Req ID: 389080
NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.
We are currently seeking a Cyber Security Engineer to join our team in Charlotte, North Carolina (US-NC), United States (US).
Job Description:
Cyber Security Engineer – Threat DetectionRole DescriptionClient is seeking a Cyber Security Engineer – Threat Detection to join a high-performing Security Operations team responsible for advancing the Bank's security monitoring, detection engineering, and cyber defense capabilities. This role focuses on building, tuning, and maintaining effective detections across cloud and on-premises environments to help proactively identify, investigate, and respond to threats before they impact SMBC. The successful candidate will bring hands-on experience with security telemetry, analytics, automation, and detection-as-code practices, and will be expected to execute detection engineering activities with limited guidance while collaborating closely with analysts, incident responders, threat intelligence, and technology partners.
Role Objectives- Design, develop, tune, and maintain threat detection logic across cloud and on-premises environments to improve visibility, alert quality, and response effectiveness.
- Build and maintain efficient data ingestion and log onboarding pipelines for security-relevant telemetry from infrastructure, applications, endpoints, identity platforms, and cloud services.
- Partner with threat intelligence teams to translate emerging threats, attacker techniques, and indicators of compromise into actionable detection strategies.
- Collaborate with security analysts, incident responders, SOC engineers, and cross-functional technology teams to investigate detections, validate coverage, and reduce time to detect and respond.
- Develop and fine-tune detection rules, signatures, correlation logic, behavioral analytics, and alerting thresholds to improve fidelity and reduce false positives.
- Map detections and coverage to relevant frameworks, including MITRE Telecommunication&CK, to support measurable improvements in monitoring and response capabilities.
- Use automation, scripting, and detection-as-code practices to improve consistency, scalability, testing, deployment, and lifecycle management of detection content.
- Evaluate security monitoring technologies, data sources, and analytics capabilities to identify opportunities to enhance detection coverage and operational efficiency.
- Ensure detection engineering practices align with applicable compliance, regulatory, and internal control requirements.
- Create and maintain clear documentation for detection logic, data sources, tuning decisions, operational procedures, and response playbooks.
- Continuously assess the effectiveness of cybersecurity monitoring controls and recommend improvements to strengthen SMBC's cyber resilience.
Qualifications and Skills- Minimum of 3 years of relevant cybersecurity, detection engineering, SOC engineering, security analytics, or security operations experience.
- Hands-on experience analyzing logs and security telemetry from multiple sources, including endpoint, network, identity, cloud, infrastructure, and application platforms.
- Experience with cloud SIEM, UEBA, EDR, SOAR, data lake, or related detection and monitoring technologies.
- Strong knowledge of query languages and data analysis techniques used to investigate security events and develop detection logic.
- Experience developing detection-as-code pipelines, automation, scripts, or repeatable processes to improve security operations efficiency.
- Ability to translate threat intelligence, adversary behaviors, and attack techniques into practical detections and monitoring use cases.
- Experience mapping detections to MITRE Telecommunication & CK or similar security frameworks.
- Working knowledge of Windows and Linux operating systems, common enterprise infrastructure, and cloud environments.
- Strong troubleshooting, analytical, and problem-solving skills, with the ability to identify root cause and recommend practical improvements.
- Ability to balance operational responsibilities with project delivery in a fast-paced environment.
- Strong documentation, communication, collaboration, and stakeholder management skills.
- Demonstrated ownership, attention to detail, and ability to work effectively in a global team environment.
- Additional cybersecurity experience in incident response, threat intelligence, vulnerability management, security engineering, or cloud security is a plus.
Where required by law, NTT DATA provides a reasonable range of compensation for specific roles. The starting hourly range for this remote role is
($60-$66/hour). This range reflects the minimum and maximum target compensation for the position across all US locations. Actual compensation will depend on several factors, including the candidate's actual work location, relevant experience, technical skills, and other qualifications. This position may also be eligible for incentive compensation based on individual and/or company performance.
This position is eligible for company benefits that will depend on the nature of the role offered. Company benefits may include medical, dental, and vision insurance, flexible spending or health savings account, life, and AD&D insurance, short-and long-term disability coverage, paid time off, employee assistance, participation in a 401k program with company match, and additional voluntary or legally required benefits
.About NTT DATA:
NTT DATA is a $30 billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize and transform for long term success. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure and connectivity. We are one of the leading providers of digital and AI infrastructure in the world. NTT DATA is a part of NTT Group, which invests over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. Visit us at us.nttdata.com
NTT DATA endeavors to make accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact us at This contact information is for accommodation requests only and cannot be used to inquire about the status of applications. NTT DATA is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. For our EEO Policy Statement, please click here. If you'd like more information on your EEO rights under the law, please click here. For Pay Transparency information, please click here.