Job Description
The Team:
As an Engineering Manager on the Detection Engineering Threat Hunting (DETH) team, you will lead a team of security engineers responsible for developing high-fidelity detection content across a diverse set of log integrations, with a strong focus on cloud-native data. You will drive the strategy, execution, and continuous improvement of our detection capabilities to identify and respond to emerging threats across Datadog’s infrastructure. Partnering closely with Incident Response, Threat Intelligence, and internal engineering teams, you’ll ensure our detection program scales effectively while fostering a collaborative, growth-oriented team environment. This is a high-impact leadership role where you will shape both technical direction and team development while leveraging Datadog’s own security products to enhance our defenses.
At Datadog, we place value in our office culture - the relationships and collaboration it builds and the creativity it brings to the table. We operate as a hybrid workplace to ensure our Datadogs can create a work-life harmony that best fits them.
What You’ll Do:
Lead, mentor, and grow a team of detection engineers, providing technical guidance, career development, and performance feedback.
Define and drive the detection engineering lifecycle to identify threats across Datadog’s infrastructure and manage a scalable, prioritized detection backlog.
Build and lead a metrics-driven detection engineering program, defining clear success measures (e.g., coverage, fidelity, response impact) and holding the team accountable to measurable security outcomes.
Partner with Incident Response and Threat Intelligence teams during security incidents, guiding threat hunting strategies, and owning the rapid deployment of detections to close gaps and support response and containment
Oversee the research and operationalization of log telemetry from the Datadog Logs platform into actionable security detections.
Improve team efficiency by identifying gaps in tooling, automation, and workflows, and leading initiatives to streamline detection engineering processes.
Evangelize your team’s mission and regularly communicate with teams outside of your organizational structure.
Work with leadership to set quarterly OKRs that advance our detection coverage across the AI, Cloud, Software Supply Chain, Endpoint, Network, and SaaS attack surfaces.
Who You Are:
You have 2+ years of experience leading or mentoring engineers in detection engineering, threat hunting, security operations, cloud security, or related operational security domains.
You’ve worked with at least one public cloud platform (AWS, GCP, or Azure) and cloud-native technologies like Kubernetes, Docker, or Terraform.
You have a strong understanding of cloud-native threat actor TTPs and corresponding defensive controls and actively stay up to date with new advancements in detection engineering.
You are comfortable reviewing or contributing to code and tooling development for detection and threat hunting use cases using Python, Go, or similar languages.
You bring a track record of driving cross-functional collaboration and delivering measurable security outcomes in complex environments.
Motivating, kind and humble people leader who focuses on growth and happiness for your team. You have the ability to grow talent by providing a proper mentorship and performance management environment while prioritizing empathy.
Nice to haves:
You’ve partnered with threat intelligence teams to translate threat research into scalable detection strategies.
You have led threat hunts to identify novel threat activity and turn that into new detections and close visibility gaps.
Datadog values people from all walks of life. We understand not everyone will meet all the above qualifications on day one. That's okay. If you’re passionate about technology and want to grow your skills, we encourage you to apply.
Benefits and Growth:
Generous and competitive benefits pack ... (truncated, view full listing at source)