Senior Detection and Response Engineer
Core
Building enterprise detection and response capabilities from zero to one, focusing on monitoring threats across identity systems, endpoints, SaaS applications, and internal infrastructure.
Role type
Senior Detection and Response Engineer (Zero-to-One)
Builds
Telemetry pipelines, detection content, alert routing, enrichment, and automated response playbooks for the enterprise environment.
Domain
Cybersecurity, Enterprise Security Operations, Threat Detection
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
Detection engineering, incident response, security operations, Python, SQL, detection-as-code, SIEM, EDR, security analytics, threat modeling, adversary emulation, cloud forensics, endpoint forensics
Preferred skills
Founding security hire experience, insider threat detection, data loss prevention, offensive security background, incident commander experience
Technologies
SIEM, EDR, SaaS platforms, Identity Providers (IdP), Cloud environments, Infrastructure as Code (IaaC)
Responsibilities
Shape technical direction and roadmap for detection and response; build end-to-end detection engineering pipelines; conduct threat-informed hunts and tabletop exercises; automate triage and response workflows; partner with engineering teams to remediate root causes of security findings.
Seniority
Senior, hands-on IC (Founding/Zero-to-One)