# Senior Detection Engineer II

**Company:** [Instacart](https://hotfix.jobs/companies/instacart)
**Location:** Remote
**Role:** Security Engineering
**Salary:** $192k – $243k/yr
**Experience:** 6+ years
**Skills:** AWS, Azure, GCP, macOS, Python, Go, Soar, CI/CD, Threat Hunting, Detection-As-Code, Incident Response, Red Teaming, Machine Learning, Cyber Forensics, Zero Trust
**Posted:** 2026-08-24

> Develops and operates detection engineering systems across endpoint, cloud, container, and SaaS environments. The role requires at least six years in detection, incident response, or offensive security, strong attacker TTP knowledge, macOS expertise, and detection-as-code experience.

## Job Description

## Responsibilities
- Develop, tune, document, and maintain detection logic across endpoint, cloud, container, and SaaS log sources.
- Assist with cyber forensic investigations across varied log sources.
- Optimize log ingestion pipelines and telemetry collection for high-quality, actionable security data while managing volume and cost.
- Design and build SOAR playbooks and automation workflows for detection triage, enrichment, and response.
- Mentor junior security analysts and detection engineers on threat hunting, detection logic, and investigation techniques.

## Requirements
- **6+ years** of experience in detection engineering, incident response, or offensive security.
- Experience with one or more public cloud platforms: AWS, Azure, or Google Cloud.
- Deep understanding of attacker TTPs in modern zero-trust environments, including identity compromise, token theft, and abuse of trust boundaries.
- Proficiency with macOS internals and telemetry for identifying macOS-specific threats.
- Experience implementing detection-as-code workflows with version control, peer review, automated testing, and CI/CD deployment pipelines.
- Basic proficiency with Python, Golang, or other programming languages.
- Relevant certifications such as GCFA, GCFE, GNFA, GREM, OSCP, or GCIA.

## Nice-to-haves
- Background in offensive security or red teaming.
- Knowledge of machine learning for threat detection.

## Compensation and Benefits
- ATS-listed salary: **$192,000–$242,500 USD annually**, depending on location.
- Eligible for a new-hire equity grant and annual refresh grants.
- Benefits and compensation may vary based on work location, experience, and required skills.
- Remote work with flexibility to work from home, an office, or another preferred location, alongside regular in-person events.

## Similar jobs

- [Senior Platform Security Engineer](https://hotfix.jobs/jobs/3ac667bf-62fa-4280-8ccb-2af3468d8579) - Discord - $196k – $245k/yr
- [Senior Software Engineer, Security](https://hotfix.jobs/jobs/9e9fbefb-bbfa-4328-b66f-77a8736b4499) - Harvey - San Francisco, CA - $188k – $282k/yr
- [Senior AI Platform Security Engineer](https://hotfix.jobs/jobs/be3e0b84-8694-4a8e-9de2-2c078316c6b0) - Front - San Francisco, CA - $187k – $250k/yr
- [Senior GRC Engineer](https://hotfix.jobs/jobs/d697c300-f74b-4139-a767-9387816d3aa4) - Square - Remote - $185k – $327k/yr
- [Senior Software Engineer - Cloud Security](https://hotfix.jobs/jobs/4c2da306-e1e5-4a5f-9bd4-1504301784bc) - Snowflake - Menlo Park, CA - $200k – $288k/yr

**Apply:** https://hotfix.jobs/jobs/bc6380b5-c412-4bf8-a9b0-af8410baa07c
**Canonical:** https://hotfix.jobs/jobs/bc6380b5-c412-4bf8-a9b0-af8410baa07c