Talent.com
Security Detection Engineer I

Security Detection Engineer I

AppFolioChicago, IL, United States
job_description.job_card.variable_hours_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Overview

Join to apply for the Security Detection Engineer I role at AppFolio

The Security Detection Engineer I will design, develop, and optimize detections that identify and prevent account takeover (ATO) activity across AppFolios platform. This role is responsible for building scalable detection logic and telemetry pipelines that surface suspicious patternssuch as credential stuffing, MFA abuse, session hijacking, or automation-based fraud. The engineer will work closely with Security Analysts, Risk, Fraud, and Engineering teams to operationalize threat intelligence, improve alert fidelity, and reduce attacker dwell time while ensuring detections evolve with emerging ATO tactics.

1 week ago Be among the first 25 applicants

Location : Chicago, IL see location notes on our site.

Responsibilities

  • Design, implement, and maintain detection logic to identify account takeover (ATO) attempts across AppFolio platforms.
  • Develop and tune behavioral analytics and rule-based detections in SIEM and security data platforms to improve signal fidelity.
  • Leverage threat intelligence, internal telemetry, and adversary TTPs to proactively build detection coverage for evolving ATO techniques.
  • Collaborate with security analysts, fraud investigators, and engineering teams to validate alerts, reduce false positives, and ensure timely detection.
  • Perform detection gap assessments and participate in purple team or simulation exercises to evaluate coverage for ATO scenarios.
  • Automate detection engineering workflows using scripting and data pipelines for scale and efficiency.
  • Contribute to threat modeling efforts and define detection use cases aligned with MITRE ATT&CK and real-world ATO patterns.
  • Document detection logic, assumptions, tuning rationale, and testing methodology in standardized playbooks and engineering wikis.

Qualifications

  • Bachelors degree in Computer Science, Cybersecurity, Engineering, or equivalent work experience.
  • 35 years of experience in detection engineering, security operations, or threat detection.
  • Proficient with SIEM technologies (e.g., Splunk, Elastic), query languages (SPL, SQL, Kusto), and detection-as-code practices.
  • Strong understanding of ATO threat landscape including credential stuffing, MFA abuse, session hijacking, and token replay attacks.
  • Experience creating and tuning detection logic to identify anomalies across authentication, identity, and web traffic telemetry.
  • Familiarity with MITRE ATT&CK, OWASP, and identity-based threat modeling frameworks.
  • Hands-on experience with cloud-based environments (AWS preferred) and monitoring their security logs and event sources.
  • Knowledge of version control (e.g., Git), CI / CD pipelines, and detection-as-code workflows (e.g., using Terraform, Python, Jupyter, or YAML).
  • Excellent collaboration and communication skills with the ability to convey detection rationale to technical and non-technical stakeholders.
  • Excellent verbal and written communications skills.
  • Nice to have

  • Experience with identity security tools and telemetry : Okta, Duo, etc.
  • Familiarity with session-based ATO detection techniques, including cookie theft, browser fingerprinting, or geolocation analysis.
  • Certifications such as GCDA, GCIH, AWS Security Specialty, or OSWE.
  • Prior exposure to fraud prevention, customer account protection, or abuse detection platforms.
  • Experience in adversary emulation or purple teaming to test and validate detections.
  • Location

    Find out more about our locations by visiting our site.

    Compensation & Benefits

    The compensation that we reasonably expect to pay for this role is : $104,000-$130,000 base pay. The actual compensation for this role will be determined by a variety of factors, including but not limited to the candidates skills, education, experience, and internal equity.

    Please note that compensation is just one aspect of a comprehensive Total Rewards package. The compensation range listed here does not include additional benefits or any discretionary bonuses you may be eligible for based on your role and / or employment type. Regular full-time employees are eligible for benefits see here.

    About AppFolio

    AppFolio is the technology leader powering the future of the real estate industry. Our innovative platform and trusted partnership enable our customers to connect communities, increase operational efficiency, and grow their business. For more information about AppFolio, visit .

    Why AppFolio

    Grow | We enable a culture of high performance, where delivering results is recognized by opportunities for growth and compelling total rewards. Our challenging and meaningful work drive the growth of our business, and ourselves.

    Learn | We partner with you to realize your potential by investing in you from the start. We''re cultivating a team of big thinkers through coaching and mentorship with our best-in-class leaders, and giving you the time and tools to develop your skills.

    Impact | We are creating a world where living in, investing in, managing, and supporting communities feels magical and effortless, freeing people to thrive. We innovate with purpose while cultivating a culture of impact.

    Connect | We excel at hybrid work by fostering an environment that feels flexible, personal and connected, no matter where we are. We create space to fuel innovation and collaboration, and we come together to celebrate, connect, and succeed.

    Paddle as One.

    Equal Opportunity

    Statement of Equal Opportunity

    At AppFolio, we value diversity in backgrounds and perspectives and depend on it to drive our innovative culture. Thats why were a proud Equal Opportunity Employer. This means that no matter race, color, religion, sex, sexual orientation, gender identification, national origin, age, marital status, ancestry, physical or mental disability, or veteran status, youre welcome at AppFolio.

    #J-18808-Ljbffr

    serp_jobs.job_alerts.create_a_job

    Detection Engineer • Chicago, IL, United States

    Job_description.internal_linking.related_jobs
    • serp_jobs.job_card.promoted
    Lead Security Engineer

    Lead Security Engineer

    MorningstarChicago, IL, United States
    serp_jobs.job_card.full_time
    We are seeking a Lead Security Engineer to help drive our security detection and response efforts.In this role, you will be responsible for designing, implementing, and improving security monitorin...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Security Engineer

    Security Engineer

    Solution Partners (IL)Chicago, IL, United States
    serp_jobs.job_card.full_time
    This range is provided by Solution Partners, Inc.Your actual pay will be based on your skills and experience talk with your recruiter to learn more. Direct message the job poster from Solution Partn...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Security Engineer

    Security Engineer

    RAPPChicago, IL, United States
    serp_jobs.job_card.full_time
    RAPP Chicago is looking for a Security Engineer to join our award-winning Technology team.We are RAPP - world leaders in activating growth with precision and empathy at scale.As a global, next-gene...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Security Engineer

    Security Engineer

    Strata Decision TechnologyChicago, IL, United States
    serp_jobs.job_card.full_time
    We're looking for a hands-on Security Engineer to help protect Strata's systems, data, and users.In this individual-contributor role, you'll monitor and triage alerts, investigate and respond to in...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Senior Security Engineer

    Senior Security Engineer

    MorningstarChicago, IL, United States
    serp_jobs.job_card.full_time
    We are seeking a Senior Security Engineer to help drive our security detection and response efforts.In this role, you will be responsible for designing, implementing, and improving security monitor...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Senior Security Engineer (Remote)

    Senior Security Engineer (Remote)

    BioSpace, Inc.North Chicago, IL, United States
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time
    AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable i...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Security Engineer III

    Security Engineer III

    NorthShore PC ServiceSkokie, IL, United States
    serp_jobs.job_card.full_time
    Position : Security Engineer III.The hourly pay rate offered is determined by a candidate's expertise and years of experience, among other factors. Location : 4901 Searle Parkway, Skokie IL (flexible)...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Infrastructure Security Engineer

    Infrastructure Security Engineer

    Fintal PartnersChicago, IL, US
    serp_jobs.job_card.full_time
    We are seeking a passionate and pragmatic Infrastructure Security Engineer to join our Platform team.In this role, you’ll help design, implement, and scale security controls across a global i...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Security Engineer (Chicago)

    Security Engineer (Chicago)

    Fitch GroupChicago, IL, United States
    serp_jobs.job_card.full_time
    Fitch Group is currently seeking a Security Engineer based out of our Chicago office.As a leading, global financial information services provider, Fitch Group delivers vital credit and risk insight...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Sr Lead Security Engineer

    Sr Lead Security Engineer

    JPMorgan Chase Bank, N.A.Chicago, IL, United States
    serp_jobs.job_card.full_time
    Join a team where you can play a crucial role in shaping the future of a world-renowned company and make a direct and meaningful impact in a space designed for top performers.As a Senior Lead Secur...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Security Engineer III - Identity and Access Management

    Security Engineer III - Identity and Access Management

    NorthShore PC ServiceSkokie, IL, United States
    serp_jobs.job_card.full_time +1
    The hourly pay rate offered is determined by a candidate's expertise and years of experience, among other factors.Position : Security Engineer III - Identity and Access Management.Hours : Monday-Frid...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Security Engineer (Remote)

    Security Engineer (Remote)

    AbbVieNorth Chicago, IL, United States
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time
    AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable i...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Security Engineer II

    Security Engineer II

    TalentBridgeSkokie, IL, United States
    serp_jobs.job_card.full_time +1
    Job Title : Security Engineer II.Location : Skokie, IL 60077 (Remote - require onsite for meetings or as needed).Salary Range : $100000 to $115000. As the Security Engineer II, you will be responsible ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Security Engineer III

    Security Engineer III

    TalentBridgeChicago, IL, United States
    serp_jobs.job_card.full_time
    Location : Candidates must be local to Illnois but the role will be primarily performed remotely.However candidates will need to be onsite a couple times a month for team meetings.Step into a senior...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Security Engineer

    Senior Security Engineer

    DemocorpChicago, IL, United States
    serp_jobs.job_card.full_time
    The Senior Security Engineer works in Optiv's 24x7x365 Security Operations Center as a member of the Managed Security Services team. The Senior Security Engineer uses technical knowledge on a number...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Security Engineer (Remote)

    Security Engineer (Remote)

    BioSpace, Inc.North Chicago, IL, United States
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time
    AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable i...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Senior AI Security Engineer

    Senior AI Security Engineer

    ServiceNowChicago, IL, United States
    serp_jobs.job_card.full_time
    It all started in sunny San Diego, California in 2004 when a visionary engineer, Fred Luddy, saw the potential to transform how we work. Fast forward to today - ServiceNow stands as a global market ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Senior Security Engineer (Remote)

    Senior Security Engineer (Remote)

    AbbVieNorth Chicago, IL, United States
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time
    AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable i...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days