Sr. Security Detection Engineer
Michigan Staffing - Lansing, Michigan, United States, 48900
Work at Michigan Staffing
Overview
- View job
Overview
Datavant is a data platform company and the world's leader in health data exchange. Our vision is that every healthcare decision is powered by the right data, at the right time, in the right format. Our platform is powered by the largest, most diverse health data network in the U.S., enabling data to be secure, accessible and usable to inform better health decisions. Datavant is trusted by the world's leading life sciences companies, government agencies, and those who deliver and pay for care. By joining Datavant today, you're stepping onto a high-performing, values-driven team. Together, we're rising to the challenge of tackling some of healthcare's most complex problems with technology-forward solutions. Datavanters bring a diversity of professional, educational and life experiences to realize our bold vision for healthcare. We are seeking a highly skilled and experienced Senior Security Detection Engineer to join our Security Operations team. This role is critical to the implementation and maintenance of our threat detection infrastructure, automation of security controls, and adherence to compliance frameworks such as FedRAMP, SOC 2, and HIPAA. What You Will Do Detection & Response Infrastructure Manage and maintain SIEM platforms (Splunk ES) across government and commercial environments. Perform SIEM capacity planning, configuration tuning, and tenant administration. Design and deploy security detections using custom Splunk SPL and alerting frameworks. Administer EDR platforms (e.g., CrowdStrike Falcon), including tenant management and policy tuning. Automate logging pipeline and detection logic deployments. Compliance & Audit Support Support internal and external audit requests (FedRAMP, SOC 2, HIPAA, HITRUST, etc.). Ensure appropriate audit logging is implemented across critical infrastructure and product applications. Assist with ASVF (Automated Security Validation Framework) requests. Security Platform Integrations & Operations Install, configure, and maintain Splunk Apps and Add-Ons including: Splunk Add-On for AWS Splunk Add-On for Windows Google Workspace for Splunk Splunk Add-On for Azure/Microsoft Services Build and maintain dashboards, reports, and analytics in Splunk. Manage clustered Splunk environments with multiple search heads and indexers. Onboard new data sources and integrate telemetry across platforms. Special Projects Participate in M&A integrations related to SIEM, EDR, DLP, IDP/IPS, MSSP SOC, and other security tools. Lead initiatives around web filtering, email firewall integration, and data loss prevention strategies. What You Need To Succeed 4+ years of experience in an IT or Information Security field within a highly regulated environment. Strong technical knowledge of AWS infrastructure and security services. Experience with regulatory compliance frameworks. Proficient with managing Splunk Enterprise Security, Splunk architecture and administration. Experience with endpoint protection platforms. Strong understanding of SIEM and EDR operations in regulated environments. What Helps You Stand Out Familiarity with modern security data lakes and cloud-native detection architectures. Experience working in agile environments with DevOps methodologies. Experience collaborating with Software Engineering and Infrastructure teams to onboard new data sources. Strong UNIX/Linux administration skills. Understanding of Kubernetes RBAC, network policies, and audit logging. Experience with FedRAMP-compliant projects is a plus. We are committed to building a diverse team of Datavanters who are all responsible for stewarding a high-performance culture in which all Datavanters belong and thrive. We are proud to be an Equal Employment Opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion, national origin, disability, veteran status, or other legally protected status. The estimated total cash compensation range for this role is: $148,000$185,000 USD.