# Senior Threat Engineer

**Company:** [Coalition Security](https://hotfix.jobs/companies/coalition-security)
**Location:** Remote
**Role:** Security Engineering
**Experience:** 5+ years
**Skills:** Threat Detection, Incident Response, Threat Hunting, Soc Operations, Detection Engineering, Security Automation, SIEM, Edr, Soar, Playbooks, Security Enrichment Pipelines, Scripting, Query Writing, Workflow Design, Telemetry
**Posted:** 2026-08-13

> The Senior Threat Engineer designs scalable threat-detection, decisioning, and response workflows, using investigation, automation, and operational data to improve accuracy and reduce manual review. The role requires significant cybersecurity operations experience and strong analytical, communication, and cross-functional collaboration skills.

## Job Description

## Responsibilities
- Design, build, and improve detection, decisioning, and response workflows for the Verdict Engine.
- Own complex threat-detection and workflow problems from investigation concept through implementation, validation, and iteration.
- Translate threat research and investigative reasoning into scalable detections, enrichment, triage logic, and automated decisions.
- Analyze operational data to identify false positives, false negatives, latency issues, and opportunities to improve workflow categories.
- Increase system autonomy, reducing manual review while improving service quality and consistency.
- Support complex or novel cases and incorporate lessons into future automated handling.
- Improve the clarity, accuracy, and calibration of customer-facing outputs.
- Identify customer pain points and use those insights to improve verdict logic, response content, and product behavior.
- Partner with product, engineering, and security teams on platform capabilities, data quality, and operational leverage.
- Define best practices, operating principles, and technical standards for Threat Engineering.
- Document detection concepts, workflow logic, and operating principles.
- Provide technical leadership through execution, judgment, and mentorship.

## Requirements
- Significant cybersecurity operations experience in threat detection and response, detection engineering, incident response, threat hunting, or SOC operations.
- Strong investigative and analytical skills, including the ability to convert ambiguous signals into practical detection logic and workflow improvements.
- Experience building, tuning, or maintaining security automations, detections, playbooks, rules, or enrichment pipelines.
- Ability to independently own complex technical or operational problem areas and drive improvements through ambiguity.
- Strong written and verbal communication skills, including documenting logic and explaining threats, tradeoffs, and outcomes.
- Ability to collaborate with product, engineering, and security stakeholders.
- Comfort using data to evaluate detection quality and workflow performance.
- Preference for simple, scalable solutions that reduce unnecessary complexity and manual work.

## Nice-to-haves
- Experience in high-volume security operations environments.
- Experience with SIEM, EDR, SOAR, case management, and telemetry enrichment systems.
- Scripting or query-writing experience for investigations, automation, or workflow analysis.
- Experience improving operational quality through experimentation, measurement, and continuous iteration.
- Experience in workflow design, detection engineering, automation, or security product development.
- Experience mentoring engineers, setting technical direction, or influencing detection and response practices.

## Benefits
- 100% medical coverage, including outpatient care.
- Life insurance.
- 25+ paid holidays.
- Annual home office stipend.
- 7% employer pension contribution.
- Mental and physical health wellness programs.
- Competitive compensation and advancement opportunities.

## Similar jobs

- [Senior Security Engineer, Offensive Security](https://hotfix.jobs/jobs/e6f5289c-9cb8-4a13-b321-e0ecc9a54c96) - Docker - Remote - €119k – €170k/yr
- [Security Engineer, Detection and Response](https://hotfix.jobs/jobs/02ff0cde-e8e1-4f38-9c48-d8149d22a95b) - Writer - London, United Kingdom
- [Senior Security GRC Analyst](https://hotfix.jobs/jobs/b54fb115-3bb7-4d88-8fdc-b7901d26d90d) - Monarch - Remote - $180k – $215k/yr
- [Senior Security Engineer, Research & Engineering](https://hotfix.jobs/jobs/f9156020-d99c-45aa-8dba-fcd0035e45b4) - Trail of Bits - Remote
- [Senior Security Engineer, Security Incident Response Team - EMEA](https://hotfix.jobs/jobs/33cbe57c-bb91-44ff-8901-3cde1ac976a7) - GitLab - Remote

**Apply:** https://hotfix.jobs/jobs/224710d6-9d25-4cdb-a261-dbf5257e5f41
**Canonical:** https://hotfix.jobs/jobs/224710d6-9d25-4cdb-a261-dbf5257e5f41