Skip to content
RipplingRippling

Senior Security Engineer - Detection & Response

Build and improve security detection and response capabilities through telemetry tooling, automation, detection rules, SIEM/SOAR advancement, incident playbooks, and threat hunting. Requires at least four years of security engineering experience and strong expertise in forensics, adversary techniques, and security monitoring.

About the job

Responsibilities

  • Design and implement tools to collect security telemetry from cloud production systems.
  • Automate security workflows to improve the speed and accuracy of event identification and response.
  • Build and refine detection rules for emerging cyber threats.
  • Improve detection and response processes, procedures, and technologies.
  • Advance SIEM, case management, and security automation frameworks.
  • Create runbooks and incident response playbooks.
  • Lead threat hunting initiatives and incorporate findings into security controls.

Requirements

  • 4+ years of full-time security engineering experience focused on security monitoring, incident response, and threat hunting.
  • Proficiency developing tools and automation with common DevOps toolsets; Python preferred.
  • Understanding of common attacks, adversary tactics, techniques, procedures, and MITRE ATT&CK principles.
  • Experience with large-scale data analysis, modeling, and correlation.
  • Expertise in operating system internals and forensics across macOS, Windows, and Linux.
  • Experience managing and using SIEM and SOAR platforms.
  • Ability to analyze endpoint, network, and application logs for anomalous events.

Compensation

  • US-based salary range varies by location and is provided through location-specific compensation tiers.
  • Competitive salary, benefits, and equity.

Skills

Python, DevOps, Mitre Att&Ck, Threat Hunting, Incident Response, Security Monitoring, SIEM, Soar, Case Management, Security Automation, Cloud Security, Digital Forensics, Log Analysis, Data Analysis, Detection Engineering

Juicebox

Juicebox

San Francisco, CA

GRC Lead
$150k+/yrOn-site3+ YOESecurity Engineering

Build and own Juicebox’s governance, risk, compliance, and customer trust function, leading audits, enterprise security reviews, policies, and AI governance initiatives. Requires 3+ years in GRC or security compliance and experience with SOC 2, ISO 27001, and customer security questionnaires.

Alex

Alex

San Francisco, CA

Security & Trust Lead
$150k+/yrOn-siteSecurity Engineering

Own Alex’s information security, compliance, AI governance, and enterprise trust program as its first dedicated Security & Trust hire. The role combines security reviews and customer-facing assurance with audits, regulatory readiness, risk management, and technical control development.

Plaid

Plaid

New York, NY

Fraud Intelligence Lead
$149k+/yrHybrid5+ YOESecurity Engineering

Leads a high-leverage fraud intelligence team while personally investigating complex attacks across identities, devices, accounts, and payments. The role combines people leadership, incident response, threat intelligence, and partnerships with product and ML teams to improve fraud detection and prevention.

Pinterest

Pinterest

United States

Senior Security Software Engineer, Security Operations
$156k+/yrRemote5+ YOESecurity Engineering

Provides technical leadership for Security Operations by building cloud security platforms, automated controls, vulnerability-management workflows, and developer-facing security capabilities. Requires senior-level production systems experience, AWS security architecture, Terraform, and strong cross-functional technical ownership.

Tines

Tines

United States

Senior Security Operations Engineer
$160k+/yrRemote6+ YOESecurity Engineering

Senior security operations engineer responsible for cloud security, detection and response, vulnerability remediation, threat hunting, incident response, and security automation. Requires 6+ years of security experience in complex cloud environments and strong AWS or Azure expertise.