×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

Security Engineer; Detection Engineering

Job in Austin, Travis County, Texas, 78716, USA
Listing for: Saronic
Full Time position
Listed on 2026-07-07
Job specializations:
  • IT/Tech
    Cybersecurity
Salary/Wage Range or Industry Benchmark: 95000 - 120000 USD Yearly USD 95000.00 120000.00 YEAR
Job Description & How to Apply Below
Position: Security Engineer (Detection Engineering)

Saronic Technologies is a leader in revolutionizing autonomy at sea, dedicated to developing state‑of‑the‑art solutions that enhance maritime operations through autonomous and intelligent platforms.

Security at Saronic is a force multiplier. We’re seeking a Security Engineer at the senior‑level or above on our Security Operations team with strong detection engineering experience. You'll design and develop high-fidelity detection content, build and operate the data pipelines that power our security operations, develop automation playbooks that accelerate response, and work across a uniquely diverse telemetry landscape spanning cloud infrastructure, embedded vessel platforms, corporate systems, and operational technology.

This role is heavily weighted toward detection engineering. You should think in terms of adversary behavior and telemetry coverage, not just alert triage. You’ll own detections end‑to‑end: from identifying gaps in coverage, through designing and testing detection logic, to tuning and validating in production.

Key Responsibilities:
  • Design, build, test, and tune high-fidelity detection rules and analytic queries across endpoint, cloud, network, identity, and DLP telemetry sources

  • Develop and maintain detection content using detection‑as‑code practices including version-controlled logic, automated testing, and CI/CD deployment

  • Map detection coverage to MITRE ATT&CK, identify gaps, and prioritize new detection development based on threat intelligence and business risk

  • Engineer correlation rules, behavioral analytics, and anomaly‑based detections that minimize false positives while surfacing real adversary tradecraft

  • Own the detection lifecycle from initial development through production tuning, performance monitoring, and retirement

  • Build and operate pipelines to ingest, normalize, enrich, and manage security telemetry at scale across diverse data sources, using Terraform and infrastructure‑as‑code practices to deploy and maintain logging and detection infrastructure

  • Design and maintain log collection, parsing, and enrichment configurations that ensure the right telemetry is available at the right fidelity for detection and investigation

  • Evaluate and onboard new telemetry sources as Saronic's infrastructure and threat landscape evolve

  • Monitor pipeline health, data quality, and ingestion reliability to ensure detections operate on complete and accurate data

  • Develop and manage automated response playbooks in SOAR platforms to accelerate containment and reduce analyst toil

  • Build automation that enriches alerts with contextual data, reducing investigation time and improving analyst decision‑making

  • Support incident response efforts and translate lessons learned into improved detections and playbooks

  • Partner with SOC analysts, Cloud Security, Product Security, and IT teams to close visibility and detection gaps across environments

  • Collaborate with threat intelligence to ensure detection engineering is informed by current adversary TTPs relevant to defense, maritime, and autonomous systems

Required Qualifications:
  • 3+ years of hands‑on experience in detection engineering, security operations, security automation, or a closely related security engineering role

  • Demonstrated experience designing, testing, and tuning detection rules and analytic queries across production security telemetry (endpoint, cloud, network, identity, or DLP)

  • Hands‑on experience with SIEM platforms and proficiency with query languages such as SPL, KQL, or equivalent

  • Experience building and operating security data pipelines, including log ingestion, normalization, enrichment, and data quality management

  • Understanding of data engineering concepts including ETL pipelines, data modeling, schema design, and indexing as applied to security telemetry

  • Hands‑on coding experience in Python, Power Shell, Go, or Rust for security automation, detection tooling, or pipeline development, and familiarity with Terraform for managing detection and logging infrastructure as code

  • Understanding of MITRE ATT&CK framework and its application to detection coverage and gap analysis

  • Ability to obtain and maintain a security clearance

Preferred Qualifications:
  • Experien…

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary