Senior Security Detection Engineer

Posted 2 days ago

This is a fully remote position, open to applicants in United States.

📋 Description

• Identify detection gaps related to MITRE ATT&CK and top threat actors, crafting behavioral detections to address them.

• Act as a subject matter expert in detection with extensive knowledge of GitLab’s detection methodology, DaC framework, types of detections, and quality standards.

• Oversee agents throughout the detection lifecycle as a detection architect, ensuring the quality and consistency of detections.

• Utilize SIEM/data lake platforms such as Splunk or Elastic to develop and troubleshoot threat detections.

• Work alongside peer teams at GitLab to identify and address opportunities for enhancing security observability.

• Collaborate with incident response, red team, and threat intelligence teams to bolster GitLab’s detection program and its coverage.

• Maintain and enhance DaC, AI, and process efficiency automations for the signals engineering program.

• Identify suspicious and malicious events affecting GitLab, its customers, and SaaS operating environments.


⛳️ Requirements

• Expertise in SOC, incident response, or detection engineering.

• Proficiency in SIEM/security data lake detection and querying.

• Demonstrated ability to proactively identify potentially malicious patterns and collaborate with incident response for incident RCAs while identifying and implementing new detection opportunities.

• Strong experience with Cloud technologies (AWS/GCP) and some PaaS (Kubernetes/Terraform).

• Experience in orchestrating teams of agents to develop detections; experience in building comprehensive end-to-end agentic detection pipelines is a plus.

• A passion for in-depth threat hunting and cross-functional purple teaming, translating findings into actionable detections.

• Familiarity with advanced detection capabilities such as Detections as Code, signal versus detection development, risk-based alerting, and behavior analytics.

• Must be a United States Citizen.

• Understanding of the GitLab application is essential; experience in detecting and hunting attacks against GitLab or maintaining GitLab is advantageous.


🏝️ Benefits

• Benefits designed to support your health, finances, and overall well-being.

• Flexible Paid Time Off.

• Team Member Resource Groups.

• Equity Compensation & Employee Stock Purchase Plan.

• Growth and Development Fund.

• Parental Leave.

People also viewed

AbbVie18 hours ago

Cybersecurity Architect – Mergers & Acquisitions

US flagNorth Carolina OnlyFull-timeCybersecurity / Security Engineer$109.5k – $208.5k/year
ApplyView job
Biogen18 hours ago

Senior Engineer, AI Cyber Security

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$140k – $187.3k/year
ApplyView job
RunPod19 hours ago

Director, Security

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$125k – $220k/year
ApplyView job
MrBeast19 hours ago

Staff Mobile & Product Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$178k – $268k/year
ApplyView job
LRQA20 hours ago

Security Consultant

MX flagMexico OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
GuidePoint Security20 hours ago

Cybersecurity Intern – Application Security

US flagUnited States OnlyInternshipCybersecurity / Security Engineer$20/hour
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers