Endpoint Detection Engineer
Listed on 2026-09-12
-
IT/Tech
Cybersecurity
Who we are looking for
Global Cybersecurity (GCS) protects State Street and its clients from the impact of cyber-attacks against systems by understanding the risks these attacks present and mitigating them through a robust, continuously evolving, cybersecurity program and control environment.
This role is responsible for detecting possible cybersecurity attacks and compromises and sending cogent alerts for analysis by the security operations center. Other responsibility areas are listed below.
- Draft and deliver detection use cases in Falcon Query Language (FQL) and other security query languages.
- Draft and deliver Jira and Confluence pages about detection use cases following prescribed business processes.
- Investigate threat reports and request for detections to determine if a new detection use case is warranted.
- Present production ready use cases to executive governing boards for review and approval.
- Write detection oriented business cases, project plans, and reasoned explanations for decisions made about detections to support the execution of detection engineering projects.
- Partners with technical and non-technical professionals to enhance detection functions, and to drive better protection and response.
These skills will help you succeed in this role Highly diverse and relevant education and experiences, such as:
- ethical hacking, data analytics, military cyber operations, penetration testing, cyber defense, and cyber transformation program management.
- Broad knowledge of cyber security software, business processes, organizational structure, and challenges.
- Software development and scripting experience using Reg Ex, PERL, Python, or Powershell.
- Ability to create polished presentations in PowerPoint, PowerBI, or other data visualization tools.
- Experience at a large, multi-national financial services firm.
- Experience at a large, multi-national technology consulting firm.
Preferred Qualifications
Two years of experience in cybersecurity detection engineering gained through a Bachelor’s (BSc) in STEM; or through employment or volunteering.
Industry recognized cybersecurity certifications with demonstrable, hands‑on proficiency.
Proven capability in analysing high‑volume datasets to uncover patterns and actionable insights Ability to code detection use cases using SPL or FQL.
Ability to use Splunk for detection engineering.
Ability to perform data manipulation, analysis, and reporting using Python, r, or similar analytics language.
Ability to use Structured Query Language (SQL).
Knowledge of the cyber global threat landscape; cyber adversaries; cyber tactics, techniques, and procedures (TTPs); cyber threat intelligence sources and methods; and malware.
Knowledge of infrastructure and application telemetry.
Ability to use Jira and Confluence to develop, document, collaborate, and release use cases into production environments.
Ability to write polished descriptive and persuasive business documents.
Ability to craft reasoned explanations for decisions that can withstand audit scrutiny.
Salary RangeSalary Range: $120,000 - $202,500 Annual
BenefitsEmployees are eligible to participate in State Street’s comprehensive benefits program, which includes:
- our retirement savings plan (401K) with company match
- insurance coverage including basic life, medical, dental, vision, long‑term disability, and other optional additional coverages
- paid‑time off including vacation, sick leave, short‑term disability, and family care responsibilities
- access to our Employee Assistance Program
- incentive compensation including eligibility for annual performance‑based awards (excluding certain sales roles subject to sales incentive plans)
- eligibility for certain tax advantaged savings plans
For a full overview, visit
About…(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).