Talent.com
CBIZ
Security EngineerCBIZ • Cleveland, Ohio, USA
Security Engineer

Security Engineer

CBIZ • Cleveland, Ohio, USA
5 days ago
Job type
  • Full-time
Job description

The Security Detection Engineer is a senior, hands-on technical role responsible for building, tuning, validating, and operating security detections across CBIZ environments. Detection engineering is the core of the role: translating threat intelligence, adversary behavior, incident findings, and business risk into dependable analytics that identify suspicious activity with useful context. The engineer also investigates incidents, improves supporting controls, and uses automation to increase speed, consistency, and coverage. This is not a passive monitoring or ticket-routing role; the engineer owns detection problems from use-case design and telemetry validation through deployment, triage support, measurement, and continuous improvement.

Essential Functions and Primary Duties

Detection Engineering and Threat Analytics

  • Design, test, deploy, document, and maintain detection content across SIEM, XDR, NDR, identity, email, endpoint, network, cloud, and application security platforms.
  • Turn threat intelligence, adversary tactics and techniques, incident findings, and business risk into prioritized detection use cases; develop behavioral, correlation, threshold, anomaly, and indicator-based analytics.
  • Map detection coverage to recognized adversary behaviors and maintain clear traceability among threats, telemetry, analytics, response actions, and control owners.
  • Validate detections through structured testing, historical-log review, attack simulation, purple-team exercises, and post-incident analysis; tune for meaningful signal while reducing false positives and duplicates.
  • Own the detection lifecycle, including intake, prioritization, peer review, testing, release, version control, performance review, exception handling, and retirement.
  • Monitor detection health, data freshness, rule execution, alert quality, and coverage gaps; drive corrective action when controls or telemetry degrade.

Telemetry, Logging, and Detection Architecture

  • Partner with cloud, identity, endpoint, network, infrastructure, and application teams to onboard, normalize, and retain security-relevant telemetry.
  • Assess log quality and availability, including timestamps, identity context, event fidelity, field mapping, parsing, retention, and ingestion health required for reliable investigations and detections.
  • Document data dependencies and recovery procedures for critical detections, and contribute to detection architecture, data-source strategy, and use-case roadmaps across hybrid and multi-cloud environments

Security Operations, Incident Response, and Engineering

  • Investigate and respond to alerts and incidents across SIEM, XDR, NDR, identity, email, endpoint, network, and cloud platforms; lead work from triage and scoping through containment, eradication, recovery, validation, and lessons learned.
  • Perform root-cause analysis, reconstruct activity across data sources, preserve relevant evidence, validate remediation, and convert incidents, near misses, and control failures into improved detections, playbooks, and preventive controls.
  • Configure, harden, maintain, and troubleshoot security controls across Microsoft Azure, Azure Virtual Desktop, AWS, and Microsoft 365 security and compliance platforms, including identity protection, Conditional Access, email defense, endpoint security, DLP, cloud workload protection, and tenant baselines.
  • Support certificate-based authentication, encryption, and PKI dependencies; coordinate remediation and control changes with technology owners and confirm intended security outcomes.
  • Participate in an on-call rotation and after-hours response as needed.

Automation, Documentation, and Collaboration

  • Use PowerShell, Python, Bash, APIs, SOAR workflows, and other automation methods to enrich alerts, test controls, improve data quality, orchestrate response, and reduce repetitive work.
  • Build reusable queries, scripts, integrations, dashboards, investigation guidance, runbooks, playbooks, SOPs, and knowledge articles that improve operational consistency.
  • Evaluate AI-enabled security capabilities responsibly to improve detection development and investigation efficiency while retaining appropriate human review and control.
  • Partner with Security Operations, GRC, IT, Cloud, Networking, Systems, Endpoint, application owners, threat intelligence, vulnerability management, and red/purple teams; provide technical guidance and peer review when appropriate.


Preferred Qualifications

  • 3-5 years of experience in information security, security operations, detection engineering, incident response, threat hunting, or security engineering.
  • Proven hands-on experience creating and tuning detections in an enterprise SIEM, XDR, or comparable security analytics platform.
  • Strong ability to analyze authentication, endpoint, network, email, cloud, and application telemetry and translate findings into durable detection logic.
  • Hands-on experience with security investigations, incident response, log analysis, root-cause analysis, and remediation validation.
  • Working knowledge of adversary behavior, common attack techniques, detection lifecycle practices, and methods for validating detection coverage.
  • Experience securing Azure and/or AWS environments and operating Microsoft 365 security capabilities; experience supporting or securing Azure Virtual Desktop is required.
  • Working knowledge of PKI, certificate-based authentication, encryption, enterprise logging architectures, networking, identity and access, endpoint security, and malware fundamentals.
  • Strong PowerShell skills and experience with Linux command-line administration, logs, and services; ability to work independently, exercise sound judgment, and drive complex work to completion.
  • Advanced skill with SIEM query languages, detection-as-code, source control, testing frameworks, SOAR, APIs, and automated response.
  • Experience with threat hunting, attack simulation, purple teaming, adversary emulation, breach-and-attack simulation, or measuring detection coverage and quality.
  • Experience with AI-assisted security analytics and responsible use of AI in detection and response workflows.
  • Relevant certifications such as Security+, GIAC, Microsoft security certifications, ISC2 CC or CISSP, or comparable credentials.
  • Experience in a large enterprise SOC, hybrid or multi-cloud environment, or large-scale security transformation.



Minimum Qualifications Required

  • College Degree or equivalent required
  • 1 year related experience
  • Proficient use of applicable technology
  • Ability to follow technical instructions and guidelines
  • Ability to document daily activities and system functions
  • Able to work in team environment
  • Demonstrated ability to communicate verbally and in writing throughout all levels of organization both internally and externally
  • Ability to travel as required by business and on-call availability
  • Able to lift up to 50 lbs



#LI-CR2 #LI-Hybrid

ABOUT US

CBIZ, Inc. (NYSE: CBZ) is a leading professional services advisor to middle-market businesses nationwide. With industry knowledge and expertise in accounting, tax, advisory, benefits, insurance, and technology, CBIZ delivers actionable insights to help clients anticipate what is next and discover new ways to accelerate growth. CBIZ has more than 9,500 team members across 23 major markets coast to coast.

CBIZ strives to be our team members' employer of choice by creating an environment where team members are appreciated, recognized for their contributions, and provided with opportunities to grow, both personally and professionally, throughout their careers.

Together, CBIZ and CBIZ CPAs are ranked as one of the top providers of accounting services in the United States. CBIZ CPAs is an independent CPA firm that provides audit, review and attest services, while CBIZ provides business consulting, tax and financial services. In certain jurisdictions, CBIZ CPAs operates under its previous name, Mayer Hoffman McCann P.C.

Create a job alert for this search

Security Engineer • Cleveland, Ohio, USA

Similar jobs

94E Radio and Communications Security Repairer

Army National GuardBrook Park, OH
Part-time

It’s extremely important that Army National Guard communications don’t fall into the wrong hands.As the Radio and Communications Security Repairer, you will maintain the equipment and systems that ... Show more

 • Promoted

Sr. Engineer TECHM-JOB-29146

Keylent, Inc.Cleveland, OH, United States
Full-time

Manage relationships with key customer accounts to provide world class customer service.Act as an advocate for the customer to confirm that customer deadlines are achieved, products are delivered t... Show more

 • Promoted

Greeter

WalmartEuclid, OH

As a Greeter at Walmart, you will be the first point of contact for customers as they enter the store.Your warm and friendly demeanor will create a welcoming atmosphere and set the tone for a posit... Show more

 • Promoted

Forward Deployed Engineer Databricks - Forensic Discovery & Financial Crime

DeloitteCleveland, OH, United States
Full-time

Senior Consultant - Forward Deployed Engineer (FDE) Databricks.Forward Deployed Engineers at Deloitte work alongside clients to help turn artificial intelligence opportunities into scalable busine... Show more

 • Promoted

Security Supervisor

JACK MainCleveland, OH, United States
Full-time

Responsible for shift assignments, follow-up investigations, reports, and all other pertinent activity that is applicable to the security and valet departments.Maintains employees files, conducts P... Show more

 • Promoted

Desktop Engineer

Syntricate TechnologiesCleveland, OH, United States
Full-time

Required Skills: 4+ Year Experience.Troubleshoot technology issues.Install and maintain equipment and software.Ask questions to pinpoint the problem.Perform remote troubleshooting.Help new employee... Show more

 • Promoted

Senior Security Engineer (Remote)

Signet JewelersAkron, OH, United States
Remote
Full-time

We have many opportunities available on our other career site pages.Click here to link to our careers page!Signet Jewelers is the world's largest retailer of diamond jewelry, operating more than 2,... Show more

 • Promoted

Security Agent

ACTS-Aviation Security IncCleveland, OH, United States
Full-time

Security AgentJoin a Global Leader in Aviation Security!$16.Medical, dental & vision insurance available! 401K with company matching! Paid vacation & holidays!ACTS-Aviation Security, Inc.Se... Show more

 • Promoted

Security Officer - PT & FT available

Inter-con SecurityWadsworth, OH, United States
Full-time

Security Guard / Safety Officer / Patrol] - Industry Leading Pay / Opportunity for Medical-Dental-Holidays-Vacation-Sick Pay-401(k) / Uniform and equipment provided / Recognition and Reward Program... Show more

 • Promoted

Senior Director, Cyber Engineering and Operations in Cleveland, OH Direct Hire

Suncap TechnologyCleveland, OH, United States
Permanent

Sr Director, Cyber Engineering and Operations.We need someone who is a thought leader and has had Cyber Security experience.Relocation yes, sponsorship no.Salary, Bonus, Benefits and Stock Options.... Show more

 • Promoted

Information Security Manager

Presidential Staffing Solutions LLCCleveland, OH, United States
Full-time

We are seeking an experienced Information Security Manager to join our team! As our Information Security Manager, you will be responsible for managing all Information Security projects, ensuring th... Show more

 • Promoted

Security Controls Assessor -OH

Blu OmegaCleveland, OH, United States
Full-time

Blu Omega is actively seeking several experienced Security Control Assessors to join our team with a focus on program-scale assessments.We are hiring for various levels within a 50 mile radius of C... Show more

 • Promoted

Consumer Research Associate (Remote)

GL IncRichmond Heights, Ohio
$15.00 hourly
Remote
Part-time +1

Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies.We guarantee 15-25 hours per week with an hourly pay of bet... Show more

 • Promoted

Systems Engineer

StaffingCleveland, OH, United States
Full-time

Systems Engineer Data Center Migration.Location: Cleveland, OH Rate: $40 - $45 6 months.Essential Functions/Qualifications:.Removing, moving and installing enterprise server and network equipment ... Show more

 • Promoted

Structural Engineer - Entry Level

AdexAkron, OH, United States
Full-time

Structural Engineer - Entry Level.The entry level structural engineer will perform structural analysis of towers, mounting systems, rooftops, water tanks, and buildings for the addition of wireless... Show more

 • Promoted

GPS - Azure Senior Platform Engineer - Assistant Director

EYAkron, OH, United States
Full-time

GPS - Azure Senior Platform Engineer - Assistant Director.Location: Akron Other locations: Anywhere in Region Salary: Competitive Date: Jul 17, 2026.At EY, we're all in to shape your future with co... Show more

 • Promoted

Asset Protection Specialist

Home Depot (Retail)Euclid, OH, United States
Full-time

The Asset Protection Specialist is primarily responsible for preventing financial loss caused by theft and fraud and supporting safety and environmental program compliance in their assigned store/m... Show more

 • Promoted

Fixed Security

Cleveland IndiansCleveland, OH, United States
Full-time

Our teammates are at the core of what we believe in: People, Collaboration, Learning, and Excellence (PeopleCLE).We look to hire individuals who are committed to our purpose of uniting and inspirin... Show more

 • Promoted

Remote Expert Contributor - Software Engineer

Arise Virtual SolutionsAkron, Ohio
Remote
Full-time

Expert Contributor - Software Engineer.Task-Based Independent Contractor Opportunity.We're looking for engineers who can operate at an expert level across real-world, end-to-end tasks in terminal e... Show more

 • Promoted

Remote Product Tester - No Experience

OCPACleveland Heights, Ohio, US
$18.00 hourly
Remote
Part-time +1

Product Testers are wanted to work from home in the UK to fulfill upcoming contracts with local and international companies.We guarantee 15-25 hours per week with an hourly pay of between £18/hr.Th... Show more