Detection Engineering in the Age of AI
Presentation at KSU Cybersecurity Speakers Series 2026
Abstract
Detection engineering is the discipline of building, maintaining, and improving the detection capabilities that security teams rely on to identify threats. This presentation explores the current state of detection engineering and practical approaches to developing robust detection logic in modern security environments.
Key Topics
- The evolving threat landscape and what it means for defenders
- Core principles of detection engineering
- Building high-fidelity detections to reduce alert fatigue
- Detection-as-code: versioning and testing detections
- Operationalizing threat intelligence into detection logic
- Measuring and improving detection coverage
Takeaways
Attendees will leave with:
- A framework for approaching detection engineering systematically
- Practical techniques for writing and validating detections
- Strategies for prioritizing detection coverage gaps
- Methods for evaluating detection quality and effectiveness