← Back to jobs

Remote job

Senior Security Engineer - Threat Detection

Other Full-time Permanent USA (CA)

Job details

$202,725—$238,500 Salary
USA (CA) Eligibility
Senior Experience
Full-time Employment

About this role

Role overview

A senior engineering role focused on building and operating the threat detection platform that protects the organization and its customers. The work combines hands-on detection authoring with platform engineering: shaping the data pipelines, CI/CD, and tooling that let a small team cover a large attack surface. The position partners closely with Security Operations, Application Security, Enterprise Security, and product engineering teams across the company.

Responsibilities

- Design, deploy, and continuously refine detections mapped to MITRE ATT&CK across cloud, endpoint, identity, email, and application telemetry, with explicit false-positive thresholds. - Own the full detection lifecycle, from hypothesis and data validation through baselining, deployment, tuning, validation, and retirement. - Advance the detection-as-code platform through version control, peer review, automated testing, CI/CD, and improved pipeline reliability and observability. - Identify emerging threat surfaces and build integrations that strengthen data ingestion, enrichment, and coverage across internal and third-party systems. - Evaluate AI-assisted security capabilities such as secure MCP integrations, threat hunting, anomaly detection, and response automation, including where such tools introduce risk. - Turn threat intelligence into actionable detection content and retrospective scans, and partner with Security Operations during investigations, incidents, tabletop exercises, detection maintenance, and code pairing.

Requirements

- 6+ years of experience in security engineering, detection engineering, or a closely related discipline. - Hands-on track record writing production detections across cloud, endpoint, identity, or email telemetry. - Strong software engineering fundamentals, including detection-as-code, CI/CD, automated testing, and infrastructure-as-code practices. - Working knowledge of MITRE ATT&CK and adversary tactics, techniques, and procedures across major attack surfaces. - Practical experience evaluating or deploying AI-powered security tooling, with a clear-eyed view of its limits. - Comfort taking projects independently from idea to proof-of-concept to production.

Benefits and work setup

- Professional development stipend, comprehensive health coverage, and parental leave plans. - Flexible working model that supports in-person, hybrid, and remote arrangements depending on team and role requirements. - Open to candidates residing in the United States, excluding the San Francisco Bay, New York City, and Washington, D.C. metro areas.

Skills detected in the listing

PythonGoSQLApache AirflowAWSTerraform
Detected Sep 22, 2026
Last verified Sep 22, 2026

Hidden Jobs Access

Unlock application links

Read the full job details for free. An active Hidden Jobs Access subscription is required to open the original application link.

Weekly

FREE $6.99/week after trial
  • Original application links
  • Instant job alerts
  • Premium filters and CV matching
  • Cancel anytime before day 7

Monthly

$35.99 $17.99 /month
  • 35% cheaper than weekly
  • Original application links
  • Instant job alerts
  • Premium filters and CV matching

Lifetime

$99.99 $49.99 /forever
  • One-time payment
  • Original application links
  • Instant job alerts
  • Premium filters and CV matching
Hidden Jobs gives subscribers direct access to original application links
Offer ends in 00:00:00 Your profile-fit rate expires at midnight