Threat Detections Engineer II jobs in United States
cer-icon
Apply on Employer Site
company-logo

CLEAR · 12 hours ago

Threat Detections Engineer II

CLEAR is a company focused on creating frictionless experiences for its users through its identity platform. They are seeking a Threat Detection Engineer II to enhance their cyber defense capabilities by designing and refining detection logic to secure their systems.

BiometricsFacial RecognitionIdentity ManagementSecurity
check
H1B Sponsor Likelynote

Responsibilities

Design, implement, and tune custom detections that identify malicious or anomalous activity across a wide range of data sources
Translate threat intelligence, incident learnings, and emerging trends into high-impact detection logic
Partner closely with Threat Intelligence, Incident Response, Automation, and other security teams to operationalize new detections, refine response strategies, and improve overall signal fidelity
Continuously assess detection performance by analyzing false positives, coverage gaps, and visibility across critical assets
Support and expand automation efforts across the detection lifecycle—including development, validation, deployment, and routine maintenance
Document detection logic, workflows, and data sources clearly and consistently to support repeatability and scale
Map detection coverage to frameworks like MITRE ATT&CK and contribute to reducing measurable gaps over time

Qualification

Detection engineeringThreat intelligenceSIEM proficiencyAutomation frameworksNetworking knowledgeCloud-native environmentsScripting languagesAnalytical skillsCollaboration skillsDetail-oriented

Required

3–5 years of experience in security operations or detection engineering
Building, tuning, and validating detections in SIEM or cloud-native environments
Strong understanding of networking, identity, endpoint telemetry, and modern attack techniques
Spotting patterns across network, endpoint, identity, and cloud data
Writing clear, scalable detection logic using rule languages, scripting, automation frameworks, and Detection-as-Code practices (e.g., GitHub workflows)
Collaborating across security functions and communicating effectively to align detection outcomes with broader defense and business objectives
Staying curious, adaptable, and detail-oriented in a fast-moving threat landscape
Bringing hands-on experience with tools such as Google Chronicle, YARA/YARA-L, BigQuery, SOAR platforms, and scripting languages like Python
Translating threat intelligence, incident learnings, and emerging trends into high-impact detection logic
Partnering closely with Threat Intelligence, Incident Response, Automation, and other security teams to operationalize new detections
Continuously assessing detection performance by analyzing false positives, coverage gaps, and visibility across critical assets
Supporting and expanding automation efforts across the detection lifecycle
Documenting detection logic, workflows, and data sources clearly and consistently
Mapping detection coverage to frameworks like MITRE ATT&CK and contributing to reducing measurable gaps over time

Preferred

Familiarity with frameworks like MITRE ATT&CK and Sigma
Leveraging relevant certifications (e.g., CISSP, Sec+) when helpful, though not required

Benefits

Comprehensive healthcare plans
Family building benefits (fertility and adoption/surrogacy support)
Flexible time off
Free OneMedical memberships for you and your dependents
401(k) retirement plan with employer match
Meals and snacks
Stipend and reimbursement programs

Company

CLEAR is an identity company that uses biometrics to build a connected world that’s smarter and more secure. It is a sub-organization of Alclear LLC.

H1B Sponsorship

CLEAR has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (2)
2022 (3)
2021 (1)
2020 (2)

Funding

Current Stage
Public Company
Total Funding
$135M
Key Investors
United AirlinesT. Rowe PriceDelta Air Lines
2021-06-30IPO
2021-02-08Private Equity· $100M
2019-07-29Corporate Round

Leadership Team

leader-logo
Caryn Seidman-Becker
Chairman & CEO
linkedin
Company data provided by crunchbase