Skip to content

Security Software Engineer II, Detection and Response

Builds detection and response systems, manages logging pipelines, develops internal security tools, and hunts threats in a cloud environment. Requires strong incident response experience, SIEM querying, scripting, and AI utilization skills.

124k – 255kSan Francisco, CASecurity EngineeringRemote

About the role

What you'll do

  • Build alerts and automation workflows to improve capabilities to detect and response to external and internal security threats
  • Manage our logging pipelines and infrastructure and onboard new logging sources to improve our detection coverage
  • Develop and maintain internal tooling to expand and automate team detection and response capabilities
  • Respond to alerts generated from our tooling and run incidents as part of an on-call rotation
  • Collaborate with cross team partners
  • Hunt for previously undetected threats in our environment
  • Leverage AI to streamline and enhance the efficiency, accuracy, and coverage of security engineering.

What we’re looking for

  • Bachelor’s degree in Computer Science, Cybersecurity or, a related field or equivalent experience
  • Strong knowledge of intrusion detection and incident response with an engineering focus in a modern cloud first environment
  • Knowledge of the attacker lifecycle, common attack and detection techniques
  • Hands on experience with writing SIEM queries for alerting, response, and threat hunting
  • Experience consuming threat intel and applying it to improve detection capabilities
  • Familiarity with using multiple sources of telemetry for threat investigations: Eg. EDR, Osquery, Firewall logs
  • Understanding of networking technologies and/or network security, basic TCP/IP network fundamentals
  • Depth in ideally MacOS internals, or alternatively in Linux/UNIX or Windows internals, persistence mechanisms, privilege escalation techniques
  • Scripting or automation experience (e.g., Python, Go, Ruby) for tool development or integration
  • Demonstrated ability to use AI to improve speed and quality in your day-to-day workflow for relevant outputs.
  • Strong track record of critical evaluation and verification of AI-assisted work (e.g., testing, source-checking, data validation, peer review).

Skills

SIEMEdrOsqueryPythonGoRubyAImacOSLinuxTCP/IP

Security Software Engineer II, Security Operations

Builds and improves security tooling, automations, and workflows for Security Operations at Pinterest. Partners with engineering teams on cloud security, access management, and infrastructure using AWS, Terraform, and AI-assisted development. Requires cloud/security engineering experience and bachelor's degree.

124k – 255kChicago, ILSecurity EngineeringRemoteAIAWS

Security Software Engineer II, Corporate Security

Develops automation tools, secure software systems, and integrates security into CI/CD pipelines for corporate security. Collaborates with teams on threat detection using AI-assisted workflows, Linux/UNIX/macOS/Windows internals, and secure engineering practices. Requires bachelor's in CS or equivalent.

124k – 255kSan Francisco, CASecurity EngineeringRemoteAIUnix

Security Engineer

Security Engineer focused on GRC automation to design and implement automation, dashboards, and integrations that power Governance, Risk, and Compliance operations using platforms like Drata.

123k – 172kUnited StatesSecurity EngineeringRemote3+ YOEAPIsDrata

Corporate Security Lead

Builds and leads corporate IT security operations including helpdesk, endpoint management, SIEM deployment, and team hiring for a space communications company. Requires 5+ years in IT/security/DevSecOps, hands-on tools like Okta and AWS, and compliance knowledge.

125k – 206kLos Angeles, CA +1Security EngineeringOn-site5+ YOEAWSOkta

Product Security Engineer

Embeds security into product design and development lifecycle by analyzing architectures, conducting threat modeling and assessments, maturing vulnerability management, and guiding developers on secure practices. Requires 5+ years in product/application security with expertise in cloud, containers, and automation tools.

125k – 160kSunnyvale, CASecurity EngineeringOn-site5+ YOEAWSGCP