Security Engineer building high-precision detections, incident response automation, and telemetry pipelines for cloud and SaaS platforms in the Public Sector. Requires active Top Secret clearance, 5+ years in detection engineering or incident response, and production coding skills.
164k – 342k/yr
On-site5+ YOESecurity Engineering
About the role
Responsibilities
Engineer, test, and deploy detection logic across cloud and enterprise environments, treating detections as software with version control, peer review, and measurable performance.
Build and maintain incident response automation, runbooks, and tooling that reduce containment timelines without sacrificing developer velocity.
Mature telemetry pipelines through improved schema design, normalization, enrichment, and quality checks that reduce false positives and increase signal fidelity.
Perform digital incident investigations to identify and contain potential security breaches.
Conduct digital forensics and malware analysis to understand attack vectors and adversary methodologies.
Integrate alerting with messaging and ticketing systems to enable fast, traceable response workflows.
Partner cross-functionally with IT, security, and engineering teams to harden identity and access patterns, close logging and forensics gaps, and implement maintainable guardrails that scale with the organization.
Utilize threat intelligence platforms to improve hunting, detection, and response workflows.
Clearly explain the significance and impact of incidents, providing actionable recommendations to both technical and non-technical stakeholders.
Requirements
Active Top Secret clearance (required; candidates without will not be considered).
5+ years of experience in Detection Engineering, Incident Response, or Security Operations, with a strong emphasis on building and shipping security tooling and automation.
Proficiency in at least one programming language (e.g., Python, Go) and comfort writing production-grade code.
Hands-on experience designing or improving detection pipelines, SIEM content, and alerting workflows in cloud-native environments.
Practical experience with SIEM, EDR, and SOAR tools.
Strong understanding of modern cyber threats, common attack techniques, and adversary TTPs.
Familiarity with digital forensics tools and malware analysis techniques.
Experience with cloud-native environments (e.g., AWS, GCP, Azure) and the security telemetry those environments generate.
Exposure to threat intelligence platforms and integrating intel into detection and investigation workflows.
Strong communication skills, with the ability to translate complex security findings into clear business impact.
Nice-to-Haves
Proficiency in NodeJS, TypeScript, Python, and/or Kubernetes.
Software engineer focused on security and privacy, improving Tailscale's security through feature development, audits, threat modeling, and spending 50% time writing code. Requires proficiency in Go or similar, security experience, and deep knowledge of vulnerabilities and cryptography.
163k – 204k/yr
RemoteSecurity Engineering
Security Infrastructure Engineer
TailscaleUnited States
Builds security controls across cloud, Kubernetes, networks, and CI/CD for Tailscale. Audits infrastructure, implements security features in Go/Terraform, and provides threat modeling expertise. Requires cloud security and infrastructure experience.
163k – 204k/yr
RemoteSecurity Engineering
Fraud Researcher
PlaidNew York, NY +2
Leads complex fraud investigations using Plaid's financial network data, reconstructs attacker behaviors, and collaborates with Data Science, ML, and Product teams to enhance detection models and fraud prevention products. Requires 3+ years applied fraud experience and strong analytical skills.
162k – 244k/yr
Hybrid3+ YOESecurity Engineering
GRC Program Manager, US Government Compliance
OpenAIWashington, DC
Leads US government compliance programs, driving FedRAMP and agency ATOs for OpenAI products. Collaborates with engineers on security controls, documentation, and audits in highly regulated environments. Requires 5+ years compliance experience and deep USG framework knowledge.
162k – 310k/yr
Hybrid5+ YOESecurity Engineering
Program Architect
OnebriefUnited States
Own the architecture and implementation of Onebrief's GRC framework for defense/government compliance (FedRAMP, CMMC, RMF, SOC 2). Translate regulatory requirements into technical security controls in close partnership with engineering teams.