Skip to content
JustworksJustworks

Senior Security Engineer (Detection & Response)

Builds, tunes, and deploys security detections using EDR and AWS telemetry, conducts threat hunting, leads incident response, and automates workflows. Requires 5+ years in detection engineering, threat hunting, and AWS security services proficiency.

About the job

Responsibilities

  • Build, tune, and deploy high-quality detections across our platform
  • Develop and refine detections using telemetry from EDR, threat intel, endpoint & cloud posture platforms and native AWS cloud services
  • Conduct proactive threat hunting to uncover threat actor behaviors and detection gaps
  • Lead security event & incident handling, including triage, investigation, containment guidance, and post-incident improvements
  • Build automation and tooling to reduce manual effort and improve detection accuracy
  • Drive process improvements across detection engineering, incident response, and telemetry workflows
  • Collaborate with Engineering to ensure high-quality logging and visibility across AWS environments
  • Explore and prototype AI-assisted detection and response capabilities
  • Contribute to internal playbooks, documentation, and detection engineering best practices
  • Design and conduct table-top exercises to validate readiness and strengthen response processes
  • Participate in an on-call rotation

Qualifications

  • 5+ years of hands-on experience in detection engineering, threat hunting, security event analysis, and incident response
  • Strong understanding of attacker behaviors, malware techniques, and modern threat landscapes
  • Hands-on experience with EDR platforms (event analysis, detections, hunting)
  • Proficiency with AWS security and logging services (CloudTrail, GuardDuty, IAM, VPC Flow Logs, Lambda, etc.)
  • Experience designing and conducting attack & defend (table-top) exercises
  • Demonstrated ability to improve processes, reduce friction, and automate repetitive tasks
  • Interest in how AI/ML can enhance detection, hunting, and response workflows
  • Strong communication skills and comfort working cross-functionally in a fast-paced environment

Compensation

Base wage range: $167,500 - $235,000 annually

Skills

Edr, AWS, Cloudtrail, Guardduty, IAM, Vpc Flow Logs, AWS Lambda, Threat Hunting, Incident Response, Detection Engineering, AI/ML, Automation, SIEM

GitLab

GitLab

United States
Senior Manager, Product Security Engineering
$168k+/yrRemote5+ YOESecurity Engineering

Leads the Product Security team responsible for security posture management, governed security rollouts, and software supply chain security across GitLab’s software factory. The role combines technical security leadership, organizational adoption, audit readiness, team building, and external thought leadership.

Upstart

Upstart

United States

Senior Application Security Engineer
$167k+/yrRemote5+ YOESecurity Engineering

Leads application security initiatives across products, APIs, distributed systems, and AI-enabled applications. The role requires at least five years of security or software engineering experience, strong threat-modeling and architecture skills, and the ability to build security automation and drive remediation.

Censys

Censys

United States

Research Systems Analyst
$170k+/yrRemote6+ YOESecurity Engineering

Build and operate scalable malware-analysis, threat-enrichment, and graph-intelligence systems that power security research and detection. The role requires 6+ years of security pipeline or threat-intelligence experience, strong Python or Go skills, and expertise in cloud and distributed systems.

Flex

Flex

United States

Senior Software Engineer, Security
$170k+/yrRemote5+ YOESecurity Engineering

Build and lead product and infrastructure security for systems that move money, creating secure defaults, automation, access controls, and vulnerability management processes. The role requires strong software engineering, cloud infrastructure expertise, risk-based judgment, and the ability to operate independently as the senior security engineer.

Wiz

Wiz

United States

Compliance Engineer - Public Sector
$174k+/yrRemote6+ YOESecurity Engineering

Leads engineering for Wiz’s FedRAMP CR26 initiative, translating federal compliance requirements into scalable compliance-as-code, automation, and evidence-generation solutions. Requires 6+ years in security, DevOps, or systems engineering and deep experience with NIST, FedRAMP, and government cloud environments.