
Staff Security Engineer, Threat Intelligence
Posted Sep 16

Posted Sep 16
This is a fully remote position, open to applicants in United States.
• Identify security vulnerabilities and design as well as implement security controls, tools, and services to enhance security systems and processes.
• Work collaboratively with product and engineering teams to conduct product security evaluations during the design phase, which includes rapid threat modeling and architectural analysis.
• Utilize threat intelligence and an offensive security perspective to predict attacker behavior, recognize emerging risks, and shape security controls and detection strategies.
• Investigate new security threats and vulnerabilities, offering recommendations to the organization.
• Safeguard public-facing applications by assessing edge traffic and optimizing WAF, DDoS, rate-limiting, DNS, and anti-bot measures.
• Establish new security standards and develop playbooks.
• Lead and implement incident response drills, including tabletop exercises and red/blue team activities.
• Provide mentorship and guidance to fellow security engineers.
• Enhance capabilities within the agentic security platform to bolster threat detection, investigation, and response.
• Over 7 years of experience in cybersecurity, covering security engineering and related technical fields.
• Strong knowledge of information security incidents and threat assessments.
• Familiarity with log analysis and forensics across various systems and environments.
• High proficiency in at least one modern programming language (e.g., Python, Go).
• Solid understanding of public cloud platforms such as GCP and AWS.
• Knowledgeable about standard compliance and control frameworks like PCI-DSS, NIST-CSF, and ISO-27001.
• Demonstrate a strong desire for innovation, along with a curious mindset and a deep commitment to cybersecurity.
• Proven track record in establishing or scaling a threat intelligence program.
• Capability to apply AI technologies to security use cases, including threat detection, investigation, analysis, and response.
• Bachelor’s degree or equivalent practical experience.
• Advanced cybersecurity certifications (e.g., SANS GIAC, Offensive Security, ISC2).
• Experience in triaging application security vulnerabilities and implementing mitigating controls.
• Background in investigating account takeover, credential theft, or other forms of customer account abuse.
• Competitive and fair base salary.
• Optional fully remote work.
• Health, Vision, Dental, and Life Insurance for you and any dependents, with policy premiums covered by the Company.
• Long and short-term disability insurance.
• Unlimited paid time off (PTO).
• Annual year-end company closure.
• Optional 401k plan with 5% matching.
• 12 paid holidays.
• Paid lunches in-office or, if remote, a $125/week stipend via Sharebite.
• Employee Assistance and Employee Recognition Programs.
Sony Interactive Entertainment
Squads
Neo4j
PingWind Inc. (SDVOSB)
Get handpicked remote jobs straight to your inbox weekly.