Remote Source

    Senior Detection Engineer

    United States
    Full-Time
    Senior (7+ yrs)
    Engineering & Development
    Posted on February 6, 2026
    On a typical day, you might:
  1. Design and deploy sophisticated detection logic across our entire technology stack using detection-as-code principles like YARA-L, Sigma, and KQL.
  2. Build automated response workflows that independently enrich, triage, and remediate security alerts, effectively eliminating manual toil through advanced SOAR principles.
  3. Investigate complex security signals—such as novel attack patterns or phishing campaigns—that require deep human judgment and strategic intuition.
  4. Collaborate cross-functionally with DevOps and Security Engineering teams to adapt detection logic to infrastructure changes before security blind spots can emerge.
  5. Leverage AI and LLMs as force multipliers to accelerate threat hunting, generate new detection hypotheses, and automate repetitive investigative tasks.
  6. Lead post-incident reviews with engineering partners, transforming security findings into preventative architectural changes that harden our long-term defense.
  7. Prototype and test emerging detection capabilities and data sources, ensuring we stay ahead of the threat landscape while participating in an on-call rotation to defend our most critical systems.
  8. What is needed:
  9. 5+ years of hands-on experience in detection engineering, incident response, or security operations within high-growth technology environments.
  10. Advanced programming proficiency in Python, with a proven ability to build production-quality security automations and custom integrations from scratch.
  11. Deep expertise in Cloud Security (AWS), including a comprehensive understanding of IAM, VPC, CloudTrail, and Lambda attack vectors.
  12. Mastery of detection logic in at least two major languages, such as YARA-L, Sigma, KQL, or SPL.
  13. A track record of building SOAR workflows or equivalent automation platforms that measurably reduce operational overhead at scale.
  14. Exceptional communication skills, with the ability to distill complex security risks into actionable insights and influence technical decisions across the organization.
  15. Experience using AI/LLMs as a strategic tool for threat analysis, investigation automation, and increasing the velocity of security work.
  16. A self-directed, engineering-first mindset, ideally with a background in SRE, DevOps, or platform engineering and a history of contributing to open-source security projects.
  17. Company:  ActiveCampaign

    Offers marketing automation, email marketing, and CRM solutions for customer experience management.
    1001-5000 employees
    Marketing & Advertising
    HQ: United States