Senior Security Engineer, Detection and Response
Senior Security Engineer builds threat detections, leads incident response, and automates security operations in cloud/SaaS environments. Requires 5+ years experience with SIEM, SOAR, Python, AWS/GCP.
About the job
Responsibilities
- Design, build, and improve threat detections across infrastructure, products, tools, and environments
- Lead security incident response: investigation, containment, remediation, and post-incident learning
- Apply threat intelligence and attacker TTPs to detection, threat hunting, triage, and prioritization
- Collaborate with Security, Infrastructure, and IT on visibility, logging, and readiness
- Use automation, scripting, and Detection-as-Code to scale workflows
- Own end-to-end security projects
- Participate in on-call rotation for high-severity incidents
- Contribute to playbooks, mentoring, exercises, audits, and initiatives
Requirements
- 5+ years in security engineering, with 3+ years in security operations, detection engineering, or incident response
- Hands-on with SIEMs, SOAR, behavior analytics, Detection-as-Code
- Understanding of attacker techniques in cloud-native, SaaS, identity environments
- Experience with endpoint, runtime, forensic tools across OSes
- Knowledge of AWS, GCP, cloud security best practices
- Proficiency in Python, Bash, Terraform, CI/CD
- Strong communication skills
Compensation
USA: $156,000 - $210,000 USD Canada: $143,000 - $193,000 CAD Plus benefits, PTO, equity, incentives.
Skills
SIEM, Soar, Detection-As-Code, Python, Bash, Terraform, AWS, GCP, Threat Hunting, Incident Response
Similar jobs
Security Engineering jobsProvides technical leadership for Security Operations by building cloud security platforms, automated controls, vulnerability-management workflows, and developer-facing security capabilities. Requires senior-level production systems experience, AWS security architecture, Terraform, and strong cross-functional technical ownership.
Build and own Juicebox’s governance, risk, compliance, and customer trust function, leading audits, enterprise security reviews, policies, and AI governance initiatives. Requires 3+ years in GRC or security compliance and experience with SOC 2, ISO 27001, and customer security questionnaires.
Own Alex’s information security, compliance, AI governance, and enterprise trust program as its first dedicated Security & Trust hire. The role combines security reviews and customer-facing assurance with audits, regulatory readiness, risk management, and technical control development.
Leads a high-leverage fraud intelligence team while personally investigating complex attacks across identities, devices, accounts, and payments. The role combines people leadership, incident response, threat intelligence, and partnerships with product and ML teams to improve fraud detection and prevention.
Leads application security initiatives across products, APIs, distributed systems, and AI-enabled applications. The role requires at least five years of security or software engineering experience, strong threat-modeling and architecture skills, and the ability to build security automation and drive remediation.