Staff Security Engineer (Enterprise Security Operations)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Staff Security Engineer (Enterprise Security Operations): Managing and optimizing the enterprise security platform stack for autonomous trucking operations with an accent on EDR/XDR, SIEM, and IAM configuration. Focus on proactive threat hunting, developing custom detection logic, and ensuring high-fidelity security coverage across the organization.
Location: Must be based in or able to work from Mountain View, San Francisco, Seattle, Pittsburgh, Dallas, Detroit, or Phoenix (Hybrid: 3 days/week in office)
Salary: $171,000 - $273,000 per year
Company
is a technology company dedicated to delivering the benefits of self-driving technology safely, quickly, and broadly through the development of the Driver.
What you will do
- Own the operational health, configuration, and continuous improvement of the enterprise security platform stack including EDR, SIEM, and IAM.
- Develop and refine detection rules and correlation logic to reduce noise and maintain high-fidelity coverage.
- Conduct proactive threat hunting across security telemetry to identify anomalies before they become incidents.
- Serve as the primary internal expert for security tooling, acting as the escalation point for complex platform issues.
- Participate in on-call rotations, leading deep-dive investigations, containment, and root cause analysis.
- Audit and validate that security controls are configured effectively and delivering actionable signals.
Requirements
- 12+ years of hands-on experience in enterprise security operations or senior SOC engineering.
- Expert-level proficiency in administering at least two enterprise security platforms (e.g., CrowdStrike, Splunk, Okta, Zscaler).
- Demonstrated ability to tune security platforms beyond out-of-the-box configurations.
- Strong log analysis and threat hunting skills with the ability to build hypotheses and write queries.
- Experience conducting thorough incident investigations and communicating findings to stakeholders.
- Must be able to work in a hybrid environment (3 days per week in office) in one of the specified US locations.
Nice to have
- Scripting ability in Python or Bash for automation and log parsing.
- Deep familiarity with MITRE ATT&CK framework.
- Experience with AWS security telemetry and cloud signal integration.
- Familiarity with Zero Trust and identity-centric security models.
Culture & Benefits
- Collaborative environment focused on safety and integrity.
- Annual bonus and equity compensation packages.
- Comprehensive benefits program.
- Commitment to inclusion and diverse hiring practices.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →