Colossus Technologies Group Logo Colossus Technologies Group
Colossus Technologies Group Logo

Staff Threat Detection Engineer

💰 $200 - $220 🌍 Remote (United States) 📅 06/22/2026

Apply

Job Description

**About the Company**

100% Remote. The Detection and Response Engineering (DaRE) team protects
Chainalysis corporate assets and manages internal incident response. We reduce
risk by building systems that detect and contain malicious activity while
performing high-stakes digital forensics. Our mission is to ensure that as
blockchain adoption grows, our own infrastructure remains resilient against
evolving threats.

**About the Role**

As a Staff Threat Detection Engineer, you are the technical lead for our
corporate threat detection strategy. You design high-fidelity detections, lead
proactive threat hunting, and perform critical risk assessments for both
corporate and product engineering functions. This is a high-profile role where
you will act as a subject matter expert (SME) for threat modeling, guiding
security best practices across all corporate functions.

**Responsibilities**

* Lead Detection Strategy: Own the end-to-end roadmap for corporate threat detection, mapping coverage against frameworks like MITRE ATT&CK.
* Engineer High-Fidelity Detections: Design and maintain scalable detection logic across SIEM, EDR, and cloud logging platforms (AWS/GCP).
* Conduct Threat Hunting: Plan and execute hypothesis-driven hunting campaigns to uncover novel TTPs and turn findings into durable controls.
* Perform Risk Modeling: Lead threat assessments and design reviews for new technology on-boarding and product design changes.
* Optimize Response: Partner with Incident Response to refine alert quality, automate triage playbooks, and reduce time-to-containment.
* Mentor & Influence: Provide technical leadership and mentorship to the DaRE team while influencing product teams to improve visibility and remediate gaps.

**Qualifications**

* 8+ years of experience in detection engineering, SOC, or incident response at scale.

**Required Skills**

* Deep expertise in building and tuning detections within SIEM, EDR, and log analytics platforms.
* Advanced proficiency in writing complex detection queries (e.g., KQL, SPL, SQL).
* Demonstrated experience detecting modern attacker TTPs across endpoint, identity, and cloud environments.
* Strong scripting skills (Python, Bash) for automation and enrichment.
* Proven ability to lead cross-functional security initiatives with IT and Engineering stakeholders.

**Preferred Skills**

* Experience leading threat hunting in cloud-first or SaaS-heavy environments.
* Familiarity with securing AI integrations and managing associated security risks.
* Knowledge of blockchain ecosystems and threats specific to the Web3/Crypto space.
* Prior experience in a Staff-level technical leadership or mentorship role.
* Red teaming experience against web technologies.
* OSINT and investigations.

**Pay range and compensation package**

200-220 base with Bonus and Equity.

**Equal Opportunity Statement**

We are committed to diversity and inclusivity.