Sr. Security Engineer (Detection)
Core
Own the end-to-end detection and alerting program, turning raw telemetry into high-signal security detections and managing incident response.
Role type
Senior Security Engineer (Detection & SIEM)
Builds
Detection rules, log pipelines, incident response automation, and audit trails for ePHI systems.
Domain
Healthcare / Cybersecurity (SIEM, Cloud Security, Incident Response)
Required skills
SIEM detection engineering, log correlation, incident response, cloud security (AWS/GCP), identity security, scripting (Python), threat modeling (MITRE ATT&CK), HIPAA compliance
Preferred skills
Detection-as-code, SOAR/automation, healthcare regulatory experience (HIPAA/SOC2), specific tool familiarity (Datadog, Okta, Snowflake)
Technologies
Datadog, AWS, GCP, Okta, Google Workspace, Jamf, Snowflake, GitHub, Slack, Python
Responsibilities
Own Datadog SIEM log pipelines and cost management; Build and tune detection rules across cloud, identity, and endpoint; Reduce alert noise and improve detection metrics; Respond to security incidents and update playbooks; Automate triage and containment workflows; Contribute to cloud hardening and identity access management.
Seniority
Senior, hands-on IC
