Source Job

$96,600–$138,000/yr
US

  • Analyze EDR telemetry, alerts, and log sources across Endpoint, Identity, Network, and Cloud/SaaS.
  • Publish threats for customers with concise written communication conveying key indicators and remediation context.
  • Improve Detection Operations workflow through orchestration and automation to manage high volumes of telemetry.

EDR SQL Threat Analysis Cloud Security Automation

18 jobs similar to Detection Analyst

Jobs ranked by similarity.

US

  • Design, build, and operate high-signal detections across endpoint, identity, cloud, and SaaS environments.
  • Implement and tune detection content across SIEM/XDR/EDR and cloud telemetry using detections-as-code with CI/CD and version control.
  • Proactively hunt for threats, operationalize threat intelligence, and contribute to incident response and automation efforts.

LinkedIn is the world's largest professional network, built to create economic opportunity for every member of the global workforce. They aspire to create a culture built on trust, care, inclusion, and fun where everyone can succeed.

India

  • Monitor security alerts and events to identify potential threats and vulnerabilities.
  • Detect and analyze security incidents using multiple security tools like SIEM, EDR, and IDS/IPS.
  • Respond to security incidents promptly following established procedures and perform phishing analysis.

Zscaler accelerates digital transformation so customers can be more agile, efficient, resilient, and secure with its Zero Trust Exchange platform. The company employs thousands globally and fosters a culture of ownership, collaboration, and continuous feedback.

US

  • Define and drive LinkedIn's detection strategy across endpoint, identity, cloud, and SaaS environments.
  • Architect and operate high-signal detection capabilities using detections-as-code, telemetry modeling, and data-driven effectiveness measures.
  • Provide technical leadership, mentor engineers, and drive strategic investments to improve detection fidelity, scalability, and operational efficiency.

We are the world's largest professional network, built to create economic opportunity for every member of the global workforce. We're committed to providing transformational opportunities for our own employees by investing in their growth, cultivating a culture built on trust, care, inclusion, and fun.

Australia 12w maternity 12w paternity

  • Triage and investigate intrusions, analyze logs and forensic artifacts to determine root causes.
  • Perform dynamic malware analysis and refine detection capabilities to address emerging threats.
  • Collaborate with product and engineering teams to evolve human-led agentic workflows.

Huntress is a cybersecurity company founded in 2015 by former NSA cyber operators, making enterprise-grade security accessible to businesses of all sizes. They secure over 5 million endpoints and 14 million identities worldwide with a remote-first team and a 24/7 human-led Security Operations Center.

Argentina

  • Perform log source onboarding and telemetry analysis to support security assessments.
  • Write and tune detection logic, cut false positives, and build content for coverage gaps.
  • Conduct vulnerability analysis and turn scanner output into prioritized remediation.

EVOCS empowers businesses with advisory expertise and technology solutions to help them grow and prosper. Founded by a team of passionate experts, we have grown into a trusted partner with a commitment to quality, consistency, and client success, operating with an employee-managed culture.

$70,000–$100,000/yr
US Unlimited PTO

  • Monitor SIEM, EDR/XDR, and other security platforms for threats and respond to incidents.
  • Engineer and maintain SIEM integrations, detection rules, and security automation.
  • Collaborate with IT, Engineering, and Product teams to embed security into systems.

$80,000–$100,000/yr
US

  • Log source onboarding and telemetry analysis for SIEM integration in live client environments.
  • Write and tune detection logic to reduce false positives and address coverage gaps.
  • Turn vulnerability scanner output into prioritized findings using exploitability and asset criticality.

EVOCS is an IT consulting firm helping businesses operate effectively and solve complex challenges through technology solutions. The company serves a loyal customer base with a focus on quality, consistency, and building lasting client relationships based on trust and mutual success.

US 12w maternity 12w paternity

  • Triage, investigate, and respond to alerts from the Huntress platform, reviewing EDR telemetry and forensic artifacts.
  • Perform tactical malware analysis and investigate suspicious M365 activity to determine root cause and provide remediations.
  • Assist in escalations, contribute to detection engineering, and collaborate on projects to improve analyst and partner outcomes.

Huntress is a fully remote, global team of cybersecurity experts on a mission to break down barriers to security. Founded in 2015 by former NSA operators, they protect over 4 million endpoints with enterprise-grade products, serving underresourced IT teams.

Mexico

  • Lead cybersecurity investigations across cloud, endpoint, identity, SaaS, email, and network environments.
  • Partner with Engineering, Infrastructure, Fraud, Legal, Communications, and Product teams to manage incidents and communicate risk.
  • Support continuous improvement through automation, AI-assisted security workflows, and detection tuning.

Oportun is a mission-driven financial services company that empowers members with intelligent borrowing, savings, and budgeting capabilities. Since inception, it has provided over $21.3 billion in responsible credit and fosters a diverse, equitable, and inclusive culture.

Europe

  • Monitor threats and investigate suspicious activities using logs and detection systems.
  • Analyze attack patterns and build detailed threat scenarios from collected data.
  • Improve detection and blocking mechanisms for automated attacks and malicious behaviors.

Sigma Software is a technology company that provides advanced cybersecurity solutions and application protection services. The remote team is collaborative, experienced, and operates within European time zones.

US

  • Support the security team by monitoring and triaging security activity, investigating potential threats, and improving security operations across endpoint, network, and cloud platforms.
  • Assist with developing SIEM detection rules, analyzing security telemetry for anomalous behavior, and conducting targeted threat-hunting activities.
  • Work with vulnerability management, threat intelligence, and documentation to strengthen security practices and ensure adherence to policies.

SimSpace is an AI Proving Ground that helps organizations train, test, and outmaneuver adversaries through realistic cyber simulations. Founded in 2015 by experts from U.S. Cyber Command and MIT Lincoln Laboratory, the company fosters a culture of continuous learning and professional growth, consistently outperforming industry benchmarks in internal mobility and promotions.

US

  • Monitor and analyze sophisticated cyber threats targeting Anduril's products, infrastructure, and personnel.
  • Research and anticipate emerging technical trends in the threat landscape, collaborating with detection and response teams.
  • Enhance tooling for threat actor tracking and intelligence data integration, engaging with external partners.

Anduril Industries is a defense technology company focused on transforming military capabilities with advanced technology, including AI-powered systems and autonomy. The company is known for its fast-paced, innovative culture and its commitment to bringing cutting-edge solutions to the defense industry.

$144,300–$216,500/yr
US

  • Proactively hunt for advanced threats and dissect complex fraud vectors using hypothesis-driven threat hunting operations.
  • Apply and enrich the FT3 taxonomy to standardize threat intelligence across kill chain phases and API endpoints.
  • Collaborate cross-functionally to integrate threat intelligence, build agentic simulation workflows, and eliminate product vulnerabilities.

Stripe is a financial infrastructure platform for businesses, enabling millions of companies to accept payments and grow revenue. They are a large, global company with a mission to increase the GDP of the internet and a culture of innovation and collaboration.

Mexico

  • Monitor transactions and customer accounts to identify and investigate suspicious or fraudulent activity.
  • Utilize fraud detection tools and SQL to analyze large datasets for patterns and anomalies.
  • Develop and implement fraud prevention strategies and stay updated on emerging threats.

Sezzle is a fintech company revolutionizing shopping with interest-free installment plans to financially empower the next generation. They are building an innovative, dynamic team passionate about creating a unique shopping journey.

US

  • Build and scale a world-class insider threat program, including detection logic and automation.
  • Collaborate with cross-functional teams including HR, Legal, and Engineering to investigate and mitigate insider risks.
  • Participate in on-call rotation and proactively hunt for threats across corporate and production environments.

Maleda Tech is a technology consulting firm specializing in security and threat detection. They operate as a fast-paced team supporting major organizations, with a focus on building and scaling insider threat programs.

US

  • Design and implement scalable detection logic to identify insider threats and data exfiltration across corporate and production environments.
  • Conduct proactive threat hunting and incident response, collaborating with HR, Legal, and engineering teams during complex investigations.
  • Develop automation and detection models using Python and SQL to strengthen security response capabilities and reduce risk exposure.

The company is a technology organization specializing in security and threat detection. They operate in a fast-paced, collaborative environment with a focus on insider threat prevention and response.

$120,000–$180,000/yr
Unlimited PTO

  • Own detection problems end-to-end, from emerging threats to production coverage, using AI to automate repetitive investigative work.
  • Partner with Product and Engineering on signals, detection logic, and validation, and work with customers and GTM on real-world TTPs.
  • Bring deep practitioner judgment from detection engineering, SOC/IR, or threat intelligence, and turn messy failures into durable fixes.

Doppel builds an AI-native platform for social engineering defense, protecting enterprises from phishing, impersonation, and fraud. Backed by top investors, this Series C startup is growing fast with a remote-first culture that values respect, collaboration, and meaningful work.

US

  • Perform investigations of security incidents using digital forensics and data analytics.
  • Apply coding, data analytics, and investigative skills to hunt, detect, and respond to threats.
  • Build automation and detection models to identify anomalous activity and support response efforts at scale.

Maleda Tech is a technology staffing and consulting firm that provides security engineering services. They are hiring for a contract role supporting a major technology organization.