Security Software Engineer, D&R Platform
Builds and scales security analytics infrastructure, including data pipelines for telemetry processing and ML-powered detection systems using Claude. Requires 7+ years in software engineering focused on security, infrastructure, and data pipelines.
About the job
Responsibilities:
- Build AI-powered platform responsible for all aspects of D&R capabilities from detection development to incident response
- Design and implement scalable data pipelines for ingesting and processing security telemetry across our rapidly growing infrastructure
- Architect solutions for storing and efficiently querying large volumes of security-relevant data
- Create rapid prototypes and proof-of-concepts for new security tooling and analytics capabilities
- Work closely with security and infrastructure teams to understand requirements and deliver solutions
- Mentor engineers and contribute to hiring and growth of the Security team
- Participate in on-call shifts
You may be a good fit if you:
- 7+ years of experience in software engineering with a focus on security, infrastructure and/or data pipelines
- Track record of building and maintaining internal developer tools or security platforms
- Strong understanding of data processing pipelines and experience working with large-scale logging systems
- Experience with:
- Test-driven software development and/or CI/CD (plus for direct experience with Detection-as-code workflows)
- Infrastructure-as-code (Terraform, CloudFormation)
- Query optimization for large datasets
- Experience with building stable and scalable services on cloud infrastructure and serverless architectures
- Ability to write maintainable and secure code in Python
- Experience working with security teams and translating requirements into technical solutions
- Ability to lead technical projects with minimal guidance
- Track record of driving engineering excellence through high standards, constructive code reviews, and mentorship
- Proven ability to lead cross-functional security initiatives and navigate complex organizational dynamics
- Outstanding communication skills, translating technical concepts effectively across all organizational levels
- Demonstrated success in bringing clarity and ownership to ambiguous technical problems
- Strong systems thinking with ability to identify and mitigate risks in complex environments
Strong candidates may also have experience with:
- Experience building security tooling from the ground up
- Background in implementing security monitoring solutions (SIEM, log aggregation, EDR)
- Background in detection engineering or security operations
- Experience with:
- SOAR platform/automation development
- Data lake / Database architecture
- API design and internal platform creation
- Track record of applying ML/AI to security problems
- Experience scaling security operations in a high-growth environment
Annual Salary: $320,000—$405,000 USD
Skills
Python, Terraform, CloudFormation, CI/CD, Data Pipelines, SIEM, Kubernetes, Machine Learning, API Design, Serverless
Similar jobs
Security Engineering jobsOwns DRTM adoption, attestation, and platform hardening across x86 and ARM infrastructure, working across firmware, bootloaders, kernels, hardware, and silicon security. The role requires deep systems-security experience, upstream Linux or firmware contributions, and strong vendor and OEM leadership.
Leads the company’s security GRC function, owning SOC 2, ISO 27001, enterprise audits, third-party risk, policy governance, and automated evidence workflows. Requires 7+ years of GRC or audit experience, end-to-end SOC 2 and ISO 27001 ownership, and strong security tooling expertise.
Leads cyber-focused AI misuse enforcement, managing analysts and contractors while developing detection and mitigation strategies for attacks, malware, and exploitation. Requires people management, cybersecurity expertise, high-volume abuse enforcement, data analysis with SQL or Python, and cross-functional risk communication.
Defines the security architecture for a next-generation operating system, spanning trust boundaries, hardware-backed protections, isolation, secure updates, and AI-agent guardrails. The role requires deep privileged-systems expertise, systems programming ability, and experience securing platforms across hardware, firmware, and software.
Leads cybersecurity and cyber intelligence operations for high-risk user-safety decisions, combining strategic planning, operational systems, automation, and direct people management. Requires 8+ years in cybersecurity-related work and 4+ years leading teams.