Senior Detection and Response Engineer
Core
Build detections and response capabilities to find and stop threats across cloud, endpoints, and identity providers for a wealth management AI platform.
Role type
Senior Detection and Response Engineer (Security)
Builds
High-fidelity detections as code, response playbooks, and automation for cloud, endpoint, and identity telemetry.
Domain
Cybersecurity, Cloud Security, Threat Detection
Required skills
Detection engineering, Incident response, Threat hunting, SIEM authoring, Cloud security (AWS), Endpoint security, Identity security, Scripting/Automation (Python), MITRE ATT&CK framework
Preferred skills
Regulated environment experience (fintech), Cyber threat intelligence, Insider-threat detection
Technologies
AWS, Kubernetes, Datadog, Splunk, SentinelOne, CrowdStrike, Terraform, SOAR, WAF
Responsibilities
Build, tune, and maintain high-fidelity detections as code; Triage and investigate alerts, lead response on security incidents, and proactively threat-hunt; Operationalize threat intelligence and IOC ingestion; Develop response playbooks and automation (SOAR); Partner with MDR/IR partners and run purple-team exercises; Continuously improve logging coverage and detection efficacy.
Seniority
Senior, hands-on IC