Talent.com
Senior Threat Detection Engineer

Senior Threat Detection Engineer

PaylocitySchaumburg, IL, US
4 days ago
Job type
  • Full-time
Job description

Job Description

Job Description

Description :

Paylocity is an award-winning provider of cloud-based HR and payroll software solutions, offering the most complete platform for the modern workforce. The company has become one of the fastest-growing HCM software providers worldwide by offering an intuitive, easy-to-use product suite that helps businesses automate and streamline HR and payroll processes, attract and retain talent, and build a strong workplace culture.

While traditional HR and payroll providers automate basic HR processes such as payroll and benefits administration, Paylocity goes further by developing tools that HR and businesses need to compete for talent and deliver against the expectations of the modern workforce.

We give our employees what they need to succeed, including great benefits and perks! We offer medical, dental, vision, life, disability, and a 401(k) match, as well as perks that support you, your family, and your finances. And if it’s career development you desire, we provide that, too! At Paylocity, people matter most and have always been at the heart of our business.

Help Paylocity enhance communication and enable employees to connect, collaborate, and create from anywhere with a position in Product & Technology!

Want to develop the strategies and principles needed to deliver compelling software? Join our team and help us enhance our all-in-one software platform, elevate our one-of-a-kind technology, and improve the employee experience.

Take your career to the next level at one of G2's Top 100 Software Companies. Explore our Product & Technology positions to see where you fit!

Who you are :

Reporting to the Threat Management Leader within the larger Security Operations Team, the Senior Detection and SIEM Engineer is an expert in SIEM, SOAR, and platform logs. A keen understanding of detection logic, threat analysis, threat hunting, IOCs, and search / query languages are required to be successful in this role. Detection Engineering refers to the processes, practices, and services necessary to make our investments in threat detection platforms pay off. It is the link between security event analysis, incident response and the SIEM and other detection platforms (among others). The role focuses on helping prioritize log sources, improving the signal-to-noise ratio, deploying and administering SIEM and other detection tools, and ensuring the Cyber Threat Operations Team has the monitoring visibility needed to be successful in its mission.

General Attributes and Responsibilities :

  • Must be able to work with all levels of individual contributors and leaders
  • Must be able to manage time and resources against high-level goals and strategies
  • Must be able to manage relationships with third-party vendors and support staff
  • Must be able to work in a collaborative fashion with a willingness to share ideas and drive continuous improvement
  • Must be entrepreneurial and a self-starter : if you have ideas for improvement, seek to suggest and execute
  • Must provide authoritative technical point-of-view for project and roadmap development / planning in the SIEM and Detection space

Detection SME :

  • Collaborate with IT and Security teams to build and improve capabilities to effectively detect and respond to security incidents or other high value activities
  • Perform analysis against logs from a variety of sources to identify potential threats and detection ideas while also managing the signal-to-noise ratio
  • Design, implement, and fine-tune advanced detection mechanisms to proactively identify potential security threats
  • Periodically review the Detection Engineering workstreams, assessing them for maturing and assisting management in prioritizing program growth and improvements
  • SOAR SME :

  • Design, build, and maintain workflows and automations that auto-resolve incidents as appropriate
  • Design, build, and maintain workflows and actions that enrich incidents to increase investigative scaling, decrease response times, and improve efficiency of analysis
  • SIEM SME :

  • Manage daily care and feeding of the SIEM tool, as well as assisting peers in managing other detection tools
  • Lead and execute log ingestion efforts to ensure relevant logs are identified and prioritized for correlation
  • Design and carry out enablement of other security functions and outcomes such as purple teaming and threat hunting
  • Assist with proof-of-concepts or implementation of security tooling and platforms
  • Serve as Tier 4 for Threat Management workstreams as appropriate and assigned by manager
  • Perform analysis against logs from differing sources to improve security-relevant logging pipelines
  • Prioritize and champion “store only what is needed” strategies to help control SIEM costs
  • Together with Senior Cyber Threat Analysts, document response actions and tasks for effective handling of threat investigation and response (triage playbooks)
  • The Ideal Candidate Will Possess :

  • A bachelor's degree and 6+ years' experience in any combination of cyber threat analysis, SIEM engineering, detection engineering, threat hunting, purple teaming, and threat intelligence
  • Excellent written and verbal communication, strong interpersonal skills
  • Advanced experience with SIEM and SOAR platforms such as SPLUNK, Exabeam, QRadar, etc. Experience with Exabeam and Crowdstrike a plus
  • Demonstrated proficiency in understanding and executing enterprise architecture and software development life cycle methodologies
  • Comfortable with performing proof of concepts and technical evaluations
  • Knowledge of IT environments including servers, endpoints, cloud, security platforms and ecosystems, remote working environments, and CI / CD pipelines
  • Experience with Linux operating systems (Ubuntu, Centos / Redhat)
  • Demonstrated hands-on technical knowledge of Active Directory including permissions, Group Policy, etc.
  • Experience with layer-2 and layer-3 networking protocols and managed networking equipment i.e. switches, routers, firewalls
  • Technical knowledge of M365 services including Exchange Online, Power BI, SharePoint, and O365
  • Advanced experience with Microsoft Entra ID, Windows Defender alerting
  • Strong Background in automation including web APIs (REST, PowerShell, Python preferred)
  • Technical knowledge of VMware (vSphere, ESX, etc.)
  • Proven experience with Cloud platforms (AWS, Azure, Google Cloud, etc.)
  • Paylocity is an equal-opportunity employer. Paylocity is committed to the full inclusion of all individuals. We recruit, train, compensate, and promote regardless of race, religion, color, national origin, sex, disability, age, veteran status, and other protected status as required by applicable law. At Paylocity, we believe diversity makes us better.

    We embrace and encourage our employees’ differences in age, culture, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion or spiritual belief, sexual orientation, socio-economic status, veteran status, and other characteristics that make our employees unique. We actively cultivate these differences through our employee resource groups (ERGs), employee experiences, perspectives, talents, and approaches to drive innovation in the software and services we provide our customers.

    We comply with federal and state disability laws and make reasonable accommodations for applicants and employees with disabilities. To request reasonable accommodation in the job application or interview process, please contact accessibility@paylocity.com. This email address is exclusively designated for such requests, aligning with federal and state disability laws. Please do not send resumes to this email address, as they will be removed.

    This role can be performed from any office in the US. The pay range for this position is $145k - $160 / yr; however, base pay offered may vary depending on job-related knowledge, skills, and experience. This position is eligible for an annual restricted stock unit grant based on individual performance in addition to a full range of benefits outlined here. This information is provided per the relevant state and local pay transparency laws for the location in which this position will be performed. Base pay information is based on market location. Applicants should apply via www.paylocity.com / careers.

    #LIremote

    Requirements :

    Create a job alert for this search

    Detection Engineer • Schaumburg, IL, US

    Related jobs
    • Promoted
    Senior Product Security Offensive Engineer

    Senior Product Security Offensive Engineer

    iManageChicago, IL, US
    Full-time
    We offer a flexible working policy that supports a healthy balance between personal and professional well-being.This role requires in-office presence on Tuesdays & Thursdays to collaborate, con...Show moreLast updated: 30+ days ago
    • Promoted
    Engineer, Site Risk Management - Midwest

    Engineer, Site Risk Management - Midwest

    Constellation EnergyLombard, IL, US
    Full-time
    As the nation's largest producer of clean, carbon-free energy, Constellation is focused on our purpose : accelerating the transition to a carbon-free future. We have been the leader in clean ener...Show moreLast updated: 3 days ago
    • Promoted
    EHS Co-Op - Spring 2026

    EHS Co-Op - Spring 2026

    EntegrisAurora, IL, United States
    Full-time
    Here at Entegris, we use advanced science to enable technologies that transform the world, and we are seeking employees who have the drive to continue the mission. Our site in Aurora, IL is seeking ...Show moreLast updated: 30+ days ago
    • Promoted
    Bomb Technical

    Bomb Technical

    U.S. NavyBridgeview, IL, US
    Full-time +1
    To be eligible to enlist in the U.Navy, candidates must be between the ages of 18-34.Americans live for fireworks on the Fourth of July. The other 364 days of the year, Explosive Ordnance Disposal (...Show moreLast updated: 3 days ago
    • Promoted
    Security Engineer

    Security Engineer

    RAPPChicago, IL, United States
    Full-time
    RAPP Chicago is looking for a Security Engineer to join our award-winning Technology team.We are RAPP - world leaders in activating growth with precision and empathy at scale.As a global, next-gene...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Director, Analytical Laboratories

    Senior Director, Analytical Laboratories

    EntegrisAurora, IL, United States
    Full-time
    Senior Director, Analytical Laboratories.Here at Entegris, we use advanced science to enable technologies that transform the world, and we are seeking employees who have the drive to continue that ...Show moreLast updated: 30+ days ago
    • Promoted
    Manufacturing Engineer Co-Op - Spring 2026

    Manufacturing Engineer Co-Op - Spring 2026

    EntegrisAurora, IL, United States
    Full-time
    Manufacturing Engineer Co-Op - Spring 2026.Manufacturing Engineer Co-Op - Spring 2026.Here at Entegris, we use advanced science to enable technologies that transform the world, and we are seeking e...Show moreLast updated: 30+ days ago
    • Promoted
    Advanced Security Engineer - Cyber Security

    Advanced Security Engineer - Cyber Security

    RelativityChicago, IL, United States
    Full-time
    As an Advanced Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging t...Show moreLast updated: 30+ days ago
    • Promoted
    Non-Destructive Evaluation (NDT) Instructor - Level 3 - CCC&E

    Non-Destructive Evaluation (NDT) Instructor - Level 3 - CCC&E

    InsideHigherEdPalos Hills, Illinois, United States
    Part-time
    Non-Destructive Evaluation (NDT) Instructor - Level 3 - CCC&E.Community Education (CCC&E) is looking for professional non-destructive testing (NDT) faculty to support the highly regarded NDT progra...Show moreLast updated: 29 days ago
    • Promoted
    Lead Security Engineer - Cyber Security

    Lead Security Engineer - Cyber Security

    RelativityChicago, IL, United States
    Full-time
    As a Lead Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging threat...Show moreLast updated: 30+ days ago
    • Promoted
    Information Security Engineer

    Information Security Engineer

    Green Thumb IndustriesChicago, IL, United States
    Full-time
    Information Security Engineer who thrives at the intersection of technical execution and security operations.The role is primarily remote but you must live within the Chicagoland area to come into ...Show moreLast updated: 9 days ago
    • Promoted
    Application Security Engineer

    Application Security Engineer

    TEKsystemsChicago, IL, United States
    Full-time
    Must be able to go onsite in Dallas, TX or Chicago, IL •.As a Lead Cybersecurity Engineer, you will be responsible for understanding and contributing to Security by Design practices, secure applicat...Show moreLast updated: 26 days ago
    • Promoted
    Associate Principal, Cyber Defense

    Associate Principal, Cyber Defense

    The Options Clearing CorporationChicago, IL, United States
    Full-time
    THIS POSITION IS NOT ELIGIBLE FOR VISA SPONSORSHIP • • • • •.The Associate Principal, Cyber Defense is responsible for the in-depth analysis and response to security incidents escalated from Tier 1 anal...Show moreLast updated: 30+ days ago
    • Promoted
    Senior IT Security Analyst

    Senior IT Security Analyst

    Busey BankBurr Ridge, IL, United States
    Full-time
    The Senior IT Security Analyst is responsible for managing activities relating to monitoring and responding to security events. The analyst is responsible for monitoring application, host, and netwo...Show moreLast updated: 19 days ago
    • Promoted
    Engineer, Fleet Risk Management - Midwest

    Engineer, Fleet Risk Management - Midwest

    Constellation EnergySugar Grove, IL, US
    Full-time
    As the nation's largest producer of clean, carbon-free energy, Constellation is focused on our purpose : accelerating the transition to a carbon-free future. We have been the leader in clean ener...Show moreLast updated: 3 days ago
    • Promoted
    Info Sec Insider Threat Alst

    Info Sec Insider Threat Alst

    Old National BankTinley Park, IL, United States
    Full-time
    US-IL-Tinley Park | US-IL-Chicago | US-IN-Evansville | US-MN-Lake Elmo | US-MN-St Louis Park | US-IN-Indianapolis | US-KY-Louisville | US-WI-Milwaukee | US-MI-Troy | US-WI-Madison | US-TN-Nashville...Show moreLast updated: 30+ days ago
    • Promoted
    Travel MRI Tech - $2,076 to $2,302 per week in Zion, IL

    Travel MRI Tech - $2,076 to $2,302 per week in Zion, IL

    AlliedTravelCareersZion, IL, US
    Full-time
    AlliedTravelCareers is working with LRS Healthcare to find a qualified MRI Tech in Zion, Illinois, 60099!.Ready to start your next travel adventure? LRS Healthcare offers a full benefits package, 2...Show moreLast updated: 1 day ago
    • Promoted
    Sr Tech, Process Engr

    Sr Tech, Process Engr

    Clayens US LLCCrystal Lake, IL, US
    Full-time
    Assist Engineering Team with Factory Acceptance Tests (FAT) executions on new presses, molds, as well as assist with Site Acceptance Tests / Installation Qualifications (SAT / IQ), Operational Qualific...Show moreLast updated: 3 days ago