Threat Detection Engineer
Reston, VA - USA
Job Summary
Your work days are brighter here.
Were obsessed with making hard work pay off for our people our customers and the world around us. As a Fortune 500 company and a leading AI platform for managing people money and agents were shaping the future of work so teams can reach their potential and focus on what matters most. The minute you join youll feel it. Not just in the products we build but in how we show up for each other. Our culture is rooted in integrity empathy and shared enthusiasm. Were in this together tackling big challenges with bold ideas and genuine care. We look for curious minds and courageous collaborators who bring sun-drenched optimism and drive. Whether youre building smarter solutions supporting customers or creating a space where everyone belongs youll do meaningful work with Workmates whove got your return well give you the trust to take risks the tools to grow the skills to develop and the support of a company invested in you for the long haul. So if you want to inspire a brighter work day for everyone including yourself youve found a match in Workday and we hope to be a match for you too.
About the Team
Workday is using the latest software development cloud and AI technologies to build platforms and application services to support our growth while also ensuring the protection of Workday data and infrastructure.Our Active Defense team is a group of highly skilled and dedicated professionals who are passionate about protecting our organization from cyber threats. We work together to proactively counter advanced security threats.
Our team members have a strong background in cybersecurity data analysis AI and machine learning and detection engineering. We use innovative tools and technologies to analyze and visualize data including Splunk Spark Python and AI-assisted analysis and automation tools. We value teamwork and collaborate closely with other security teams to ensure that our organization stays ahead of emerging cyber threats.
We are committed to continuous learning and professional development and regularly attend industry conferences and training sessions to stay up to date on the latest trends and best practices in security analytics.
About the Role
This role is focused on advanced threat detection. As a member of the Active Defense team you will get an opportunity to collaborate with a large cross-section of teams across Workday to understand the threat landscape participate in various threat hunting and offensive security exercises to discover potential vulnerabilities and test detection coverage perform data and detection gap analysis and then use this information to develop and refine alerting logic while applying innovative techniques on large volumes of real-time data. You will also help develop adaptive and AI-assisted detection capabilities that use behavioral baselines entity-level context and automation to support detection development detection validation threat hunting and pre-production alert baselining. You will have the flexibility of a hybrid schedule.
About You
Basic Qualifications
You have:
Security analytics and detection engineering experience: You have 2 years of experience analyzing security logs building or maintaining detection logic and translating threat intelligence attacker behavior or incident learnings into practical detections.
Software development expertise: You have 2 years of experience in a general-purpose programming language like Python Java Kotlin Scala or JavaScript to build effective detection tools.
Public cloud environments: Developing securing and monitoring applications in public cloud environments.
Technical foundation: BS or MS degree in Computer Science Engineering or equivalent practical experience.
Other Qualifications
Proactive Threat Hunting: Leverage the MITRE ATT&CK framework to identify and hunt for threats based on IOCs and IOAs
AI-assisted detection development: Experience developing or applying agents automation or workflow orchestration to improve detection engineering detection validation threat hunting or pre-production alert baselining outcomes.
Offensive security: Experience using AI-based discovery and exploit creation tools to mimic adversary capabilities.
System knowledge: Experience with networking and Linux operating systems.
Modern application security: Understanding of containerized applications and associated security challenges.
Adaptive detection analytics: Familiarity with behavior anomaly detection entity-level baselines outlier detection clustering and forecasting techniques.
Security tools: Experience with SIEM platforms such as Splunk and Elasticsearch.
Development best practices: Familiarity with CI/CD pipelines and the Software Development Lifecycle (SDLC).
Workday Pay Transparency Statement
The annualized base salary ranges for the primary location and any additional locations are listed below. Workday pay ranges vary based on work location. As a part of the total compensation package this role may be eligible for the Workday Bonus Plan or a role-specific commission/bonus as well as annual refresh stock grants. Recruiters can share more detail during the hiring process. Each candidates compensation offer will be based on multiple factors including but not limited to geography experience skills job duties and business need among other things. For more information regarding Workdays comprehensive benefits please click here.
Primary Location:
Our Approach to Flexible Work
With Flex Work were combining the best of both worlds: in-person time and remote. Our approach enables our teams to deepen connections maintain a strong community and do their best work. We know that flexibility can take shape in many ways so rather than a number of required days in-office each week we simply spend at least half (50%) of our time each quarter in the office or in the field with our customers prospects and partners (depending on role). This means youll have the freedom to create a flexible schedule that caters to your business team and personal needs while being intentional to make the most of time spent together. Those in our remote home office roles also have the opportunity to come together in our offices for important moments that matter.
Pursuant to applicable Fair Chance law Workday will consider for employment qualified applicants with arrest and conviction records.
Workday is an Equal Opportunity Employer including individuals with disabilities and protected veterans.
At Workday we are committed to providing an accessible and inclusive hiring experience where all candidates can fully demonstrate their skills. If you require assistance or an accommodation at any point please email .
Are you being referred to one of our roles If so ask your connection at Workday about our Employee Referral process!
At Workday we value our candidates privacy and data security. Workday will never ask candidates to apply to jobs through websites that are not Workday Careers.
Please be aware of sites that may ask for you to input your data in connection with a job posting that appears to be from Workday but is not.
In addition Workday will never ask candidates to pay a recruiting fee or pay for consulting or coaching services in order to apply for a job at Workday.
Required Experience:
IC
Key Skills
- ASP.NET
- Health Education
- Fashion Designing
- Fiber
- Investigation
About Company
Seamlessly manage your people, money, and agents on an open, unified platform with AI at the core. It’s a new work day.