Remotery

Principal Software Engineer, Security, Detection & Response

atHubSpotUS flagMassachusettsFull-timeUncategorizedLead$266.2k – $425.9k/year

Posted 1 day ago

This is a fully remote position, open to applicants in Massachusetts.

📋 Description

• Establishing robust detection foundations and response frameworks to enhance HubSpot’s security posture.

• Leading the creation of automated detection systems and prioritizing mitigations according to current threats and coverage deficiencies.

• Collaborating closely with engineering teams to provide data for purple team exercises and implement effective solutions to mitigate risks.

• Steering architectural decisions for our corporate security logging infrastructure and Security Information and Event Management (SIEM) systems.

• Contributing code to security automations, evaluating designs for detection reliability, and offering technical mentorship to engineers.

• Serving as a primary point of contact for threat intelligence and incident response expertise.

• Assisting in incident response efforts by supporting investigations and analyzing bad actor behaviors.


⛳️ Requirements

• 10-15 years of experience in software development and information security, emphasizing detection engineering, threat intelligence, and incident response.

• Demonstrated expertise in designing and implementing automated detection systems and managing extensive security logging infrastructures (e.g., Splunk, SIEM).

• In-depth knowledge of endpoint and network detection (EDR/SASE) with practical experience using tools like CrowdStrike Falcon for investigation and response.

• Comprehensive understanding of incident response methodologies and frameworks such as NIST 800-61 and SANS, along with the capability to lead high-severity Critical Situations (CritSits).

• Proven experience in correlating various telemetry (identity, cloud, network) to detect post-entry behaviors and swiftly contain threats.

• Experience in managing and ingesting Indicators of Compromise (IOCs) and mapping adversary techniques to standards like STIX/TAXII.

• Exceptional communication skills, with the ability to convey complex threat landscapes to both technical and non-technical audiences.

• Relevant industry certifications (e.g., GCIH, GCFA, CISSP, or vendor-specific EDR certifications).


🏝️ Benefits

• Health insurance

• 401(k) matching

• Flexible work arrangements

• Paid time off

• Professional development opportunities

• Bonuses

• Stock options

• Equipment allowances

People also viewed

Anchor Utility10 hours ago

Rate Analyst

US flagTexas OnlyFull-timeUncategorized
ApplyView job
Honeywell10 hours ago

HSE Manager

US flagNorth Carolina OnlyFull-timeUncategorized
ApplyView job
Cision France10 hours ago

People Partner

CA flagCanada OnlyFull-timeUncategorized$85k/year
ApplyView job
Navigate Power10 hours ago

B2B Outside Sales Consultant

US flagPennsylvania OnlyFreelanceUncategorized$50k – $250k/year
ApplyView job
TELUS10 hours ago

Business Development Executive, Early Career – European Language Required

GB flagUnited Kingdom OnlyFull-timeUncategorized
ApplyView job
Gilead Sciences10 hours ago

Statistical Programmer II

US flagUnited States OnlyFull-timeUncategorized$107.2k – $138.7k/year
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers