Senior Security Operations Engineer
Prevents, detects, and responds to security threats in corporate and cloud environments. Leads incident response, builds security tools in Go/Python, and collaborates cross-functionally. Requires 5+ years experience or bachelor's degree, coding skills, and cloud/DevOps familiarity.
About the job
What you’ll do
As a Security Operations Engineer at Brex, you will focus on preventing, detecting and responding to security threats across Brex's corporate and cloud environments. You will use existing systems and develop tools to improve our security capabilities. Our team is responsible for functions across corporate security, detection & response and infrastructure security domains; and we perform systems engineering and automation to support those functions.
Responsibilities
- Work on a highly cross-functional team to prevent, detect and respond to security threats across Brex's corporate and cloud environments
- Perform security incident response, investigation, remediation, and documentation, participate in periodic threat hunting and security exercises
- Leading, scoping and building features, participate in designing, and maintaining tools and systems which support the team’s domains – corporate security, detection & response and infrastructure security
- Collaborating and partnering with engineering and operations teams to drive remediation of security issues, while balancing prioritization of those security issues within SLA and teams’ respective backlogs
- Caring about secure system design, valuing building things correctly, an understanding of a MVP approach and an empathetic mindset when working with others
Requirements
- Bachelor’s degree in Computer Science, Engineering or related field OR equivalent training / fellowship OR 5+ years work experience
- Experience working in a corporate security, detection & response or infrastructure security role with responsibilities for security alert triage and security incident response
- Familiarity with CI/CD systems and DevOps workflows (e.g. Buildkite, Flux, Git, Terraform) in cloud environments (e.g. AWS, Azure, GCP)
- Experience with deploying and maintaining some of the security services and tools owned by the team (e.g. - SIEM, data pipelines, SOAR, domain monitoring, endpoint tooling, email protection tooling, cloud security tools)
- While not primarily a development role, the team develops and maintains tools written in Go and Python, so experience with coding is required
- You thrive in a collaborative environment filled with a diverse group of people with different expertise and backgrounds
Bonus points
- Proficiency with Go and other programming languages
- Experience with securing distributed systems in AWS, cloud and Kubernetes environments
- Contributions to the wider technical community (open source, public research, mentorship, community organizing, blogging, presentations, etc)
Compensation
The expected salary range for this role is $192,000 - $240,000. However, the starting base pay will depend on a number of factors including the candidate’s location, skills, experience, market demands, and internal pay parity. Depending on the position offered, equity and other forms of compensation may be provided as part of a total compensation package.
Skills
SIEM, Soar, Terraform, AWS, Kubernetes, Go, Python, Buildkite, Flux, Git
Similar jobs
Security Engineering jobsDevelops and operates detection engineering systems across endpoint, cloud, container, and SaaS environments. The role requires at least six years in detection, incident response, or offensive security, strong attacker TTP knowledge, macOS expertise, and detection-as-code experience.
Senior platform security engineer responsible for building identity and access management systems, Zero Trust architecture, cloud security baselines, and secure developer platforms. Requires 5+ years operating production systems and strong software development and security experience.
Build and operate foundational security services covering identity, authorization, secrets, and privileged access for an AI-powered enterprise platform. The role requires 5+ years of production software engineering experience and hands-on security infrastructure expertise.
This role defines, builds, and secures the internal platform supporting Front’s engineering, GTM, data, and AI tooling. It owns AWS and Snowflake infrastructure, paved-road delivery, observability, access controls, vulnerability management, incident response, compliance support, and AI-client security.
Build data pipelines, integrations, policy-as-code, and agentic AI workflows that automate security governance and continuous compliance. The role requires 7+ years of production software engineering experience plus expertise in LLMs, APIs, distributed data, and cloud infrastructure.