Lead, Detection Engineer - Cyber Defense & Response jobs in United States
cer-icon
Apply on Employer Site
company-logo

PGIM · 3 days ago

Lead, Detection Engineer - Cyber Defense & Response

PGIM is a leading financial services institution seeking a Lead Detection Engineer within their Cyber Defense and Response organization. This role involves driving the strategic evolution of cyber threat detection capabilities and enhancing the organization's security posture through advanced detection logic and methodologies.

Asset Management
check
Culture & Values
check
H1B Sponsor Likelynote

Responsibilities

Lead the design and implementation of enterprise-scale cyber threat detection capabilities across diverse technologies, ensuring accuracy, resilience, and alignment with risk priorities
Drive advanced research into adversarial TTPs, guiding the team in creating innovative and proactive detection methodologies across varied cloud & on-prem platforms
Partner strategically with Cyber Threat Intelligence to prioritize, shape, and operationalize intelligence into high-impact, sustainable detection coverage
Collaborate with Cyber Threat Hunting to transform successful hunts into automated, scalable detections and long-term detection hypotheses
Architect and oversee development of detection engineering automations, frameworks, and reusable tooling to accelerate team velocity and maturity
Identify, influence, and implement detection engineering tooling, infrastructure, and data visibility improvements across the enterprise
Provide authoritative insight on detection and visibility gaps, driving remediation efforts with platform owners, security architects, and engineering teams
Lead cross-functional initiatives to establish security requirements, uplift telemetry coverage, and strengthen detection and response capabilities
Coach, mentor, and elevate team members, fostering technical excellence, analytical rigor, and innovative thinking
Champion emerging technologies and best practices, embedding continuous improvement and modern engineering approaches into day-to-day operations

Qualification

Detection EngineeringIncident ResponseThreat HuntingRisk-based AlertingSplunk Enterprise SecuritySPLKQLCyber Threat IntelligenceSecurity AutomationDigital ForensicsSoft SkillsLeadershipCommunication

Required

Extensive experience in detection engineering, incident response, threat hunting, or similar security operations roles, with a proven ability to lead complex technical initiatives
Expert understanding of Risked based alerting strategies and detection methodologies, capable of designing enterprise-wide detection models and influencing risk scoring frameworks
Deep knowledge of large enterprise architectures, including networks, operating systems (Windows, macOS, Linux), cloud ecosystems, and modern telemetry pipelines
Expert-level understanding of adversarial frameworks including MITRE ATT&CK and the Cyber Kill Chain, with demonstrated ability to translate them into operational detection logic
Advanced proficiency in Splunk Enterprise Security (ES) and its architecture, including correlation searches, risk frameworks, data models, and performance optimization
Advanced experience with SPL and KQL, including designing scalable, optimized, and maintainable detection libraries
Strong familiarity with SOAR, CI/CD, code repositories, and engineering pipelines, with the ability to influence development best practices for detection content
Ability to lead with inclusivity, leveraging diverse ideas and perspectives to achieve better analytical outcomes and team performance
Demonstrated leadership in continuous learning, staying ahead of emerging technologies, threats, and engineering methodologies
Exceptional communication and collaboration skills, with the ability to influence across technology, security, and business stakeholders
Applied experience with several of the following: Cyber Detection Engineering, Cyber Threat Hunting, Cyber Threat Intelligence, Digital Forensics & Incident Response, Security Automation & Orchestration (Python-based), Insider Risk Investigations

Preferred

Industry relevant certifications such as GDAT, GCDA, GCTD, GCTI, GMON, GPEN, GCIH, GCFA, OSCP, OSCE, OSWE, or equivalent

Benefits

Market competitive base salaries, with a yearly bonus potential at every level.
Medical, dental, vision, life insurance, disability insurance, Paid Time Off (PTO), and leave of absences, such as parental and military leave.
401(k) plan with company match (up to 4%).
Company-funded pension plan.
Wellness Programs including up to $1,600 a year for reimbursement of items purchased to support personal wellbeing needs.
Work/Life Resources to help support topics such as parenting, housing, senior care, finances, pets, legal matters, education, emotional and mental health, and career development.
Education Benefit to help finance traditional college enrollment toward obtaining an approved degree and many accredited certificate programs.
Employee Stock Purchase Plan: Shares can be purchased at 85% of the lower of two prices (Beginning or End of the purchase period), after one year of service.

Company

PGIM is a money manager whose clients rely on their risk management expertise, intellectual capital, and innovative solutions. It is a sub-organization of Prudential Financial.

H1B Sponsorship

PGIM has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (15)
2024 (12)
2023 (8)
2022 (8)
2021 (7)
2020 (14)

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Jakob Wilhelmus
Director, Thematic Research
linkedin
Company data provided by crunchbase