Role Overview
You will be the first dedicated engineer focused on detection and response, tasked with establishing a robust security monitoring function at the core of a cloud-native platform. This role blends security engineering with software development to build scalable systems that detect, analyze, and respond to threats in real time.
Key Responsibilities
- Design, implement, and maintain the full lifecycle of security detections—from research and rule development to deployment through CI/CD and ongoing tuning
- Develop and manage telemetry pipelines that capture activity across applications, infrastructure, and identity systems
- Combine data from diverse sources to strengthen detection logic and minimize false alerts
- Lead investigations into security incidents, including containment, remediation, and follow-up analysis
- Create automated response playbooks that integrate directly with cloud and identity platforms
- Work alongside product and engineering teams during design phases to identify potential threats and embed detection capabilities early
- Help define and maintain standards for monitoring, incident response, and operational runbooks
Required Qualifications
- Proven experience developing and deploying detection rules using code-based methodologies
- Strong programming background in Python or TypeScript
- Proficiency with SQL for analyzing security datasets
- Hands-on experience with AWS and modern cloud infrastructure
- Familiarity with monitoring tools such as Datadog
- Knowledge of adversary tactics and frameworks like MITRE ATT&CK
- Experience working within CI/CD environments and software development workflows
- Understanding of threat modeling and secure application design principles
Preferred Qualifications
- Prior work in incident response or digital forensics
- Experience with identity and access management systems
Technology Environment
The role leverages a modern stack including Python, TypeScript, SQL, AWS, Datadog, MITRE ATT&CK, CI/CD pipelines, SIEM platforms, and detection-as-code frameworks.
Work Environment
This position supports remote work globally, with flexibility to work from home or at one of the company’s regional hubs. The culture emphasizes autonomy, learning, and high-impact contributions in a supportive, values-driven environment.
Benefits
- Flexible work model with remote and on-site options
- Competitive compensation package
- Support for professional development, including training and certifications
- Opportunities for career growth as the organization expands
- Comprehensive medical, vision, and dental coverage
- 401k matching program
- Unlimited paid time off


