Endpoint Detection Engineer

State Street

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
Atlanta, GA
Salary
$120,000–$202,500 / yr
Posted
2 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $183k
This role $161k
$107k most similar roles pay here $238k

This role pays less than 65% of similar roles. Most pay $149,237–$216,065 — the shaded band above. At the midpoint, this role pays about $161k versus about $183k for comparable roles.

Based on 240 similar postings.

Employer

About State Street

State Street Corporation is one of the world''s largest custodian banks and asset managers, providing investment servicing, investment management, and investment research to institutional investors. Industry: Financial Services & Asset Custody

State Street currently has 176 open roles on FindRole.

Listed pay typically runs $120,000–$202,500 across 172 roles with salary data.

Most-posted roles

View all roles at State Street

At a glance

TL;DR · Endpoint Detection Engineer

The Endpoint Detection Engineer joins the Global Cybersecurity team to detect potential cyberattacks and provide actionable alerts for security operations center analysis. This role involves drafting detection use cases in Falcon Query Language and other query languages, while documenting processes within Jira and Confluence. The engineer investigates threat reports to determine if new detections are warranted and presents production-ready use cases to executive governing boards. Key responsibilities include writing business cases, project plans, and technical justifications for detection projects. Required skills include proficiency in SPL, FQL, SQL, and scripting languages like Python, Perl, or PowerShell. Candidates should also possess experience with RegEx, PowerBI, and data visualization tools. The role addresses the challenge of identifying cyber adversaries and their tactics while managing infrastructure and application telemetry to protect systems from various cyber-attacks.

What you'll do

  • Draft and deliver detection use cases using Falcon Query Language (FQL) and other security query languages.
  • Document detection use cases on Jira and Confluence pages following established business processes.
  • Investigate threat reports and requests to determine if new detection use cases are warranted.
  • Present production-ready use cases to executive governing boards for review and approval.
  • Write business cases, project plans, and reasoned justifications to support the execution of detection engineering projects.
  • Analyze high-volume datasets to uncover patterns and actionable insights regarding cyber threats.
  • Develop technical documentation and persuasive reports that can withstand audit scrutiny.

What we're looking for

  • Two years of experience in cybersecurity detection engineering gained through a Bachelor’s (BSc) in STEM, employment, or volunteering.
  • Ability to code detection use cases using SPL or FQL.
  • Ability to perform data manipulation, analysis, and reporting using Python, R, or similar analytics languages.
  • Ability to use SQL for data tasks.
  • Proficiency in software development and scripting using RegEx, PERL, Python, or PowerShell.
  • Knowledge of the cyber global threat landscape, including adversaries, TTPs, intelligence sources, and malware.
  • Ability to use Jira and Confluence to develop, document, and release use cases into production environments.
  • Ability to write polished descriptive business documents and reasoned explanations that can withstand audit scrutiny.

More like this

Similar roles

Senior Detection Engineer

DoorDash, Inc

Remote 22 days ago $159,800$235,000
Detection Engineering Python Go SQL SPL KQL Snowflake Cortex Google SecOps MITRE ATT&CK D3FEND Data Pipelines Cloud Infrastructure Automation Threat Intelligence
7+ yrs exp Remote

Endpoint Automation Staff Engineer

GEICO

Palo Alto, CA +3 39 days ago $110,000$230,000
EDR XDR Security Automation PowerShell Python Bash Windows Linux macOS SIEM Azure AWS Google Cloud Active Directory Entra ID Ansible SCCM Intune Jamf Puppet API Integration
3+ yrs exp

Principal Endpoint Security Systems Engineer

Leidos

Bethesda, MD 38 days ago $131,300$237,350
Trellix ePolicy Orchestrator Trellix Endpoint Threat Protection Linux Windows Splunk AppDynamics AWS Cisco Secure Endpoint Rapid7 SolarWinds Cisco IDS/IPS VPN WebInspect AppDetective Incident Response Forensics Cloud Computing Hybrid Cloud
10+ yrs exp

Endpoint Engineer III

General Dynamics

Bath, ME 30 days ago $70,600$89,400
MCM PowerShell MDM Intune Autopilot Entra ID Active Directory Group Policy TCP/IP DNS DHCP VPN ServiceNow Jira Windows Endpoint Security
2+ yrs exp

Senior Endpoint Protection Engineer

Pacific Life

Charlotte, NC +2 45 days ago $125,100$152,900
CrowdStrike Falcon EDR Windows Linux macOS SIEM ITSM PowerShell Python Bash RBAC SSO Incident Response Automation Endpoint Security
8+ yrs exp

Threat Detection Security Engineer

CoStar Group

Arlington, VA +1 72 days ago $90,000$154,000
Incident Response Sentinel Defender Azure Kubernetes Python Mitre Att&ck Automation Detection Engineering
4+ yrs exp