Company Logo
Software Engineer

Netflix - 1d ago

Company Logo
Senior Software Engineer

Reddit - 4d ago

Staff / Principal Software Engineer, Detection and Response

Requirements

  • 8+ years in detection engineering, incident response, or threat hunting, with at least 3 at staff/principal level.
  • Strong engineering background - you build detections as code, not as saved searches in a SIEM.
  • Deep experience with cloud telemetry (GCP/AWS/Cloudflare), endpoint EDR, identity logs, and modern SIEM/data-lake stacks (Panther, Elastic, Snowflake/Clickhouse).
  • Battle-tested incident commander who has led real high-severity incidents from first alert to public post-mortem.
  • Adversary-minded: comfortable with MITRE ATT&CK, threat intel, purple-teaming, and red team collaboration.

Nice to Haves

  • Bonus: detection for LLM/agent abuse, prompt injection at scale, or insider risk in AI-augmented engineering orgs.

What You'll Be Doing

  • Build the detection engineering platform - pipelines, detections-as-code, automated triage, and response playbooks.
  • Design and own security incident response process with 24/7 coverage, with a small, high-leverage human and agent team.
  • Lead incidents end-to-end: detection, containment, eradication, post-mortem, and follow-through.
  • Hunt proactively across corporate, production, and AI-agent surfaces - and turn every finding into a durable detection.
  • Define what 'world-class D&R for an AI-native company' looks like, and build it.

Perks and Benefits

We're always exploring what's next!

AI Summary ✨

Similar jobs

  • an hour agoNewRemote
  • lovable logo

    Trust & Safety Engineer

    Stockholm, Sweden

    6 days ago
  • 6 days ago
  • 6 days ago
  • See all jobs in Sweden →