The market intelligence and search platform trusted by over 3,500 leading organizations
Staff Incident Response Engineer
Location
United States
Posted
51 days ago
Salary
$128K - $161K / year
Job Description
Job Requirements
- 7+ years in security operations with 3+ years in detection engineering, including deep expertise in creating high-fidelity rules (SIGMA, YARA-L, KQL, SPL).
- Proven track record of building detection strategies across SIEM, EDR, and Cloud platforms, grounded in the MITRE ATT&CK framework.
- Expert knowledge of SOAR platforms (e.g., Tines, Splunk SOAR, Cortex XSOAR), architecture, and complex playbook development.
- Proven experience designing and implementing SOAR platform architecture from concept to production.
- Advanced scripting and automation development skills in Python (required) for API integrations and security tool orchestration.
- Strong background in threat hunting methodology, hypothesis development, and campaign execution, with experience leading or co-leading hunting programs.
- Proficiency with data analysis, anomaly detection, and hands-on experience with hunting tools like Jupyter Notebooks, Osquery, and Velociraptor.
- Deep understanding of attack techniques, lateral movement, persistence mechanisms, and post-exploitation TTPs across Windows, Linux, and macOS.
- Familiarity with security frameworks including MITRE ATT&CK, PICERL, NIST CSF, and Detection Maturity Models, and incident response best practices.
- Proven ability to lead technical initiatives, mentor team members, and communicate complex technical concepts to diverse audiences.
Benefits
- You may also be offered a performance-based bonus
- equity
- and a generous benefits program.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Senior Security Technical Account Manager
FastlyFastly’s edge cloud platform enables the best of the web to thrive, and helps you deliver better online experiences.
Senior Technical Account Manager focused on Fastly Security products in North America
Security Engineer – App Sec, Cloud Infra
ThumbtackWe help people care for their home from top to bottom — and empower small businesses nationwide to grow.
Security Engineer focused on application security and cloud infrastructure at Thumbtack
Product Security Engineer
HashgraphHashgraph, formerly Swirlds Labs, is a software company home to some of the brightest minds in web3.
Product Security Engineer focusing on blockchain and Web3 security at Hashgraph
Senior Account Manager driving sales for advanced safety solutions at 908 Devices