Senior Detection Engineer
Chicago, Cook County, Illinois, 60290, USA
Listed on 2026-02-23
-
IT/Tech
Cybersecurity, Systems Engineer, Security Manager
Overview
As our next Senior Detection Engineer
, you won’t just be monitoring dashboards—you’ll be at the forefront of building our security operations as code. You will lead the charge in architecting scalable detection systems and developing the automation that defines how we protect our infrastructure. This is a technical, hands-on role combining security engineering, automation development, and strategic incident response where your technical decisions directly shape how we detect, investigate, and respond to threats won’t just be managing alerts;
you’ll be shaping the very trajectory of our security posture in a lean, engineering-first environment.
- Design and deploy sophisticated detection logic across our entire technology stack using detection-as-code principles like YARA-L, Sigma, and KQL.
- Build automated response workflows that independently enrich, triage, and remediate security alerts, effectively eliminating manual toil through advanced SOAR principles.
- Investigate complex security signals
—such as novel attack patterns or phishing campaigns—that require deep human judgment and strategic intuition. - Collaborate cross-functionally with Dev Ops and Security Engineering teams to adapt detection logic to infrastructure changes before security blind spots can emerge.
- Leverage AI and LLMs as force multipliers to accelerate threat hunting, generate new detection hypotheses, and automate repetitive investigative tasks.
- Lead post-incident reviews with engineering partners, transforming security findings into preventative architectural changes that harden our long-term defense.
- Prototype and test emerging detection capabilities and data sources, ensuring we stay ahead of the threat landscape while participating in an on-call rotation to defend our most critical systems.
- 5+ years of hands-on experience in detection engineering, incident response, or security operations within high-growth technology environments.
- Advanced programming proficiency in Python
, with a proven ability to build production-quality security automations and custom integrations from scratch. - Deep expertise in Cloud Security (AWS), including IAM, VPC, Cloud Trail, and Lambda attack vectors.
- Mastery of detection logic in at least two major languages, such as YARA-L, Sigma, KQL, or SPL.
- Experience building SOAR workflows or equivalent automation platforms that measurably reduce operational overhead at scale.
- Exceptional communication skills
, with the ability to distill complex security risks into actionable insights and influence technical decisions across the organization. - Experience using AI/LLMs as a strategic tool for threat analysis, investigation automation, and increasing the velocity of security work.
- A self-directed, engineering-first mindset
, ideally with a background in SRE, Dev Ops, or platform engineering and a history of contributing to open-source security projects.
$126,000 - $154,000 a year
Compensation details listed in this posting reflect the base rate only and do not include bonus, equity, sales incentives or other role specific compensation that the role may be eligible for. Active Campaign believes in and is committed to equitable compensation practices. The salary range provided above is a good faith estimate of the pay range determined by the location associated with the job posting.
The actual salary depends on a candidate’s skills, experience, and work location.
Active Campaign is the autonomous marketing platform for people at the heart of the action. It empowers teams to automate their campaigns with AI agents that imagine, activate, and validate–freeing them from step-by-step workflows and unlocking limitless ways to orchestrate their marketing.
With AI, goal-based automation, and 1,000+ app integrations, agencies, marketers, and owners can build cross-channel campaigns in minutes–fine-tuned with billions of data points to drive real results for their unique business.
Active Campaign is the trusted choice to help businesses unlock a new world of boundless opportunities–where ideas become impact and potential turns into real results.
As a global…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).