
Staff Security Engineer – Threat Detection
Posted Aug 6

Posted Aug 6
This is a fully remote position, open to applicants in United States.
• Create and implement rules-based and AI-assisted threat detection systems utilizing testing, validation, CI/CD, detections as code, and a comprehensive detection development lifecycle.
• Assess threat-detection coverage deficiencies and address risks through detective controls.
• Explore AI/ML methodologies to enhance the signal-to-noise ratio and improve analyst productivity.
• Provide data-driven insights for detective and preventative measures based on threat models, proactive threat hunting, logs, and telemetry.
• Design and construct automations and AI-driven workflows to bolster security posture and minimize mean time to detect and respond.
• Collaborate with stakeholders across Security and Engineering to offer detection as a service, self-service patterns, reusable components, and AI-enhanced detections.
• Evaluate and enhance detection quality concerning coverage, precision and recall, false positive rates, and latency.
• Over 8 years of experience in security engineering encompassing threat detection, incident response, threat hunting, product security, or corporate security, or comparable experience.
• Proficient coding skills in a high-level programming language like Python or Go.
• Proven history of developing software, data tools, or automations.
• Experience with programmatic data handling using SQL and Python.
• Familiarity with large-scale log and telemetry datasets for detection logic or analytics.
• Background in writing production code, including unit tests, version control, and CI/CD integration.
• Experience in developing and managing agent-based or agentic workflows, such as LangGraph or similar orchestration frameworks.
• Practical experience with AWS, Azure, or GCP, along with an understanding of their native logging, monitoring, and security services.
• Knowledge of SaaS and workstation vulnerabilities such as account compromise, data exfiltration, phishing, and supply chain attacks.
• A risk-based mindset for prioritizing security initiatives and assessing AI versus traditional rules and heuristics.
• A degree in Computer Science or equivalent practical experience is advantageous.
• Familiarity with applying GenAI and LLM-based methodologies to security workflows is a plus.
• Experience with Terraform, CloudFormation, and/or detections-as-code frameworks is a plus.
• Proven experience in building production software or platforms that handle high-volume data streams is a plus.
• Experience in deploying detections on a global scale is a plus.
• Knowledge of Snowflake or equivalent cloud data platforms and Snowflake Cortex AI or similar is a plus.
• Eligibility for bonus and equity plans.
• Medical insurance coverage.
• Dental insurance coverage.
• Vision insurance coverage.
• Life insurance benefits.
• Disability insurance coverage.
• 401(k) retirement savings plan.
• Flexible spending account options.
• Health savings account availability.
• Minimum of 12 paid holidays.
• Paid time off provisions.
• Parental leave benefits.
• Employee assistance program access.
• Additional company perks.
OCHIN, Inc.
Dynanet Corporation
Solutions for Information Design, Inc.
Fuze Health
Get handpicked remote jobs straight to your inbox weekly.