SIGN IN
AI Detection Engineering Information Security Specialist jobs in United States
cer-icon
Apply on Employer Site
company-logo

TD · 18 hours ago

AI Detection Engineering Information Security Specialist

TD Bank is one of the world's leading global financial institutions, and they are seeking an experienced Information Security Specialist to lead AI-driven detection engineering. This role focuses on designing, implementing, and operating machine learning-enhanced detections across SIEM/XDR ecosystems, while mentoring engineers and shaping the detection roadmap.
BankingFinanceFinancial ServicesWealth Management
check
H1B Sponsor Likelynote

Responsibilities

Design, build, and productionize ML/AI detections (e.g., anomaly detection, behavior models, graph analytics) for Microsoft Defender (MDI/MDE/MDO), Sentinel, Splunk, and related platforms; champion model quality, drift monitoring, and explain ability
Establish feature pipelines and training/evaluation frameworks (offline/online) that support rapid iteration and safe rollout through CI/CD and detection-as-code workflows
Author and maintain reusable content libraries (rules, models, enrichers) aligned to MITRE ATT&CK and enterprise risk models; drive consistency and reusability across domains
Own the end-to-end lifecycle for AI-enabled use cases: problem framing, data readiness, threat modeling, model selection, validation, deployment, tuning, and retirement; maintain auditable artifacts for governance
Integrate detections with XSOAR playbooks, enrichment services, and case management to enable automated triage/response where risk criteria are met
Map AI use cases and threat models to convert high-value scenarios into AI-assisted detections; ensure MDI/XDR ↔ XSOAR synchronization and playbook readiness
Contribute to the detection platform vision (content libraries, testing harness, BAS integration, governance dashboards) to scale coverage and reduce time-to-detect

Qualification

Machine LearningDetection EngineeringSIEM/SOAR/XDRPythonMLOpsPowerShellSQL/KQLMITRE ATT&CKCommunication SkillsMentoring

Preferred

7+ years in detection engineering, data science for security, proven delivery of production ML detections and MLOps pipelines
Deep expertise with SIEM/SOAR/XDR (e.g., Splunk, Sentinel, XSOAR, Microsoft Defender suite) and threat detection methodologies; hands-on with content engineering and model governance
Strong skills in Python (pandas, scikit-learn, PyTorch/TensorFlow), PowerShell, and SQL/KQL; experience with feature engineering, cross-validation, A/B experiments, drift detection, and explainability
Familiarity with MITRE ATT&CK, kill-chain and threat modeling practices; ability to translate TTPs into signals, features, and labels
Demonstrated ability to work across technical and non-technical stakeholders; clear written/spoken communication; experience mentoring engineers and leading cross-functional initiatives

Benefits

Health and well-being benefits
Savings and retirement programs
Paid time off (including Vacation PTO, Flex PTO, and Holiday PTO)
Banking benefits and discounts
Career development
Reward and recognition

Company

The Toronto-Dominion Bank & its subsidiaries are collectively known as TD Bank Group (TD).

H1B Sponsorship

TD has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2022 (1)
2020 (6)

Funding

Current Stage
Late Stage
Total Funding
$65M
Key Investors
U.S. Department of the Treasury
2023-10-03Grant· $65M

Leadership Team

leader-logo
Brian Jacobson
Chief of Staff to the CEO, TD Bank, America's Most Convenient Bank
linkedin
F
Foster Glenn
Senior Vice President Technology and Data Risk Management
linkedin
Company data provided by crunchbase