looking for a Senior Security Engineer to add to our growing Threat Detection and Response (TD&R) Team. This is a hands-on technical role that will build our first line of defense against cybersecurity threats in a complex and evolving landscape.
You will be responsible for our detection and response lifecycle, identifying and preventing threats from impacting our employees, customers and other stakeholders.
As a Senior Security Engineer, you will have the opportunity to apply your experience to provide technical leadership to the team, build a platform to identify and stop threats, work with data to solve complex security challenges, and ultimately defend against critical threats.
β Build a platform to detect threats to the company using an engineering-first approach that prioritizes reliability, maintainability and scalability
β Leverage AI and automation to streamline detection and response operations in a safe and reliable manner
β Onboard, normalize and optimize security logging data to support detection engineering, applied ML models, and efficient querying during incidents.
β Apply an engineering mindset to develop high-fidelity, rule-based and ML-driven detections as code, utilizing automated testing and CI/CD pipelines for deployment.
β Own the end-to-end response to alerts, threats, and security incidents, including participating in on-call rotations
β Proactively monitor the threat landscape to identify and track emerging threats, ensuring that appropriate detective and preventative controls are deployed
β Partner with development teams to design controls for a cloud first infrastructure (AWS, Kubernetes, etc)
β 5+ years of experience in software, security, and/or data engineering
β Strong desire to apply the latest technology including AI and ML to defend against threats
β Experience with data pipelines and data engineering, especially centralized logging, SIEM tools, and data lakes
β Desire to measure the success of your work with quantitative tools like Precision and Recall
β Proficiency in at least one programming language like Python, Go or similar
β Proven experience with cloud infrastructure and technologies like AWS, Kubernetes, containers, IaC, etc
β Proven experience with good engineering practices like git/GitHub and CI/CD automations
β Familiarity with tactics, techniques, and procedures used by threat actors
β Experience detecting and responding to cybersecurity incidents