Jobs · Engineering · Virginia

Senior Detection Engineer

Verizon · Ashburn, VA · 2 wk ago
Engineering$101k–$194k/yrFull-time

When you join Verizon, you want more out of a career. A place to share your ideas freely — even if they’re daring or different. Where the true you can learn, grow, and thrive. At Verizon, we power and empower how people live, work and play by connecting them to what brings them joy. We do what we love — driving innovation, creativity, and impact in the world. Our V Team is a community of people who anticipate, lead, and believe that listening is where learning begins. In crisis and in celebration, we come together — lifting our communities and building trust in how we show up, everywhere & always.

About the role

The GN&T Network Security team is looking for a highly motivated and experienced Security Engineer with expertise in security detections, EDR systems and data engineering to join the Network Security Foundational team. Successful candidates will be able to apply their expertise in the design and implementation of cutting-edge and mission-critical security detections used to detect and mitigate sophisticated threats facing Verizon and our customers.

The Network Intelligence infrastructure consists of several large-scale compute and storage clusters that are used to analyze petabyte-scale network and security event data sets for anomalous and malicious network activity. As a Security Engineer on our team, you won't just be monitoring dashboards; you will be the architect of our detection strategy and the primary defender of our infrastructure and global network. In this role, you will be an owner of our Endpoint Detection and Response (EDR) ecosystem and our SIEM visibility. You will be expected to anticipate how an adversary thinks, build the systems to catch them, and lead the technical discussions when high-stakes incidents occur.

Responsibilities

  • Detection Engineering: Design, build, and optimize advanced security detections within the Splunk platform. You will move beyond basic alerts to create high-fidelity, risk-based alerting (RBA) models that identify complex attack patterns.
  • EDR Strategy & Management: Serve as the global SME for our CrowdStrike environment. This includes managing large-scale deployments, tuning prevention policies, and performing deep-dive forensic analysis on endpoint telemetry.
  • Linux Security Mastery: Work primarily on Linux-based systems developing detections and investigating EDR-based alerts and detections.
  • Data Engineering: Analyze, normalize and utilize data to identify certain security patterns and properties.
  • Scripting and Coding: Build small programs and scripts to solve problems and automate tasks to allow the team to move faster and be more efficient.

Requirements

  • Bachelor’s degree in Computer Science, Cybersecurity, or a related field or four or more years of work experience.
  • Four or more years of relevant experience required, demonstrated through one or a combination of work and/or military experience, or specialized training.
  • Extensive background in overseeing EDR/XDR detections on a large scale.
  • Experience managing Linux systems, including deep knowledge of the boot process, PAM, and persistence mechanisms.
  • Network Intelligence: Advanced knowledge of networking protocols (BGP, TLS/SSL, DNS).
  • Expert knowledge in developing scripts and writing programs (e.g., Python) to automate tasks and solve problems.
  • Data Engineering: Advanced knowledge of database systems, the relational database model and hands-on expertise working with data.
  • Extensive experience in a dedicated security engineering or incident response role, with a track record of defending enterprise-scale environments.

Qualifications

  • Splunk Proficiency: Expert-level knowledge of Splunk SPL. Capable of building custom macros, data models, and automated lookups to streamline investigations.
  • Attack & Mitigation Knowledge: Deep understanding of advanced attack techniques (e.g., "Golden Ticket," "Living off the Land") and the telemetry required to block or detect them.
  • Preferred Tools: Hands-on experience with CrowdStrike Falcon (including RTR and Fusion) and Splunk ES.
  • Strong analytical skills and attention to detail with a proven track record of managing and delivering results.
  • Leadership experience as a subject matter expert with effective written, interpersonal, and verbal communication skills.

Schedule

In this hybrid role, you'll have a defined work location that includes working from home and a minimum of three days per week in the office, which will be set by your manager. Scheduled weekly hours: 40.

Pay

The annual salary range for this position based on a full-time schedule is $101,000.00 - $194,000.00. This is an incentive-based position with the potential to earn more. The salary will vary depending on your location and confirmed job-related skills and experience.

Benefits

  • Health and wellness benefits including medical, dental, vision, short and long-term disability, basic life insurance, supplemental life insurance, AD&D insurance, identity theft protection, pet insurance, and group home & auto insurance.
  • Matched 401(k) savings plan.
  • Up to 8 company-paid holidays per year and up to 6 personal days per year.
  • Paid parental leave, adoption assistance, and tuition assistance.
  • Opportunity to receive premium pay such as overtime, shift differential, holiday pay, and allowances.
  • Newly hired employees receive up to 15 days of vacation per year, which grows with additional service.

Similar jobs