Detection Engineer Manager, Cyber Security

Capital One Financial

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
McLean, VARichmond, VANew York, NYPlano, TX
Salary
$197,300–$225,100 / yr
Employment
Full-time
Posted
4 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $183k
This role $211k
$123k most similar roles pay here $236k

This role pays more than 73% of similar roles. Most pay $150,000–$215,925 — the shaded band above. At the midpoint, this role pays about $211k versus about $183k for comparable roles.

Based on 240 similar postings.

Employer

About Capital One Financial

Capital One Financial is a bank holding company specializing in credit cards, auto loans, banking, and savings products, known for its data-driven approach to consumer and commercial finance. Industry: Financial Services & Banking

Capital One Financial currently has 1554 open roles on FindRole.

Listed pay typically runs $197,300–$225,100 across 796 roles with salary data.

Most-posted roles

View all roles at Capital One Financial

At a glance

TL;DR · Detection Engineer Manager, Cyber Security

The Detection Engineer Manager, Cyber Security leads a team focused on driving cybersecurity governance, capability maturation, and risk transformation. This role involves building AI-driven detection logic using LLMs and machine learning to automate workflows, reduce false positives, and accelerate development cycles via the Detection Engineering Assistant. The manager oversees Detection-as-Code methodologies, managing CI/CD pipelines and the Cyber Detection Library while designing high-fidelity behavioral detections for adversary patterns and TTPs. Key responsibilities include utilizing the MITRE ATT&CK framework to close endpoint coverage gaps and conducting hypothesis-driven threat research based on Red Team techniques. The role requires expertise in Python, Splunk, CrowdStrike Falcon, SentinelOne, Microsoft Defender, and AWS Security Hub. The position addresses the critical challenge of securing enterprise endpoint environments by translating complex technical findings into actionable reports while ensuring compliance with strict fintech audit standards.

What you'll do

  • Use LLMs and machine learning to automate detection logic and reduce false positives.
  • Lead the design and maintenance of detection rules using Detection-as-Code methodologies and CI/CD pipelines.
  • Build high-fidelity behavioral detections to identify adversary patterns and anomalous endpoint activity.
  • Utilize the MITRE ATT&CK framework to identify and close endpoint coverage gaps.
  • Conduct hypothesis-driven threat research to translate attacker techniques into proactive detection rules.
  • Manage the full lifecycle of endpoint detection, from telemetry onboarding to alert tuning.
  • Ensure all security documentation meets strict fintech compliance and audit standards.
  • Mentor engineers on traditional security concepts and emerging AI-driven workflows.

What we're looking for

  • At least 5 years of experience in cybersecurity or information technology.
  • At least 4 years of experience evaluating, contributing to, or supporting development of cybersecurity capabilities.
  • At least 4 years of experience with endpoint or host logs including Windows Event Logs, Sysmon, and EDR telemetry.
  • At least 2 years of experience with EDR platforms such as CrowdStrike Falcon, SentinelOne, or Microsoft Defender.
  • At least 1 year of experience with machine learning or data science applied to security.
  • 6+ years of experience in Threat Detection, Threat Hunting, or Security Engineering (preferred).
  • 5+ years of experience with cybersecurity frameworks like NIST CSF and MITRE ATT&CK (preferred).
  • Bachelor's Degree.

More like this

Similar roles

Detection Engineer Manager

Capital One Financial

McLean, VA +3 23 days ago
EDR Python SQL GitHub CI/CD YAML CrowdStrike Falcon SentinelOne Microsoft Defender Databricks Apache Spark Machine Learning GenAI Windows Event Logs Sysmon Linux macOS
4+ yrs exp

Manager, Cyber Security, Cyber Fraud Intelligence

Capital One Financial

McLean, VA +3 10 days ago $179,400–$204,700
NIST CSF MITRE ATT&CK CMMC FedRAMP AWS Azure GCP Splunk Crowdstrike Qualys AWS Security Hub SQL Python Perl PHP PowerShell Agentic AI Cybersecurity Governance Risk Management
5+ yrs exp

Security Engineer (Detection Engineering)

SpaceX

Redmond, WA 71 days ago $130,000–$155,000
Python Go C++ Rust Kubernetes SIEM ETL Incident Response Automation Linux Windows macOS Security Operations Detection Engineering

Senior Security Engineer, Detection & Response

Robinhood

Bellevue, WA +2 12 days ago $187,000–$220,000
Incident Response Detection Engineering Kubernetes SOAR AI Threat Hunting Threat Intelligence Vulnerability Management Blockchain DeFi
5+ yrs exp Hybrid