Detection Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Detection Engineer (Cybersecurity): Building and operating high-signal detection systems and workflows for a cloud-native environment with an accent on automation, LLM-based security workflows, and platform scalability. Focus on translating threat intelligence into durable detections and improving MTTD through a software engineering approach to security.
Location: Hybrid in San Francisco, CA or New York, NY
Salary: $230,000 – $260,000 per year
Company
is a collaborative AI workspace where teams and agents think together, integrating knowledge, projects, and AI tools into one unified platform.
What you will do
- Design and maintain high-signal detections across cloud, identity, endpoints, and SaaS environments.
- Build and improve the detection platform, including rule lifecycle management, tuning, and rollout safety.
- Develop automation and tooling to accelerate triage and investigation, incorporating LLM-based workflows.
- Translate threat intelligence and adversary TTPs into durable detections and telemetry requirements.
- Participate in investigations, incident response, and postmortems to drive long-term security improvements.
- Define and track key metrics such as coverage, MTTD, and alert quality to guide investment decisions.
Requirements
- 6+ years of experience in detection engineering, security operations, incident response, or threat hunting.
- Fluency in detection languages such as Sigma, KQL, SPL, YARA-L, or EQL.
- Strong cloud security experience in AWS, GCP, or Azure, including identity-focused attack detection.
- Hands-on experience with SIEM, EDR, and SOAR platforms in large-scale environments.
- Offensive security mindset with experience leading purple team or adversary emulation exercises.
- Must be based in or able to work hybrid from San Francisco or New York.
Nice to have
- Experience applying LLMs or agent-style tooling to security workflows.
- Experience securing AI-enabled systems or endpoint tooling.
- Kubernetes or container detection experience.
- Background in threat intelligence, malware analysis, or digital forensics.
- Experience at a high-growth startup or AI company.
Culture & Benefits
- Highly competitive cash compensation, equity, and comprehensive benefits.
- Culture focused on craft, humanity, and building sustainable, high-standard products.
- Environment that encourages intellectual curiosity and the use of AI as a real collaborator.
- Commitment to diversity and equal opportunity employment.
- Flexible approach to backgrounds, encouraging talented individuals to apply even if they don't meet every bullet point.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →