
Staff Security Engineer – Threat Detection
Posted Aug 5

Posted Aug 5
This is a fully remote position, open to applicants in United States.
• Create and implement rules-based as well as AI-assisted threat detection mechanisms, utilizing testing, validation, CI/CD pipelines, detections-as-code, and a comprehensive detection development lifecycle.
• Evaluate coverage gaps in threat detection and address risks through effective detective controls.
• Explore AI/ML methodologies to enhance the signal-to-noise ratio and boost analyst productivity.
• Provide data-driven recommendations for both detective and preventive controls based on threat models, proactive threat hunting, and thorough analysis of logs and telemetry.
• Develop and construct automations and AI-driven workflows aimed at enhancing security posture and decreasing the mean time to detect and respond.
• Establish collaborative relationships with stakeholders to offer detection as a service, which includes self-service patterns, reusable components, and AI-enhanced detections.
• Assess and enhance detection quality by focusing on coverage, precision and recall, false positive rates, and latency.
• A minimum of 8 years of experience in security engineering, covering areas such as threat detection, incident response, threat hunting, product security, or corporate security, or equivalent experience.
• Proficient coding skills in Python or Go, with a background in software development, data tooling, or automation.
• Demonstrated experience in applying coding knowledge to AI/ML-powered detection and response.
• Proficient in programmatic data handling using SQL and Python, ideally with large-scale log and telemetry datasets.
• Practical coding experience, including unit testing, version control, and CI/CD integration.
• Experience in developing and managing agent-based or agentic workflows, such as LangGraph or similar orchestration frameworks.
• Hands-on experience with AWS, Azure, or GCP, along with a strong understanding of their native logging, monitoring, and security services.
• Familiarity with SaaS and workstation risks, including account compromise, data exfiltration, phishing, and supply chain attacks.
• A risk-based approach to prioritizing security initiatives and assessing the effectiveness of AI versus traditional rules and heuristics.
• A degree in Computer Science or equivalent practical experience is considered a plus.
• Additional experience with GenAI and LLM-based security workflows is advantageous.
• Bonus experience with Terraform, CloudFormation, or detections-as-code frameworks.
• Bonus experience in creating production platforms capable of processing high-volume logs, metrics, or traces.
• Bonus experience in deploying detections on a global scale.
• Bonus experience with Snowflake or equivalent cloud data platforms and security analytics pipelines.
• Competitive salary and performance incentives.
• Comprehensive health, dental, and vision insurance.
• Flexible working hours and remote work opportunities.
• Professional development and continuous learning programs.
• Generous vacation and paid time off policies.
OCHIN, Inc.
Dynanet Corporation
Solutions for Information Design, Inc.
Fuze Health
Get handpicked remote jobs straight to your inbox weekly.