Remote job
Senior Security Engineer, Detection & Response
Job details
About this role
Role overview
A senior security engineer position sits within a corporate detection and response function, leading the most complex threat investigations and incident response efforts. The role combines hands-on technical work—commanding major incidents, performing forensics, and building automation—with leadership, mentorship, and cross-team coordination across engineering, security, legal, privacy, and business stakeholders.
Responsibilities
- Lead high-impact security incidents from initial triage through containment, recovery, and closure, setting direction across multiple teams. - Investigate threats spanning endpoint, identity, cloud, SaaS, network, and application environments, reconstructing timelines and determining scope and impact. - Coordinate containment and remediation with system owners, balancing urgency, evidence preservation, and business consequences. - Run post-incident reviews, communicating findings, uncertainty, and response decisions to both technical and business audiences. - Build tools, queries, scripts, and automations that improve evidence collection, analysis, and case management, including AI-assisted workflows. - Mentor responders, participate in an on-call rotation, and partner with adjacent security functions to close telemetry gaps and improve detections.
Requirements
- 6+ years of hands-on incident response and digital forensics experience, including commanding major incidents with competing priorities. - Deep familiarity with attacker behavior and substantive depth in at least several of identity, endpoint, cloud, network, or application security. - Strong SQL and log-analysis skills, with practical programming or scripting ability (e.g., Python) to work with large, messy datasets. - Demonstrated use of AI-assisted workflows and active development of AI-based systems that strengthen incident coordination and case management. - Clear communication and sound judgment when working with engineers, executives, and sensitive information. - An engineering mindset focused on turning incident lessons into durable system and workflow improvements.
Benefits and work setup
- Market-based compensation with U.S. pay zones ranging roughly from $185,200 to $326,800 USD, depending on skills, experience, location, and market conditions. - Remote work, medical insurance, flexible time off, retirement savings plans, and modern family planning benefits are referenced. - Reasonable accommodations available for disabled applicants; inclusive hiring practices with consideration of arrest or conviction records in line with local fair-chance laws.