> Markdown version of [/jobs/ext/1861696-ai-threat-detection-engineer-senior-specialist](https://www.wearedevelopers.com/jobs/ext/1861696-ai-threat-detection-engineer-senior-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # AI Threat Detection Engineer, Senior Specialist - **Company:** Vanguard - **Location:** Malvern, PA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Java (Programming Language), Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Microsoft Azure, Bash Shell, Cloud Database, Cyber Security, Computer Programming, Github, Intrusion Detection and Prevention, Python (Programming Language), Network Security, Security Information and Event Management, Systems Integration, Scripting, Large Language Models, Production Code, Virtual Agents - **Published:** July 31, 2026 - **Apply:** https://www.juju.com/job/00000000gkqkne ## About the Role + 4+ years of hands-on programming or scripting experience (e.g., Python, Java, Shell) + 5+ years of experience with cloud platforms such as AWS or Microsoft Azure + 4+ year of experience building or supporting automation solutions (e.g., SOAR, GitHub, or similar tools) + 4+ years of experience working with security technologies or supporting SOC/security operations + Exposure to AI, GenAI, or LLM-based solutions, with hands-on development experience preferred + Familiarity with security telemetry (logs, alerts, endpoint, network, and cloud data) + 5+ years of exposure to SIEM platforms or detection engineering concepts ## Description The AI Threat Detection Engineer, Senior Specialist is responsible for developing and implementing AI-driven capabilities that enhance Security Operations Center (SOC) effectiveness. This role focuses on building automation and intelligent solutions to improve threat detection, streamline workflows, and reduce manual effort. Working closely with senior engineers and cross-functional teams, this individual contributes to the delivery of secure, scalable solutions that support SOC modernization. Core Responsibilities + Leads and responds to escalated cyber security alerts, cyber incidents, or related security investigations. Identifies real-time complex attack patterns and suggests mitigation strategies. + Leads the processes, tools and measures to monitor and detect compromises, risks, vulnerabilities, network security threats, tools and tactics used by modern and emerging threat actors. Facilitates security operations and incident response technologies and methodologies. + Develops, manages, maintains and enhances security controls (alerts, rules, policies, and signatures) for the security platforms. + Develop and enhance AI agents to streamline SOC operations and improve efficiency + Design and optimize prompts and workflows to support LLM-based security use cases + Evaluate emerging AI technologies and contribute to innovation within the SOC + Implement safeguards and controls to ensure secure and responsible AI usage + Build APIs, integrations, and automation workflows to support AI-driven capabilities + Write clean, maintainable, and production-ready code aligned with engineering best practices + Collaborate with security, engineering, and platform teams to deliver AI-enabled solutions + Support AI agent development and deployment across SOC use cases + Stay current on AI advancements and apply best practices to ongoing work + Mentors junior team members to improve their technical acumen + Participates in special projects and performs other duties as assigned. ## Related Videos - [The New AI Security Stack: Observe, Detect, Protect](https://www.wearedevelopers.com/videos/100302-the-new-ai-security-stack-observe-detect-protect) - [Old tools, new tricks](https://www.wearedevelopers.com/videos/1916-old-tools-new-tricks) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [MCP doesn’t suck — your agent does](https://www.wearedevelopers.com/videos/100202-mcp-doesn-t-suck-your-agent-does) - [Intermediate Bitcoin Script](https://www.wearedevelopers.com/videos/25-intermediate-bitcoin-script) ## Related Articles - [How to Become an AI Engineer](https://www.wearedevelopers.com/magazine/331-how-to-become-an-ai-engineer) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [What is Software Engineering in the Age of AI?](https://www.wearedevelopers.com/magazine/640-what-is-software-engineering-in-the-age-of-ai) - [What Industries Outside of AI Are Hiring The Most AI Experts?](https://www.wearedevelopers.com/magazine/98-what-industries-outside-of-ai-are-hiring-the-most-ai-experts) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems) - [Will AI replace Software Engineers?](https://www.wearedevelopers.com/magazine/340-will-ai-replace-software-engineers)