Senior Security Engineer - Detection & Response
Build and improve security detection and response capabilities through telemetry tooling, automation, detection rules, SIEM/SOAR advancement, incident playbooks, and threat hunting. Requires at least four years of security engineering experience and strong expertise in forensics, adversary techniques, and security monitoring.
About the job
Responsibilities
- Design and implement tools to collect security telemetry from cloud production systems.
- Automate security workflows to improve the speed and accuracy of event identification and response.
- Build and refine detection rules for emerging cyber threats.
- Improve detection and response processes, procedures, and technologies.
- Advance SIEM, case management, and security automation frameworks.
- Create runbooks and incident response playbooks.
- Lead threat hunting initiatives and incorporate findings into security controls.
Requirements
- 4+ years of full-time security engineering experience focused on security monitoring, incident response, and threat hunting.
- Proficiency developing tools and automation with common DevOps toolsets; Python preferred.
- Understanding of common attacks, adversary tactics, techniques, procedures, and MITRE ATT&CK principles.
- Experience with large-scale data analysis, modeling, and correlation.
- Expertise in operating system internals and forensics across macOS, Windows, and Linux.
- Experience managing and using SIEM and SOAR platforms.
- Ability to analyze endpoint, network, and application logs for anomalous events.
Compensation
- US-based salary range varies by location and is provided through location-specific compensation tiers.
- Competitive salary, benefits, and equity.
Skills
Python, DevOps, Mitre Att&Ck, Threat Hunting, Incident Response, Security Monitoring, SIEM, Soar, Case Management, Security Automation, Cloud Security, Digital Forensics, Log Analysis, Data Analysis, Detection Engineering
Similar jobs
Security Engineering jobsBuild and own Juicebox’s governance, risk, compliance, and customer trust function, leading audits, enterprise security reviews, policies, and AI governance initiatives. Requires 3+ years in GRC or security compliance and experience with SOC 2, ISO 27001, and customer security questionnaires.
Own Alex’s information security, compliance, AI governance, and enterprise trust program as its first dedicated Security & Trust hire. The role combines security reviews and customer-facing assurance with audits, regulatory readiness, risk management, and technical control development.
Leads a high-leverage fraud intelligence team while personally investigating complex attacks across identities, devices, accounts, and payments. The role combines people leadership, incident response, threat intelligence, and partnerships with product and ML teams to improve fraud detection and prevention.
Provides technical leadership for Security Operations by building cloud security platforms, automated controls, vulnerability-management workflows, and developer-facing security capabilities. Requires senior-level production systems experience, AWS security architecture, Terraform, and strong cross-functional technical ownership.
Senior security operations engineer responsible for cloud security, detection and response, vulnerability remediation, threat hunting, incident response, and security automation. Requires 6+ years of security experience in complex cloud environments and strong AWS or Azure expertise.