Senior Threat Engineer
Core
Design, build, and improve automated detection, decisioning, and response workflows for the Wirespeed Verdict Engine to scale expert judgment and reduce manual review.
Role type
Senior Threat Engineer (Detection Engineering & Automation)
Builds
Scalable security detection logic, enrichment pipelines, triage automation, and automated response workflows for the Wirespeed Verdict Engine.
Domain
Cybersecurity operations, threat detection, and security product development.
Deliverable
production ML models | product features
Required skills
Threat detection and response, detection engineering, incident response, threat hunting, SOC operations, investigative and analytical skills, automation and workflow design, data analysis for detection quality, technical leadership and mentorship.
Preferred skills
Experience with SIEM, EDR, SOAR, case management, and telemetry enrichment systems, scripting or query writing for investigations, experimentation and measurement for operational quality, workflow design and security product development.
Technologies
SIEM, EDR, SOAR, case management, telemetry enrichment systems.
Responsibilities
Design and improve detection, decisioning, and response workflows; own complex threat detection problem spaces from concept to iteration; translate investigative thinking into scalable automated decisions; analyze operational data to identify false positives/negatives and latency issues; reduce manual review by increasing system autonomy; support complex cases and feed lessons back into the system; improve verdict logic and response content based on customer feedback; partner with product and engineering teams; define best practices and document operating principles; provide technical leadership and mentorship.
Seniority
Senior, hands-on IC with leadership and mentorship responsibilities.