About the company
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior Security Engineer, Threat Detection & Response based in United States.
This is a senior-level security engineering role within a growing Threat Detection and Response function.
Responsibilities
- Investigate security incidents using digital forensics, data analytics, and investigative techniques to determine scope, impact, and appropriate response.
- Apply coding, analytics, and security expertise to proactively hunt for threats across corporate and production environments.
- Build automation, detection models, and scalable workflows that identify anomalous activity and strengthen response capabilities.
- Develop and improve threat detection strategies and contribute to the evolution of incident response capabilities.
- Collaborate with engineering teams to design and implement advanced detection solutions.
- Partner closely with Legal, Privacy, and other cross-functional stakeholders during complex or sensitive security investigations.
- Identify gaps in security visibility and work with business and technical teams to improve logging, telemetry, and detection coverage.
- Coordinate cross-functional efforts to enable efficient and effective incident response at scale.
- Conduct root-cause analysis and develop remediation strategies designed to eliminate broader classes of security vulnerabilities and recurring problems.
- Contribute new approaches and innovative techniques for detecting, containing, and mitigating security threats.
Requirements
- 5+ years of hands-on security operations experience, with expertise in areas such as investigations, incident response, incident management, digital forensics, threat intelligence, threat hunting, and/or detection engineering.
- Proficiency in Python or another scripting language; experience with SQL and Pandas is a plus.
- Familiarity with Elasticsearch is preferred.
- Demonstrated experience automating security detection and response workflows.
- Familiarity with the Cyber Kill Chain and MITRE ATT&CK frameworks.
- Experience with AWS services such as EC2, S3, Lambda, and RDS is preferred.
- Strong ability to lead through influence and make sound decisions in complex, ambiguous situations.
- Ability to remain calm, focused, and collaborative when managing high-stress, high-impact security incidents.
- Excellent organizational, prioritization, multitasking, and communication skills.
- Self-motivated and creative problem-solver with the ability to work independently and take ownership of complex challenges.
- Strong analytical mindset with the ability to translate security data and investigations into actionable improvements.
- Must be authorized to work in the United States without sponsorship.
Conditions
- $130–$142 per hour.
- Fully remote position within the United States.
- Full-time schedule of 40 hours per week, 8 hours per day, Monday through Friday.
- Approximately 12-month contract, from September 15, 2026 through September 15, 2027.
- Opportunity to influence the development and scaling of enterprise-level threat detection and incident response capabilities.
- High-impact work spanning security investigations, threat hunting, digital forensics, automation, analytics, and detection engineering.
- Collaboration with engineering, Legal, Privacy, and other cross-functional teams.
- Opportunity to tackle complex security problems and address root causes rather than isolated incidents.
- Exposure to cloud-based security environments and modern detection and response technologies.