severity decisions, and build follow-up detections after investigations.

  • Shape logging, normalization, enrichment, and retention requirements when the telemetry we need is missing or hard to use.

  • Coach analysts and engineers through design reviews, query reviews, and clear guidance on what makes a detection credible.

What We Need to See:

  • 8+ years of experience in detection engineering, security engineering, threat hunting, incident response, SOC engineering, or information security monitoring.

  • A degree in Computer Science, Cybersecurity, Engineering, or equivalent experience

  • Hands-on experience building and tuning detections in a major SIEM or security analytics platform.

  • Strong query and scripting skills, especially SPL, KQL, SQL, Python, or similar languages used to analyze security telemetry and automate repetitive work.

  • Practical understanding of attacker behavior across identity, endpoint, cloud, network, email, collaboration tools, developer infrastructure, secrets, and data theft.

  • Ability to move from raw logs to a production-ready detection, including field semantics, thresholds, joins, baselines, false positives, missing data, and triage context.

  • Comfortable working with Git, code review, automated checks, CI/CD, documentation, and operational ownership of the content you ship.

  • Clear communication and sound judgment. You should be able to explain why a detection matters, what it misses, what we should do next, and when we should choose not to alert.

Ways to Stand Out From the Crowd:

  • You have led or materially improved a detection-as-code program across more than one security platform.

  • Background in cloud, identity, Kubernetes, CI/CD, supply-chain, or AI-tooling attack paths well enough to design detections without waiting for a complete recipe.

  • Detected abuse in developer systems, package ecosystems, secrets workflows, AI coding tools, agents, bots, or model-serving infrastructure.

  • Worked closely with incident response, threat hunting, red team, purple team, malware analysis, or forensics teams.

  • Built validation methods such as replay tests, synthetic telemetry, attack emulation, detection unit tests, or coverage reporting.

Your base salary will be determined based on your location, experience, and the pay of employees in similar positions. The base salary range is 168,000 USD - 270,250 USD for Level 4, and 196,000 USD - 310,500 USD for Level 5.

You will also be eligible for equity and benefits.

Applications for this job will be accepted at least until September 13, 2026.

This posting is for an existing vacancy. 

NVIDIA uses AI tools in its recruiting processes.

NVIDIA is committed to fostering an inclusive work environment and proud to be an equal opportunity employer. As we highly value diversity in our current and future employees, we do not discriminate (including in our hiring and promotion practices) on the basis of race, religion, color, national origin, gender, gender expression, sexual orientation, age, marital status, veteran status, disability status or any other characteristic protected by law.

NVIDIA Austin, Texas, USA Office

Austin, United States

Similar Jobs

An Hour Ago
Remote or Hybrid
United States
Entry level
Entry level
Fintech • Software
Supports a portfolio of clients through proactive communication, issue resolution, onboarding, adoption campaigns, renewals, training coordination, and self-service enablement. Maintains CRM records, monitors client engagement and utilization, identifies retention or growth risks, and collaborates with internal teams to deliver consistent service. The role follows established playbooks while supporting high-volume client portfolios and peak-season financial reporting and proxy services.
Top Skills: Crm PlatformsExcelMS OfficeMicrosoft WordSaaS
An Hour Ago
Remote or Hybrid
United States
Entry level
Entry level
Fintech • Software
Supports a portfolio of clients through proactive communication, issue resolution, onboarding, adoption campaigns, renewal preparation, training coordination, and self-service enablement. Monitors client engagement and utilization to identify retention risks and growth opportunities, maintains accurate CRM records, and collaborates with internal teams to deliver consistent service. The role supports high-volume client portfolios and seasonal financial reporting and proxy deadlines.
Top Skills: Crm PlatformsExcelMS OfficeMicrosoft WordSaaS
An Hour Ago
Remote
United States
152K-177K Annually
Senior level
152K-177K Annually
Senior level
Healthtech • Social Impact • Software • Telehealth
Designs and builds Salesforce architecture supporting patient, clinician, insurance, and operational workflows. Responsibilities include Salesforce development and automation, system integrations, data modeling, security, monitoring, recovery, technical standards, deployment processes, stakeholder alignment, and mentoring. The role requires architecture ownership for complex implementations and experience in regulated or HIPAA-compliant environments is preferred.
Top Skills: Automated Deployment ToolingSalesforceSalesforce ApexSalesforce AutomationSalesforce Data 360Salesforce Data CloudVersion Control

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account