Skip to content

Open nowPosted 16 days ago

Threat Detection & Automation Engineer

Fiserv52 open roles

Pay
$146,000 – $244,800 a year
Where
Berkeley Heights New Jersey
Work mode
On site
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowThreat Detection & Automation EngineerFiserv · Berkeley Heights New Jersey
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Fiserv's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.8% of postings close within 7 days. Measured by our own scanner across the market. Fiserv postings stay open a median of 1 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.4%3 days
  3. 7.8%7 days
  4. 14.3%14 days
  5. 33.7%30 days
This job: posted 16 days ago

Fiserv median: 1 days open

The posting

Calling all innovators - find your future at Fiserv.

We're Fiserv, a global leader in Fintech and payments, and we move money and information in a way that moves the world. We connect financial institutions, corporations, merchants and consumers to one another millions of times a day - quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app, or withdraw money from the bank, we're involved. If you want to make an impact on a global scale, come make a difference at Fiserv.

Job Title

Threat Detection & Automation Engineer

About your role:

As a Threat Detection & Automation Engineer, you will enable end-to-end detection engineering across telemetry onboarding, detection content development, response automation, and threat reporting within Cyber Security Operations at Fiserv. You will be a partner with threat intelligence, threat hunting, incident response, red team, platform, and engineering teams to build and operate resilient detection infrastructure and integrations at enterprise scale. Your work will strengthen detection fidelity, improve operational awareness, and help teams respond quickly to credible threats across the Fiserv environment.

What you'll do:

  • Research adversarial techniques and translate threat behaviors into high-fidelity detections aligned to complex cybersecurity use cases.
  • Design, build, and operate production-grade security detection infrastructure across Google SecOps and internal automation applications that support enrichment, orchestration, and response workflows.
  • Lead telemetry and detection lifecycles, including source onboarding, parsing, normalization, enrichment, testing, deployment, tuning, and ongoing maintenance.
  • Develop custom integrations, automations, and lightweight services using application programming interfaces (APIs), webhooks, and event-driven patterns to improve signal fidelity and reduce mean time to detect and mean time to respond.
  • Create dashboards, metrics, and reports using business intelligence tools, structured query language (SQL), statistical analysis, and applied artificial intelligence and machine learning techniques to improve threat visibility and operational reporting.
  • Apply Python, prompt-driven workflows, model context protocol (MCP) capabilities, and agent-to-agent orchestration patterns to support detection engineering, enrichment, and analytic decision support.
  • Collaborate with threat intelligence, threat hunters, incident responders, red team, and engineering partners to evaluate detection coverage gaps and improve defensive capabilities.
  • Manage work through Agile practices, documenting requirements, tracking delivery, and maintaining reliable platform operations across hybrid environments.

Experience you'll need to have:

  • 8+ years of experience in cybersecurity engineering, security operations, or detection engineering, including building and maintaining detections for enterprise security environments.
  • 8+ years of experience developing and tuning detections using security information and event management (SIEM) technologies, security orchestration, automation, and response (SOAR) platforms, and correlated rule logic for complex threat scenarios.
  • 8+ years of experience scripting and automation development using Python, SQL, PowerShell, Bash, or similar languages to support integrations, telemetry processing, and response workflows.
  • 8+ years of experience working with cybersecurity technologies such as endpoint detection and response (EDR), intrusion detection system or network detection and response (IDS/NDR), user and entity behavior analytics (UEBA), data loss prevention (DLP), web application firewall (WAF), proxy technologies, and cloud security services.
  • Experience designing and supporting API integrations using representational state transfer (REST), JavaScript Object Notation (JSON), webhooks, OAuth, service accounts, and event-driven messaging patterns with measurable reliability and observability outcomes.
  • Experience applying MITRE ATT&CK, detection coverage analysis, telemetry mapping, dashboard development, and threat reporting to improve cyber detection quality and operational awareness.
  • Bachelor's degree in cybersecurity, computer science, information technology, engineering, or a related field, or equivalent combination of education, related experience and/or military experience.

Experience that would be great to have:

  • Experience with Google SecOps in enterprise-scale detection engineering or security operations environments.
  • Experience applying artificial intelligence, machine learning, feature engineering, prompt engineering, and AI-assisted coding to cybersecurity analytics, enrichment, or automation use cases.
  • Experience with infrastructure as code, continuous integration and continuous delivery (CI/CD), Git-based workflows, and platform automation using tools such as Terraform.
  • Industry certifications such as GIAC Certified Incident Handler, GIAC Security Operations Certified, GIAC Certified Intrusion Analyst, GIAC Penetration Tester, GIAC Defending Advanced Threats, or equivalent certification.

How you'll work:

  • This role is on-site Monday through Friday. Fiserv considers in-person collaboration to be an essential part of this role as in-person office experiences help you with your overall onboarding experience and leads to stronger productivity.

Sponsorship:

You must currently possess valid and unrestricted U.S. work authorization to be considered for this role. Individuals with temporary visas including, but not limited to, F-1 (OPT, CPT, STEM), H-1B, H-2, or TN, or any candidate requiring sponsorship, now or in the future, will not be considered for this role.

Benefits at Fiserv:

  • Fuel Your Life program to support your physical, financial, social, and emotional well-being.
  • Paid holidays and generous time away policies.
  • No-cost mental health support through Employee Assistance Programs.
  • Living Proof program to recognize your peers’ extra effort with points redeemable for rewards.
  • Eight Employee Resource Groups to foster a collaborative culture and expand your network.
  • Unparalleled professional growth with training, development, and internal mobility opportunities.
  • Medical, dental, vision, life, and disability insurance options available from day one.
  • Retirement planning including 401k match and discounted shares with the Employee Stock Purchase Plan.
  • Tuition assistance and reimbursement program.
  • Paid parental and military leave.

#LI-MJ1

Salary Range

$146,000.00 - $244,800.00

These pay ranges apply to employees in New Jersey and New York. Pay ranges for employees in other states may differ.

It is unlawful to discriminate against a prospective employee due to the individual's status as a veteran.

For incentive eligible associates, the successful candidate is eligible for an annual incentive opportunity which may be delivered as a mix of cash bonus and equity awards in the Company’s sole discretion.

Thank you for considering employment with Fiserv. Please:

  • Apply using your legal name
  • Complete the step-by-step profile and attach your resume (either is acceptable, both are preferable).

Our commitment to Equal Opportunity:

Fiserv is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, gender, gender identity, sexual orientation, age, disability, protected veteran status, or any other category protected by law.

If you have a disability and require a reasonable accommodation in completing a job application or otherwise participating in the overall hiring process, please contact [email protected]. Please note our AskHR representatives do not have visibility to your application status. Current associates who require a workplace accommodation should refer to Fiserv’s Disability Accommodation Policy for additional information.

Note to agencies:

Fiserv does not accept resume submissions from agencies outside of existing agreements. Please do not send resumes to Fiserv associates. Fiserv is not responsible for any fees associated with unsolicited resume submissions.

Warning about fake job posts:

Please be aware of fraudulent job postings that are not affiliated with Fiserv. Fraudulent job postings may be used by cyber criminals to target your personally identifiable information and/or to steal money or financial information. Any communications from a Fiserv representative will come from a legitimate Fiserv email address.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Fiserv's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Fiserv's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Fiserv's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.