Principal Cybersecurity Detection Engineer - AI-Driven Threat
Job
Ampcus, Inc
Remote
Full-Time
Review key factors to help you decide if the role fits your goals.
Pay Growth
?
out of 5
Not enough data
Not enough info to score pay or growth
Job Security
?
out of 5
Not enough data
Calculating job security score...
Total Score
74
out of 100
Average of individual scores
Skill Insights
Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.
Job Description
Principal Cybersecurity Detection Engineer - AI-Driven Threat Ampcus, Inc United States, Virginia, Merrifield May 04, 2026 Ampcus Inc. is a certified global provider of a broad range of Technology and Business consulting services. We are in search of a highly motivated candidate to join our talented Team.
Job Title:
Principal Cybersecurity Detection Engineer -AI-Driven Threats Location:
Vienna, VA(Hybrid)/Winchester, VA, Pensacola, FL Duration:
6-12 months contract Role Overview The Principal Cybersecurity Detection Engineer - AI Driven Threats is a senior individual contributor responsible for advancing the effectiveness and maturity of the Cyber Security Operations Center (CSOC). This role designs, operationalizes, and scales high confidence detection capabilities to address AI enabled threats and related emerging attack techniques. The position combines deep, hands-on detection engineering expertise with applied knowledge of AI security and adversarial techniques. As a principal level individual contributor, this role drives the practical application of AI and emerging technologies within security operations, ensuring measurable improvements in detection fidelity, incident response outcomes, and analyst efficiency. Key Responsibilities Serve as the senior technical subject matter expert for AI focused threat detection within the CSOC. Design, develop, deploy, and maintain advanced detection content across SIEM and security platforms to identify AI enabled and emerging attack techniques. Engineer high confidence detections using complex query languages and techniques (e.g., SPL, KQL, regex, YARA, macros, lookups) across on premises, hybrid, and cloud environments. Continuously evaluate detection coverage and fidelity, tuning or retiring content as adversary tactics, data sources, and operational needs evolve. Research emerging AI and advanced technology threats (e.g., prompt injection, model poisoning, adversarial AI, data exposure) and translate them into actionable detection strategies. Align detection use cases to industry frameworks such asMITRE ATT&CK, MITRE
ATLAS, andNIST CSF.
Partner with threat intelligence, detection engineering, threat hunting, red team, and architecture teams to proactively strengthen detection capabilities. Support proofs of concept and pilots that apply AI to detection engineering and SOC operations, ensuring solutions deliver measurable operational value. Mentor and guide senior detection engineers and analysts on AI threat concepts and advanced detection strategies. Communicate complex technical findings clearly to technical teams, leadership, and executive stakeholders. Required Qualifications 7 years of experience in cybersecurity operations, detection engineering, or SIEM engineering in a senior individual contributor role. Advanced expertise in detection engineering across the full content lifecycle (design, testing, deployment, tuning, and decommissioning). Hands on experience applying AI or machine learning capabilities within SOC or detection workflows. Familiarity with AI security frameworks (e.g., MITREATLAS, OWASP AI
Security). Advanced proficiency with SIEM query languages and multi source telemetry across on prem, cloud (IaaS/PaaS/SaaS), and hybrid environments. Strong understanding of adversary TTPs, including emerging AI enabled threats. Demonstrated ability to analyze large scale log and telemetry datasets to identify threats and detection gaps. Strong communication skills, with the ability to present complex technical concepts to both technical and non technical audiences. Preferred Qualifications Experience leading or contributing to AI focused SOC pilots, automation initiatives, or advanced detection programs. Relevant certifications (e.g., CISSP, CySA, CASP, CCSP) or comparable credentials. Bachelor's degree in Cybersecurity, Computer Science, Engineering, or a related field. Ampcus is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veterans or individuals with disabilities.Similar remote jobs
Carrington
Jacksonville, FL
Posted2 days ago
Updated1 day ago
International Foundation of Employee Benefit Plans
Brookfield, WI
Posted2 days ago
Updated1 day ago
Similar jobs in Merrifield, VA
Public Storage
Merrifield, VA
Posted2 days ago
Updated1 day ago
MBA Consulting Service, Inc
Merrifield, VA
Posted5 days ago
Updated2 days ago
Similar jobs in Virginia
Volkswagen Group DE
Ashburn, VA
Posted2 days ago
Updated1 day ago
Shaw Boiler and Mechanical
Portsmouth, VA
Posted2 days ago
Updated1 day ago
Amazon
Arlington, VA
Posted2 days ago
Updated1 day ago