Staff Detection & Response Engineer
Core
Own the Detection & Response pillar for a consumer fintech, defining strategy, building detection coverage, and leading incident response to protect financial data and infrastructure.
Role type
Staff Detection & Response Engineer
Builds
Detection-as-code pipelines, telemetry/audit logging systems, and automated incident response workflows
Domain
Cloud-native security, consumer fintech, threat detection
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
detection engineering, incident response, cloud-native logging, detection-as-code, threat modeling, EDR management, identity-based detection, automation scripting
Preferred skills
building detection programs from scratch, AI/LLM abuse detection, insider threat investigation
Technologies
AWS (CloudTrail, GuardDuty, VPC flow), SentinelOne EDR, Okta, incident.io, Python, Go, Ruby
Responsibilities
Define detection strategy and architecture, design and maintain detection coverage across cloud and endpoints, lead incident response lifecycle including triage and forensics, build audit logging and telemetry pipelines, automate response actions, run on-call rotations and tabletop exercises
Seniority
Staff, hands-on IC with strategic ownership