← Все вакансии/Senior/Instacart
SeniorRemoteUnited States

Detection Engineer

I
Instacart
Зарплата
$16,000–$20,200
Уровень
Senior
Формат
Remote
О роли

Описание вакансии

About the Company

At Instacart, we invite the world to share love through food because we believe everyone should have access to the food they love and more time to enjoy it together. Where others see a simple need for grocery delivery, we see exciting complexity and endless opportunity to serve the varied needs of our community. We work to deliver an essential service that customers rely on to get their groceries and household goods, while also offering safe and flexible earnings opportunities to Instacart Personal Shoppers.

Instacart has become a lifeline for millions of people, and we’re building the team to help push our shopping cart forward. If you’re ready to do the best work of your life, come join our table.

Instacart is a Flex First team. There’s no one-size fits all approach to how we do our best work. Our employees have the flexibility to choose where they do their best work—whether it’s from home, an office, or your favorite coffee shop—while staying connected and building community through regular in-person events.

About the Job
  • Develop, tune, document, and maintain detection logic across multiple log sources including endpoint, cloud, container, and SaaS products.
  • Assist in cyber forensic investigations across a variety of log sources.
  • Optimize log ingestion pipelines and telemetry collection to ensure high-quality, actionable security data while managing volume and cost.
  • Design and build SOAR playbooks and automation workflows to streamline detection triage, enrichment, and response actions.
  • Mentor junior security analysts and detection engineers on threat hunting methodologies, detection logic development, and investigation techniques.
Requirements
  • 6+ years of experience in a detection engineering, incident response, or offensive security role.
  • Experience with 1 or more public cloud platforms (AWS, Azure, GCP).
  • Deep understanding of attacker TTPs across modern zero trust environments, including identity compromise, token theft, and abuse of trust boundaries.
  • Proficient understanding of macOS internals and telemetry available to identify macOS specific threats.
  • Experience implementing detection-as-code workflows including version control, peer review processes, automated testing, and CI/CD deployment pipelines.
  • Basic proficiency with Python, Golang, or other programming languages.
  • Relevant certifications: GCFA, GCFE, GNFA, GREM, OSCP, GCIA, or similar.
Conditions
  • This role is remote and the base pay range for a successful candidate is dependent on their permanent work location.
  • Offers may vary based on many factors, such as candidate experience and skills required for the role.
  • Additionally, this role is eligible for a new hire equity grant as well as annual refresh grants.
Стек и навыки

С чем работаем