FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Detection & Response Engineer
Beyond Finance. Write, tune, and retire Cloud SIEM detections and map coverage to MITRE ATT&CK .
Posted 9/23/2026full-timeChicago • Illinois • United StatesMid-LevelSenior💰 $100,000 - $120,000 per yearWebsite
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in Cloud SIEM detection engineering, including writing detection logic as code and managing Datadog log pipelines. Proficient in incident response, triage, and leveraging MITRE ATT&CK for threat detection and analysis.
Highest-signal resume keywords
Cloud SIEM Detection EngineeringDatadog Log PipelinesMITRE ATT&CK KnowledgeAutomation Orchestration ToolingSecurity Telemetry Analysis
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Detection Logic As CodeScriptingIncident ResponseThreat HuntingInfrastructure As CodeCI/CDAlert EnrichmentTriage ManagementVersion ControlTesting and Peer Review
Soft Skills
Project ManagementCollaboration
Tools & Technologies
DatadogCloud PlatformsSaaS ApplicationsEDR
Industry Keywords
Security OperationsDetection EngineeringSecurity EngineeringFalse-Positive RateAutomation Rate
Tech Stack
Tools & technologiesCloud
About the role
Key responsibilities & impact- Write, tune, and retire Cloud SIEM detections and map coverage to MITRE ATT&CK
- Onboard sources and build Datadog log pipelines that parse, normalize, and enrich security telemetry
- Manage detections in version control with testing and peer review
- Build workflows for alert enrichment, triage, containment, and notification
- Build AI-assisted triage and alert summarization with a human in the loop
- Track coverage, false-positive rate, and automation rate
- Manage indexes, exclusion filters, and retention tiers to reduce noise and cost
- Support triage, investigations, and incident response, including on-call
Requirements
What you’ll need- 3+ years in security operations, detection engineering, or security engineering
- Ability to write scripts and build detection logic as code
- Deep hands-on Datadog experience, especially Cloud SIEM detection rules and log pipelines
- Experience with automation orchestration tooling
- Working knowledge of MITRE ATT&CK
- Experience with security telemetry from cloud platforms, SaaS applications, and EDR
- Ability to take a project from prototype to production with little direction
- Infrastructure as code and CI/CD experience is a plus
- Threat hunting or purple teaming experience is a plus
Benefits
Comp & perks- Considerable employer contributions for health, dental, and vision programs
- Generous PTO, paid holidays, and paid parental leave
- 401(k) matching program
- Merit advancement opportunities
- Career development & training
- Annual bonus eligibility