Detection Engineer II
Core
Develop high-fidelity detection logic, hunt for novel attacker techniques, and build automated response systems for a cloud-native grocery technology platform.
Role type
Senior IC detection engineer (security)
Builds
Detection logic, SOAR playbooks, and automated response workflows for endpoint, cloud, container, and SaaS environments
Domain
Cybersecurity, threat detection, cloud-native security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
detection logic development, threat hunting, attacker TTP analysis, macOS internals, detection-as-code workflows, log ingestion optimization, SOAR automation, Python or Golang
Preferred skills
offensive security background, red teaming experience, machine learning for threat detection
Technologies
AWS, Azure, GCP, CI/CD pipelines, version control, SOAR platforms
Responsibilities
Develop, tune, document, and maintain detection logic across multiple log sources; assist in cyber forensic investigations; optimize log ingestion pipelines and telemetry collection; design and build SOAR playbooks and automation workflows; mentor other detection engineers on threat hunting methodologies
Seniority
Mid-level, hands-on IC