Security Engineer - Detection & Response
$180,000–$440,000 year
On-site · New York City, New York, United States or Palo Alto, California, United States
Job Summary
Lead day-to-day security threat management, identify and manage incidents, support threat intelligence, threat hunting, intrusion detection, and incident response. Drive continual improvement in processes, procedures and automations to improve the quality and effectiveness of the team. Participate in a 24/7 on-call rotation performing security incident response. Commandeering security incidents and updating stakeholders. Identify, design, and lead threat hunting missions to quantify and reduce threats. Manage and support log collection, security scanning, intrusion detection, and other security-related systems. Design and assist in the development of automation to reduce false positives and handle events automatically. Analyze the security posture of systems via testing and vulnerability impact analysis. Preferred certifications include CISA, CRISC, CGEIT, Security+, CASP+; open-source security automation tooling; Elastic/OpenSearch. Compensation package includes base salary ($180k-$440k) plus equity and benefits.
Required Qualifications
- 2+ years of relevant information security experience
- Self starter, can receive a task and execute with minimal supervision
- Strong Python scripting skills for implementing security automation
- Knowledge of networking and macOS, Windows or Linux operating systems
- Knowledge of cloud security fundamentals and practices (vendor agnostic)
- Experience managing and/or deploying security technology
- Experience with building queries and dashboards for security monitoring
- Knowledge of current threats and techniques and a desire to research and learn more
- Experience with malware analysis, forensics or penetration testing
- Problem solving skills or experience with troubleshooting
Desired Qualifications
- 2+ years information security experience
- Strong Python scripting skills
- Knowledge of networking and macOS, Windows or Linux operating systems
- Knowledge of cloud security fundamentals and practices
- Experience managing and/or deploying security technology
- Experience with building queries and dashboards for security monitoring
- Knowledge of current threats and techniques and a desire to research and learn more
- Experience with malware analysis, forensics or penetration testing
- Problem solving skills or experience with troubleshooting
- Certifications like CISA, CRISC, CGEIT, Security+, CASP+, or similar preferred
Additional Requirements
- ITAR REQUIREMENTS: To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. § 1157, or (iv) Asylee under 8 U.S.C. § 1158, or be eligible to obtain the required authorizations from the U.S. Department of State.
Apply with one swipe on Sorce. We auto-fill applications and apply on your behalf — no cover letters, no 40-minute forms.
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.