Principal Threat Detection Operations Engineer

Target

Confirmed live today High trust
Hybrid

Quick summary

Work type
Hybrid
Location
Brooklyn Park, MN
Salary
$168,000–$303,000 / yr
Posted
3 days ago
Freshness
Confirmed live today

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $179k
This role $236k
$111k most similar roles pay here $324k

This role pays more than 88% of similar roles. Most pay $145,000–$213,725 — the shaded band above. At the midpoint, this role pays about $236k versus about $179k for comparable roles.

Based on 240 similar postings.

Employer

About Target

Target Corporation is a large-format general merchandise and grocery retailer offering a wide assortment of everyday essentials, apparel, home goods, and electronics through stores and online. Industry: General Merchandise Retail

Target currently has 60 open roles on FindRole.

Listed pay typically runs $98,000–$176,000 across 60 roles with salary data.

Most-posted roles

View all roles at Target

At a glance

TL;DR · Principal Threat Detection Operations Engineer

As a Principal Threat Detection Operations Engineer, you will join the threat detection operations team to set the technical strategy for detection engineering, platforms, services, integrations, and automations. You will architect and lead the development of scalable detection capabilities, including rules, behavioral analytics, correlation logic, and alerting workflows across enterprise, cloud, identity, endpoint, network, and application environments. The role involves translating threat intelligence into durable strategies while managing the full lifecycle of detection content through CI/CD and detection-as-code practices. You will utilize Python, APIs, SQL/NoSQL data stores, Git, PowerShell, Bash, and Kubernetes to solve complex visibility challenges. Key technical focuses include SIEM platforms, EDR, SOAR, and cloud security. You will also define telemetry requirements for data quality and normalization to identify malicious activity and ensure operational sustainability across the organization.

What you'll do

  • Set the technical vision, architecture, and roadmap for detection engineering aligned with cybersecurity priorities.
  • Architect and develop scalable detection capabilities using Python, APIs, and detection-as-code practices.
  • Establish engineering standards for source control, CI/CD, automated testing, and production operations.
  • Translate threat intelligence and adversary behaviors into durable detection strategies and automated workflows.
  • Evaluate the viability and cost of new detection technologies through proofs of concept and vendor reviews.
  • Define metrics to measure detection coverage, fidelity, and operational performance to identify gaps.
  • Influence security data strategy by defining requirements for telemetry quality, normalization, and retention.
  • Provide technical leadership, coaching, and mentorship to engineers and analysts within the cybersecurity team.

What we're looking for

  • A 4-year degree or equivalent experience is required.
  • 10+ years of experience in cybersecurity engineering, detection engineering, threat hunting, security operations, or related services are required.
  • Advanced Python programming and software engineering skills including APIs, data structures, testing, and source control are required.
  • Experience designing and operating detection content through modern CI/CD, detection-as-code, and DevSecOps practices is required.
  • Hands-on experience with SIEM and security analytics platforms for developing production-grade rules and workflows is required.
  • Familiarity with EDR, SOAR, threat intelligence, identity, cloud security, network security, case management, and malware analysis is required.
  • Experience with REST APIs, SQL/NoSQL data stores, Git, PowerShell or Bash, containers/Kubernetes, and cloud technologies is required.
  • Strong leadership, communication, and presentation skills to convey complex technical findings to diverse stakeholders are required.

More like this

Similar roles

Staff Threat Detection Engineer

CVS Health

New York, NY 3 days ago $106,605$284,280
Microsoft Sentinel Splunk Microsoft Defender CrowdStrike KQL SPL Python PowerShell Bash Purple Team Penetration Testing NIST CIS PCI-DSS HIPAA ISO 27001
7+ yrs exp

Engineering Manager I, Threat Detection

Datadog

109 days ago $192,000$240,000
Python AI Detection Engineering SIEM CI/CD Security Operations Incident Response Cloud Infrastructure SaaS Automation Observability Threat Intelligence Detection-as-Code
Hybrid

Threat Detection & Automation Engineer

Fiserv

Berkeley Heights, NJ 5 days ago $146,000$244,800
Google SecOps Python SQL SIEM SOAR EDR IDS NDR UEBA DLP WAF JSON Terraform CI/CD Git Agile Machine Learning MITRE ATT&CK PowerShell Bash
8+ yrs exp

Threat Detection Security Engineer

CoStar Group

Arlington, VA +1 81 days ago $90,000$154,000
Incident Response Sentinel Defender Azure Kubernetes Python Mitre Att&ck Automation Detection Engineering
4+ yrs exp

Senior Cyber Threat Defense Security Operations Engineer

Proofpoint

Draper, UT 32 days ago $136,200$214,005
Incident Response SIEM SOAR EDR XDR Python PowerShell Bash MITRE ATT&CK Threat Hunting Threat Modeling AWS Microsoft Azure Google Cloud Platform Digital Forensics AI DLP STRIDE
8+ yrs exp