Hiring.Camp

Threat Detection Engineer

Legato Security

·

Jan 27, 2026

Location
Salt Lake City, Utah, United States
Department
Engineering
Experience
3+ years
Education
Bachelor
Source
Greenhouse

Description

Threat Detection Engineer 

 

Who We Are 

Legato Security is an information security firm founded upon the belief that every organization has the right to keep its data private and secure. Our mission is to build close partnerships with our clients, serving them not as just a vendor, but as trusted advisors helping to build effective, proactive plans. Our focus is always on both the technical and human elements within an organization. We believe in comprehensive strategies designed to harden networks, deflect attackers, and rapidly recover from any accidents. As technology progresses, so do our tactics, ensuring our experts are always prepared to serve forward-looking leaders eager to stay ahead of emerging threats. 

 

Position Overview 

Legato Security is seeking a motivated junior or mid-level Detection Engineer to assist with detection engineering efforts. As a Detection Engineer, you will assist with rule creation, rule tuning, creating documentation, assisting with on-going infrastructure projects, and assisting with customer requests.

Specific Job Responsibilities 

  • Create, improve, review, and tune detection rules in various SIEMs (e.g., Sumo Logic, Google SecOps, Stellar Cyber). This will include log reviews of customer environments to make informed decisions.
  • Assist in creating and maintaining documentation for detection procedures, workflows, and active projects.
  • Collaborate with SOC analysts to improve detection accuracy and reduce false positives
  • Help maintain and update detection use cases based on emerging threats and customer-specific logs.
  • Assist in creating regular reports on detection metrics and effectiveness.
  • Review and respond to internal and customer requests to assist with anything related to detection engineering.
  • Contribute to declarative and imperative programming projects to assist with detection as code.

 Qualifications 

Required Qualifications: 

  • Bachelor's degree in Computer Science, Cybersecurity, related field or equivalent industry experience
  • 3-5 years of experience in detection engineering or a related field (e.g., SOC Analyst, Pen Testing, IT Infrastructure, Network Engineering, or Software Development). Job-specific experience in detection engineering is not required
  • Familiarity with networking principals (e.g. routing, common protocols, firewall functionality, etc.)
  • Basic understanding of Windows operating systems (e.g. versions, common exploits, understanding of registries, exposed protocols, common enumeration commands, etc.)
  • Active Directory Fundamentals (e.g. basic understanding of NTLM and Kerberos, how to use LDAP, understanding of common attacks within Active Directory.)
  • Understanding of Detection as Code and common exploits
  • Strong interest in pursuing a career in detection engineering
  • Ability to quickly learn different tool sets and environments
  • Strong written and verbal communication skills
  • Ability to prioritize multiple competing projects, meet deadlines, and work effectively in a team environment

Preferred Qualifications: 

  • Applicants who demonstrate personal learning and curiosity through personal projects will be prioritized. e.g. home labs, personal Github projects, write-ups, blog posts, Hack the Box profile, TryHackMe profile.
  • Relevant certifications such as OSCP (Offsec), OSDA (Offsec), CPTS (HTB), CDSA (HTB), etc.

Perks 

·       Start-up company in a growth phase with opportunity for advancement based on performance 

·       Start-up culture with an office in downtown Salt Lake City, UT 

·       Competitive medical and dental benefits for employee and family members 

·       Other voluntary benefits such as short-term disability, life insurance, children’s orthodontia, with additional voluntary benefits available 

·       Flexible Paid Time Off policy 

·       Professional Development opportunities specific to role  

 

Skills

GitHubCybersecuritySOC

Similar Jobs

30

Threat Detection Engineer

Regions · Hoover, AL - Riverchase Operations Center (Birmingham, AL), United States of America +3

Yesterday

Threat Detection Engineer

Tenex · Sarasota, FL HQ

5 months ago

Engineer, Threat Detection - 5

Tide · United Kingdom

Yesterday

Principal AI Threat Detection Engineer - Insider Threat

Blackbaud · Remote - Anywhere - USA, United States of America · Remote

1 week ago

Senior Security Engineer - Threat Detection

Grab · Petaling Jaya, Malaysia · Onsite

1 week ago

Staff Information Security Engineer - Threat Detection & Response

Visier Solutions Inc · Vancouver, BC, Canada

2 weeks ago

Member of Technical Staff, SecOps & Threat Detection Engineer

Envoy · San Francisco, CA · Onsite

1 month ago

Security Engineer (Threat Detection & Response)

Mastercard · Mexico City, Mexico

1 month ago

Senior Engineer: Threat Detection Engineering

Target · 7000 Target Pkwy N, Brooklyn Park,MN 55445-4301, United States of America

1 month ago

Senior Engineer - Threat Detection Engineering

Target · 7000 Target Pkwy N,NCD-0375 Brooklyn Park,MN 55445, United States of America

1 month ago

Senior Threat Detection Engineer

Salesforce · Washington - Bellevue, United States of America · Onsite

1 month ago

Threat Detection Engineer – Security Operations

Idme · Mountain View, California, United States

1 month ago

Senior Threat Detection Engineer

Blackbaud · Remote - Anywhere - USA, United States of America · Remote

1 month ago

AI Threat Detection Engineer, Senior Specialist

Vanguard · Malvern, PA, United States of America +1

1 month ago

AI Threat Detection Engineer, Senior Specialist

Vanguard · Malvern, PA, United States of America +1

1 month ago

Threat Detection Engineer - Cybersecurity

Neysa Networks Private Limited - Linkedin · Chennai +1 · Onsite

2 months ago

Security Engineer - Threat Detection

Snowflake · US, Remote · Remote

3 months ago

Tetragon Threat Detection Engineer - Isovalent

Cisco · CHE-ZURICH, Switzerland +18 · Remote

3 months ago

Senior Threat Researcher- Threat Detection Engineer

Sophos · India · Remote

1+ year ago

Lead Threat Detection Engineer

The Future of Health Starts with You · Irving, TX, USA - 6555 North State Highway 161 (P001), United States of America · Remote

1+ year ago

Senior Security Engineer- Threat Engineering Detection Team

Truist · Atlanta GA - 303 Peachtree Center Avenue - Garden Offices, United States of America +2

Yesterday

Threat Detection & Automation Engineer

Fiserv is the global leader · Berkeley Heights, New Jersey, United States of America · Onsite

1 week ago

Threat Detection & Response Engineer, Senior (High Level Clearance Required)

Icf · Virginia Client Office (VA88), United States of America +1

3 weeks ago

Threat Detection & Automation Engineer (with focus on Data Engineering)

Northwestern Mutual · Milwaukee, WI Corporate, United States of America +1

3 weeks ago

Threat-Led Detection Engineer

LON3 London - 51 Lime Street · London, London, United Kingdom, GB

1 month ago

Senior Security Engineer - Threat Intelligence & Detection Engineering (Hybrid - Seattle)

Us We · Seattle WA, United States of America · Hybrid

2 months ago

Cybersecurity Threat Detection & Response Engineer

Hp · BCN03 - Barcelona S.Cugat B3 (BCN03), Spain

2 months ago

Cybersecurity Threat Detection & Response Engineer

Hp · BCN03 - Barcelona S.Cugat B3 (BCN03), Spain

2 months ago

Cybersecurity Threat Detection & Response Engineer

HP · Sant Cugat del Vallès, CT,ES, ES

2 months ago

Threat Detection Security Engineer

Costar · US-VA Arlington, United States of America · Remote, Onsite

3 months ago