# Detection And Response Engineer

**Company:** [Modal](https://hotfix.jobs/companies/modal)
**Location:** New York, NY
**Role:** Security Engineering
**Salary:** $150k – $270k/yr
**Skills:** Cloud Infrastructure, Kubernetes, Linux, Networking, SQL, LLMs, SIEM, Soar, Edr, Threat Hunting, Malware Analysis, Digital Forensics, Incident Response, Security Telemetry
**Posted:** 2026-08-17

> Build automated detection, investigation, and incident-response systems for a cloud-native platform. The role requires strong software engineering, security incident investigation, cloud infrastructure, Kubernetes, Linux, networking, and SQL experience, with opportunities to apply LLMs to security operations.

## Job Description

## Responsibilities

### Detection Engineering
- Design and build high-fidelity detections for attacks, abuse, and anomalous behavior across infrastructure and production systems.
- Improve detections using telemetry, threat intelligence, and incident lessons learned.
- Improve visibility across cloud infrastructure, containers, identity systems, and production services.

### Incident Response
- Lead or participate in investigations spanning production infrastructure, cloud environments, and internal systems.
- Build playbooks and automation to reduce investigation time and improve response consistency.
- Drive post-incident improvements that eliminate entire classes of future incidents.

### Security Tooling and Automation
- Build internal tooling to improve detection, investigation, and response workflows.
- Leverage LLMs to automate repetitive analysis, accelerate investigations, and surface actionable insights from security telemetry.
- Improve the collection, quality, and usability of security telemetry across the platform.

### Engineering Partnership
- Partner with engineering teams to ensure new systems are observable and secure by default.
- Help teams instrument services with telemetry needed for effective detection and response.
- Drive security improvements that make the platform easier to defend over time.

## Requirements
- Experience in detection engineering, incident response, security engineering, or software engineering with a strong security focus.
- Strong software engineering skills and experience building production systems.
- Experience investigating security incidents in cloud-native or distributed environments.
- Familiarity with modern cloud infrastructure, Kubernetes, Linux, and networking.
- Experience building detections using logs, telemetry, behavioral signals, or large-scale event data.
- Strong SQL skills for investigating security events and developing detections.
- Interest in applying AI and LLMs to detection, investigation, and response, including emerging threats involving AI-powered systems.
- Strong written and verbal communication skills.

## Nice-to-Haves
- Experience building AI- or LLM-powered security tooling.
- Experience with SIEM, SOAR, or EDR platforms.
- Experience with Kubernetes security or large-scale cloud infrastructure.
- Experience with threat hunting, malware analysis, or digital forensics.
- Experience contributing to security operations in a high-growth engineering organization.

## Similar jobs

- [Federal Compliance Manager](https://hotfix.jobs/jobs/1e20be75-7d2d-4b41-9067-ffbb919a86a7) - Figma - Remote - $153k – $245k/yr
- [Security Scientist](https://hotfix.jobs/jobs/36a4a0c9-f833-41fb-bd29-ad40c4d5050f) - Figma - Remote - $140k – $348k/yr
- [Application Security Engineer](https://hotfix.jobs/jobs/2910e6b0-19a3-46fe-9af2-2fe3f5ea6edf) - Vannevar - Remote - $160k – $210k/yr
- [Cyber Threat Intel Analyst](https://hotfix.jobs/jobs/56d78636-b895-48d1-a62c-1b5e253d3d78) - Wiz - Washington, DC - $160k – $220k/yr
- [GRC Analyst](https://hotfix.jobs/jobs/8f835d00-9815-44c9-b8f9-d81dcab07741) - Fireworks AI - San Mateo, CA - $160k – $170k/yr

**Apply:** https://hotfix.jobs/jobs/e26f2974-0cc0-41bb-8685-35c14b076d36
**Canonical:** https://hotfix.jobs/jobs/e26f2974-0cc0-41bb-8685-35c14b076d36