Security Monitoring Detection Engineer (R-00143)
Company: True Zero Technologies
Location: Remote (Remote)
Type: Full-time
Remote: Yes
Posted: 2026-04-17
About this role
True Zero Technologies, a veteran-owned small business, was founded on the principle that the purposeful enablement of people and technology in an organization directly ties to the quality of its outcomes. True Zero recognizes that those outcomes begin and end with our people, and that is what we have built a community of like-minded, driven, and passionate individuals and innovators who are aligned in a common goal of delivering top-tier services to our customers. Our culture and commitment have been recognized through numerous accolades, including being named one of the Best Places to Work in 2023 in two categories (“Prosperous and Thriving” ($5MM–$50MM in gross revenue) and “Mid-Atlantic Region” (DC, DE, MD, NC, VA, WV)), and again in 2025 as a Best Places to Work honoree. In addition, True Zero earned coveted spots on the Inc. 5000 list of fastest-growing companies in America in 2022, 2023, and 2025, a testament to our sustained growth driven by our people-first approach and unwavering dedication to excellence.
### Job Responsibilities
- **"Detection as Code" (DaC):** Applying software engineering principles (version control, CI/CD, testing) to security rules.
- **Threat Mapping:** Mapping detection strategies against frameworks such as MITRE ATT&CK to identify coverage gaps.
- **Log Analysis:** Analyzing telemetry from endpoint, network, cloud, and identity systems to identify anomalous patterns.
- **Tuning and Optimization:** Continuously tuning rules to reduce noise and enhance actionable alerts.
- **Detection Lifecycle Management:** Designing, developing, testing, deploying, and maintaining rules to detect threats.
### Job Qualifications
- **Technical Expertise:** Strong proficiency in Python scripting, SQL, and regex, as well as experience with SIEM platforms (e.g., Splunk, Microsoft Sentinel).
- **Behavioral Analysis:** Understanding of attacker techniques, tactics, and procedures (TTPs).
- **Data Analysis:** Ability to parse an...