Senior Security Engineer- Threat Engineering Detection Team

Truist Inc
Raleigh, NC, United States
4 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours

Tech stack

Software System Penetration Testing Cyber Security Information Engineering Intrusion Detection and Prevention PostgreSQL Microsoft SQL Server MySQL PCI Data Security Standards Software Engineering SQL Databases Snowflake Mitre Att&ck
+2 more
Cyber Threat Analysis Splunk

Job description

Experteer Overview As a Senior Threat Detection Engineer, you design and optimize enterprise-grade detections across security platforms to bolster threat visibility. You work closely with SOC, IR, and data teams to implement detection-as-code and scalable telemetry pipelines. You map detections to MITRE ATT&CK and align solutions with regulatory requirements in highly regulated industries. Your work focuses on reducing false positives, improving coverage, and enabling rapid, cross-platform deployment. This role offers impact at scale in a security-driven, collaborative environment. Compensation / Benefits * Design, develop, and maintain high-fidelity detections across Splunk, Snowflake, and related platforms * Author SPL-based detections (Splunk) and SQL-based queries (Snowflake, MySQL, PostgreSQL, SQL Server) * Optimize Snowflake queries and manage Snowpipe pipelines for real-time and batch ingestion * Plan and implement Cribl/Databahn integrations for log routing and telemetry enrichment * Provide platform administration for Splunk and Snowflake * Map detections to MITRE ATT&CK framework and ensure comprehensive coverage * Utilize Anvilogic for detection-as-code, lifecycle management, and cross-platform orchestration * Collaborate with SOC, IR, Threat Intel, Red/Purple, and Data Engineering to reduce false positives and improve visibility * Engineer regulatory-aligned detections with PCI-DSS, HIPAA, SOX, GLBA Tasks * Bachelor’s degree or equivalent * Minimum 7 years in security engineering or related cybersecurity roles * Deep knowledge of cybersecurity principles and concepts * Experience with software development lifecycle security practices * Strong threat modeling, security testing, and pentesting knowledge * Experience implementing and managing complex information security technologies Key requirements * medical, dental, vision * 401k plan * vacation * sick days * paid holidays * disability insurance

Requirements

roles * Provide platform administration for Splunk and Snowflake * Map detections to MITRE ATT&CK framework and ensure comprehensive coverage * Utilize Anvilogic for detection-as-code, lifecycle management, and cross-platform orchestration * Collaborate with SOC, IR, Threat Intel, Red/Purple, and Data Engineering to reduce false positives and improve visibility * Engineer regulatory-aligned detections with PCI-DSS, HIPAA, SOX, GLBA Tasks * Bachelor’s degree or equivalent * Minimum 7 years in security engineering or related cybersecurity roles * Deep knowledge of cybersecurity principles and concepts * Experience with software development lifecycle security practices * Strong threat modeling, security testing, and pentesting knowledge * Experience implementing and managing complex information security technologies Key requirements * medical, dental, vision * 401k plan * vacation * sick days * paid holidays * disability insurance

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:33 min

Integrating internal APIs and maintaining data sovereignty

Mahran Meißner Mahran Meißner · WWC Europe 2026

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

2:18 min

Scaling MySQL databases for massive user growth

Johannes Nicolai Johannes Nicolai +1 · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:46 min

Transforming data architecture from on-premise to cloud

Sandhya Menon Sandhya Menon · WWC Europe 2026

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

Videos

See all

Related articles

See all