San FranciscoFull TimeEngineering
Remotely
automationai/mlincident responsesecurity operationsthreat intelligencedetection
Job Description
📋 Description
- Lead incident response and security operations during active investigations
- Build and mature detection across cloud, endpoint, and app layers
- Own security logging and telemetry pipeline for detection readiness
- Shape operating model: in-house vs managed services and vendors
- Leverage threat intel to improve detection proactively
- Modernize SOC with automation and AI for faster response
🎯 Requirements
- Able to build and coach a small detection/response team
- Strong track record in detection engineering or security operations
- Understanding of adversary tradecraft and practical detection strategies
- Experience extending coverage through managed services/vendor partnerships
- Incident command experience at multi-stakeholder scale
- Excellent communication to executive audiences
🎁 Benefits
- Equity