Remote job
Manager, Detection Engineering (Rapid Response Team)
Job details
About this role
Role overview
The Manager of Detection Engineering leads a Rapid Response Team responsible for fast, reliable detection coverage against emerging and actively exploited threats, critical vulnerabilities, supply chain attacks, and detection gaps surfaced through customer escalations, internal research, and threat intelligence. The role blends people management with hands-on technical leadership: the manager personally contributes to detection engineering, rule development, and code review while owning team direction and protecting engineering focus in a fast-moving, reactive environment. Success depends on partnering across functions to deliver consistent, timely coverage and clear communication with stakeholders.
Responsibilities
- Personally develop, review, and drive detections to merge and release, particularly during surges and for the hardest threats, setting the technical standard the team is measured against - Lead, coach, and grow a team of five or more senior to staff detection engineers, owning hiring, development, performance management, and day-to-day operations - Own operational cadence including threat triage and prioritization, SLO adherence, incident coordination, and workload balancing across concurrent threats - Protect team focus and capacity by shielding engineers from unscoped demand while ensuring high-priority work meets target turnaround times - Grow cross-functional partnerships that extend the team's reach, representing the team in shared forums that surface emerging threats and communicate impact to leadership - Own the team's roadmap, process documentation, service charter, and metrics, and champion detection automation and tooling that multiplies engineer output
Requirements
- Proven experience leading or mentoring a detection engineering, threat detection, or SOC-adjacent team; direct people management is ideal, though a strong technical lead ready to step fully into management will also be considered - Strong technical depth to personally contribute to detection rule development and code review - Experience responding to emerging threats, exploited vulnerabilities, or supply chain attacks, including willingness to engage when issues arise outside a traditional business-day schedule - Excellent communication and stakeholder management skills, with the ability to represent a technical team to senior leadership and partner teams - Experience establishing or maturing team processes, metrics, and documentation that leadership can rely on - Familiarity with intake and triage workflows
Nice to have
- Familiarity with detection automation tooling
Benefits and work setup
- U.S. role with a location-based base pay range of $164,000–$226,000 - Equity participation through restricted stock units and an employee stock purchase plan - Flexible time off, paid company holidays, paid sick time, gender-neutral parental leave, and grandparent leave - Medical, dental, and vision coverage, 401(k) retirement plan with company match, life and disability insurance - Health and dependent care FSA, voluntary benefits, employee assistance program, pre-paid legal support, pet insurance, fertility coverage, and adoption and surrogacy reimbursement - Home office allowance and mobile phone reimbursement - Wellness coach and wellness or gym reimbursement