Pluralsight Logo

Pluralsight

Sr. Detection Engineer

Posted 13 Days Ago
Remote or Hybrid
Hiring Remotely in USA
117K-154K Annually
Senior level
Remote or Hybrid
Hiring Remotely in USA
117K-154K Annually
Senior level
The Senior Detection Engineer designs, develops, and tunes detection rules for SIEM, collaborates with SOC teams, and ensures high-fidelity alerts while addressing security challenges.
The summary above was generated by AI

Job Description:

Pluralsight is the technology workforce development company that helps teams build better products by knowing more and working better together. We are seeking an experienced Senior Detection Engineer to join our Security Engineering & Operations team.

While the Operations team responds to fires, you will be the architect of the smoke detectors. You will work closely with the Senior Manager of Security Operations to engineering the SIEM, manage the lifecycle of detection rules, and ensure our 24/7 SOC has high-fidelity alerts. Your primary focus will be Detection-as-Code: treating security alerts as engineering problems that require tuning, testing, and version control.

Who you’re committed to being:

  • A Builder at Heart: You don’t just consume alerts; you build the logic that generates them. You possess a deep technical understanding of SIEM technologies and know how to onboard custom log sources.

  • A Critical Thinker: You weigh the tradeoffs between security risk aversion and business priority. You know how to tune out the "noise" to find the "signal."

  • A Tenacious Problem-Solver: You investigate root causes. If a data feed breaks, you fix it. If an alert triggers too often, you refine the logic.

  • A Continuous Learner: You are curious by nature. You stay ahead of the curve on new adversarial techniques (TTPs) and translate that knowledge into new detection rules.

  • A Collaborative Communicator: You are an effective champion within the information security community and the business, using data to drive decisions.

What you’ll do:

  • Detection Logic Lifecycle: Design, develop, and tune high-fidelity detection rules (SIEM content) based on the MITRE ATT&CK framework to identify malicious activity across our ecosystem (Endpoints, Cloud, Network).

  • Tier 3 Operational Support (20%): You will not just build the alerts; you will validate them. You will dedicate ~20% of your time to serving as the primary escalation point for the MDR and SOC. You will perform deep-dive analysis on complex incidents, handling the investigations that require engineering-level insight.

  • SIEM Architecture & Health: Partner with infrastructure teams to validate log ingestion health, parse custom log sources, and enforce data retention lifecycles to satisfy compliance requirements.

  • Data Onboarding: Lead the engineering effort to ingest data from new tools (Cloud APIs, SaaS apps, custom internal apps) into the SIEM, ensuring data quality and CIM compliance.

  • MDR/SOC Enablement: Collaborate with our Managed Detection and Response (MDR) providers. You will translate raw data into actionable alerts and provide feedback on their triage quality.

  • Adversary Simulation: Proactively test your detection rules against known attack vectors to verify they trigger as expected before a real attack occurs.

Experience you’ll bring:

  • Familiarity with Cloud Security detection strategies (AWS/Azure/GCP) and Endpoint telemetry (EDR process trees).

  • Experience working with common adversarial tactics, techniques, and procedures (MITRE ATT&CK TTPs) and mapping them to detection rules.

Requirements:

  • 3+ years of proven experience in SIEM Content Development or Detection Engineering.

  • Bachelor of Science in CIS/MIS/CS/CE, Engineering, or related field (or equivalent experience).

  • Possess DoD 8570/8140 recognized certifications for CSSP Analyst or Infrastructure Support, such as GCIA, GMON, GCDA, CEH, or CySA+.

  • Proficiency in SIEM-specific content development (e.g., writing advanced queries in SIEM, creating dashboards, and building correlation searches).

  • Strong scripting skills (Python, Bash, or PowerShell) for API integration and data manipulation.

  • Deep understanding of information security principles, cryptographic methods, and network protocols (TCP/IP, DNS, HTTP/S).

  • This is a remote role; however, applicants located within 45 miles of our Westlake/Dallas, TX office should expect to work on-site Tuesday through Thursday, with remote flexibility on Mondays and Fridays. This approach enables more effective collaboration, quicker decision-making, and a stronger culture, while still providing flexibility.

Why you’ll love working here:

  • We’re a blended workplace, where team members work remotely or in a hybrid setup depending on their role and location

  • We’re mission driven and guided by our culture pillars

  • We have a strong commitment to diversity and belonging

  • We cultivate a culture of trust, autonomy, and collaboration

  • We’re lifelong learners and champion team member growth and advancement

  • We’ve got you covered - team member benefits include competitive compensation packages, medical coverage, unlimited PTO, wellness reimbursements, Pluralsight subscription, professional development funds and more.

About us:

Pluralsight provides the only learning platform dedicated to accelerating the technology skills and capabilities of today’s tech workforce. Thousands of companies, government organizations and individuals around the world rely on Pluralsight to support critical technology skill development in areas that are crucial to innovation including artificial intelligence, cloud computing, cybersecurity, software development, and machine learning. Pluralsight provides highly curated content developed by vetted technology experts, industry leading skill assessments, and hands on, immersive learning experiences designed to help individuals skill-up faster.

Physical Requirements:

This role is primarily performed in an office or home office setting and involves standard computer-based work.

EEOC Statement & Accommodations Statement:

Bring yourself. Pluralsight is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, age, or veteran status. We also consider qualified applicants with criminal histories, consistent with EEOC guidelines and local laws.

If you need an accommodation to apply, interview, or perform essential job functions, please visit the bottom of our website to learn how to request an accommodation. Learn more about our commitment to diversity, equity, inclusion, and belonging in our DEIB Report.

The annual US base salary range for this role is $117,100 - $154,000 USD. Actual compensation will depend on location, skills, experience, and other factors. Additional benefits and bonuses may apply.

Applications must be submitted within 90 days after the initial posting date to be considered.

Please be aware of recruiting scams. We’ll only contact you from an @pluralsight.com email or verified channels. We never ask for sensitive personal info or payments as part of the hiring process. All openings are posted on our Careers page.
#LI-JM2

Top Skills

AWS
Azure
Bash
GCP
Powershell
Python
SIEM

Similar Jobs at Pluralsight

18 Hours Ago
Remote or Hybrid
USA
200K-280K Annually
Senior level
200K-280K Annually
Senior level
Edtech • Information Technology • Software
The Enterprise Account Executive will drive growth by acquiring new customers and expanding existing accounts, mastering complex sales cycles, and collaborating with various teams to ensure success.
Top Skills: EdtechSaaS
Yesterday
Remote or Hybrid
USA
134K-168K Annually
Senior level
134K-168K Annually
Senior level
Edtech • Information Technology • Software
The Sr. Customer Success Manager ensures customer engagement and retention, driving renewals and expansion while building strong client relationships and mitigating risks across customer accounts.
Top Skills: GainsightSalesforce
Yesterday
Remote or Hybrid
USA
303K-400K Annually
Senior level
303K-400K Annually
Senior level
Edtech • Information Technology • Software
The Regional Sales Director drives sales strategy in the Northeast, manages sales teams, forecasts sales, and builds customer relationships to achieve business growth.
Top Skills: Salesforce CRM

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account