Fiserv

Threat Detection & Automation Engineer

Fiserv
Apply
1 day ago
Alpharetta, GA, USA or Berkeley Heights, NJ, USASenior

Base Salary

$146k - $245k/yr

Responsibilities

  • Research adversarial techniques and translate threat behaviors into high-fidelity detections.
  • Design, build, and operate production-grade security detection infrastructure across Google SecOps and internal automation applications.
  • Manage telemetry and detection lifecycles, including onboarding, parsing, normalization, enrichment, testing, deployment, tuning, and maintenance.
  • Develop API, webhook, and event-driven integrations, automations, and lightweight services for enrichment and response workflows.
  • Create dashboards, metrics, and reports using SQL, statistical analysis, and applied AI/ML techniques.
  • Use Python, prompt-driven workflows, MCP capabilities, and agent-to-agent orchestration for detection engineering and analytic decision support.
  • Collaborate with threat intelligence, hunting, incident response, red team, platform, and engineering teams to improve detection coverage.
  • Document requirements, track delivery, and maintain platform operations across hybrid environments.

Requirements

  • At least 8 years of experience in cybersecurity engineering, security operations, or detection engineering, including enterprise detection development and maintenance.
  • At least 8 years of experience developing and tuning detections with SIEM technologies, SOAR platforms, and correlated rule logic.
  • At least 8 years of scripting and automation experience using Python, SQL, PowerShell, Bash, or similar languages.
  • At least 8 years of experience with EDR, IDS/NDR, UEBA, DLP, WAF, proxy technologies, and cloud security services.
  • Experience designing reliable and observable integrations using REST, JSON, webhooks, OAuth, service accounts, and event-driven messaging.
  • Experience with MITRE ATT&CK, detection coverage analysis, telemetry mapping, dashboard development, and threat reporting.
  • Bachelor’s degree in cybersecurity, computer science, information technology, engineering, or a related field, or an equivalent combination of education, related experience, and/or military experience.
  • Preferred experience with Google SecOps, AI/ML, feature engineering, prompt engineering, AI-assisted coding, infrastructure as code, CI/CD, Git-based workflows, Terraform, and relevant GIAC certifications.

Benefits

  • Fully on-site Monday through Friday; in-person collaboration is considered essential for the role.
  • Paid holidays and generous time-away policies.
  • No-cost mental health support through Employee Assistance Programs.
  • Medical, dental, vision, life, and disability insurance options available from day one.
  • Retirement planning with 401(k) matching and an Employee Stock Purchase Plan.
  • Tuition assistance and reimbursement, paid parental and military leave.
  • Employee resource groups, peer recognition rewards, training, development, and internal mobility opportunities.

Tech Stack

BashGitPowerShellPythonSQLTerraform

Categories

Fiserv

About Fiserv

10,000+ employees

Fiserv builds payments and financial technology for banks, credit unions, merchants, and billers, including merchant acquiring, card issuing, core banking, and digital banking platforms. It earns revenue through transaction processing, software licensing, and managed services across POS (Clover), bill pay, ACH and card networks, and risk/compliance. The public company is headquartered in Milwaukee, trades on NASDAQ/BMV, acquired First Data in 2019, and serves clients in more than 100 countries.

Contact me