Threat Detections Engineer II jobs in United States
cer-icon
Apply on Employer Site
company-logo

CLEAR · 19 hours ago

Threat Detections Engineer II

CLEAR is a company focused on creating frictionless experiences through their identity platform. They are seeking a Threat Detection Engineer II to enhance their cyber defense capabilities by designing and refining detection logic to secure their systems.

BiometricsFacial RecognitionIdentity ManagementSecurity
check
H1B Sponsor Likelynote

Responsibilities

Design, implement, and tune custom detections that identify malicious or anomalous activity across a wide range of data sources
Translate threat intelligence, incident learnings, and emerging trends into high-impact detection logic
Partner closely with Threat Intelligence, Incident Response, Automation, and other security teams to operationalize new detections, refine response strategies, and improve overall signal fidelity
Continuously assess detection performance by analyzing false positives, coverage gaps, and visibility across critical assets
Support and expand automation efforts across the detection lifecycle—including development, validation, deployment, and routine maintenance
Document detection logic, workflows, and data sources clearly and consistently to support repeatability and scale
Map detection coverage to frameworks like MITRE ATT&CK and contribute to reducing measurable gaps over time

Qualification

Detection engineeringSIEM proficiencyThreat intelligenceAutomation frameworksNetworking knowledgePythonMITRE ATT&CKAnalytical skillsCollaborationDetail-oriented

Required

Building, tuning, and validating detections in SIEM or cloud-native environments, with a strong understanding of networking, identity, endpoint telemetry, and modern attack techniques
Spotting patterns across network, endpoint, identity, and cloud data—and using them to uncover meaningful signals in noisy environments
Writing clear, scalable detection logic using rule languages, scripting, automation frameworks, and Detection-as-Code practices (e.g., GitHub workflows)
Collaborating across security functions and communicating effectively to align detection outcomes with broader defense and business objectives
Staying curious, adaptable, and detail-oriented in a fast-moving threat landscape—constantly testing small improvements in tooling, process, and automation to drive program maturity
Bringing hands-on experience with tools such as Google Chronicle, YARA/YARA-L, BigQuery, SOAR platforms, and scripting languages like Python
Drawing on 3–5 years of experience in security operations or detection engineering; familiarity with frameworks like MITRE ATT&CK and Sigma

Preferred

Leveraging relevant certifications (e.g., CISSP, Sec+) when helpful, though not required

Benefits

Comprehensive healthcare plans
Family building benefits (fertility and adoption/surrogacy support)
Flexible time off
Free OneMedical memberships for you and your dependents
401(k) retirement plan with employer match

Company

CLEAR is an identity company that uses biometrics to build a connected world that’s smarter and more secure. It is a sub-organization of Alclear LLC.

H1B Sponsorship

CLEAR has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (2)
2022 (3)
2021 (1)
2020 (2)

Funding

Current Stage
Public Company
Total Funding
$135M
Key Investors
United AirlinesT. Rowe PriceDelta Air Lines
2021-06-30IPO
2021-02-08Private Equity· $100M
2019-07-29Corporate Round

Leadership Team

leader-logo
Caryn Seidman-Becker
Chairman & CEO
linkedin
Company data provided by crunchbase