Senior Security Engineer, Detection

🕒 il y a 13 jours

🇺🇸 États-Unis – Télétravail

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of Solace

Solace

1 - 10 employés

🏥 Santé

💼 Conseil

🛡️ Assurance

Healthcare • Consulting • Insurance

Solace est une entreprise de plaidoyer en santé qui connecte les patients et leurs familles avec des défenseurs qualifiés, tels que des médecins, des infirmiers et d'autres experts de la santé. Leur mission est de responsabiliser les patients et d'améliorer les résultats de santé en aidant à naviguer dans le système de santé complexe. Solace offre un soutien dans des domaines comme la planification des rendez-vous, la communication avec les équipes médicales et les démarches administratives liées aux assurances, et les défenseurs sont couverts par les plans Medicare et Medicare Advantage. La plateforme garantit que les patients reçoivent un soutien personnalisé par le biais de consultations téléphoniques ou vidéo, en les aidant dans des domaines allant de la gestion des maladies chroniques à la paperasse administrative.

Description

• Own our Datadog Cloud SIEM: log pipelines, parsing, enrichment, retention, and cost management • Build, tune, and maintain detection rules across our environment — identity (Okta, Google Workspace), cloud (AWS, GCP), endpoint (Jamf), data platforms (Snowflake), and SaaS audit logs (GitHub, Slack, and more) • Systematically reduce alert noise and drive alert quality metrics (fidelity, time-to-triage, false-positive rates) • Map detection coverage against real-world threats (MITRE ATT&CK) and close the highest-risk gaps first • Treat detections as code: version-controlled, tested, documented, and peer-reviewed • Ensure logging and audit trails meet HIPAA requirements for ePHI systems • Serve as a primary responder for security alerts and incidents: triage, investigate, contain, and document • Improve and extend our incident response playbooks, and run post-incident reviews that produce real fixes • Build automation to speed up triage and response (enrichment, auto-containment, workflow automation) • Participate in and help mature our on-call rotation as the team grows • Contribute to cloud and infrastructure security hardening across AWS and GCP • Support identity and access management improvements (Okta policies, access reviews, least privilege) • Pitch in on vendor security reviews, security questionnaires, and audit evidence gathering (HIPAA, SOC 2) • Help build a security-first culture through documentation, tooling, and partnership with engineering teams

🎯 Exigences

• 3–6 years in security operations, detection engineering, incident response, or similar hands-on security roles • Real experience building and tuning detections in a SIEM — Datadog Cloud SIEM strongly preferred, but deep experience with Splunk, Elastic, Chronicle, Sentinel, or Panther translates well • Fluency reading and correlating logs from cloud providers (CloudTrail, GCP audit logs), identity providers, and SaaS platforms • Hands-on incident response experience: you've triaged real alerts, worked real incidents, and written the post-mortems • Scripting ability (Python or similar) for automation, log analysis, and detection tooling • Strong understanding of common attack patterns — phishing, credential compromise, SSO abuse, cloud misconfigurations, supply chain risks • Comfortable with ambiguity and building from scratch; startup or small-team experience is a strong signal • Experience in healthcare or other regulated environments (HIPAA, SOC 2, HITRUST) (Nice to Have) • Detection-as-code workflows (Terraform, CI/CD for detections) (Nice to Have) • SOAR or workflow automation experience (Tines, Windmill, custom tooling) (Nice to Have) • Familiarity with Okta, Jamf, Snowflake, GitHub, or Vanta from a security operations perspective (Nice to Have) • Threat hunting experience or contributions to open-source detection content (Nice to Have)

🏖️ Avantages

• Applicants must be based in the United States.

Postuler Maintenant

Emplois Similaires

🕒 il y a 13 jours

Highmark Health

10 000+ employés

🛡️ Assurance

💼 Conseil

📦 Logistique

Manager Information Security & Risk Management at Highmark Health ensuring alignment with security needs and managing personnel activities. Overseeing technology products and contributing to strategic planning efforts.

🇺🇸 États-Unis – Télétravail

💵 $129 100 - $214 500 / an

💰 €5 000 000 Grant en 2021-05

⏰ Temps Plein

🟠 Senior

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

Cyber Security

🕒 il y a 13 jours

Abbott

10 000+ employés

🏥 Santé

⚕️ Assurance santé

🧬 Biotechnologie

Senior Cybersecurity Specialist ensuring compliance with cybersecurity standards and internal audits at Abbott. Collaborates with cross-functional teams, leveraging strong analytical skills in a remote capacity.

🗣️🇺🇸🇬🇧 Anglais requis

Cyber Security

🕒 il y a 13 jours

Hewlett Packard Enterprise

10 000+ employés

🏢 Entreprise

🔧 Matériel

☁️ SaaS

North America Cybersecurity Sales Leader for HPE developing SSE Security solutions and leading sales strategy across North America.

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 13 jours

Marigold

1001 - 5000

🤝 B2B

📣 Marketing

☁️ SaaS

Security Engineering Manager at Marigold leading security initiatives for enhancing cybersecurity measures. Responsible for managing a team and developing strategies for safeguarding enterprise environments.

🇺🇸 États-Unis – Télétravail

💵 $120 000 - $130 000 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

AWS

Cloud

Cyber Security

Firewalls

Google Cloud Platform

🕒 il y a 13 jours

Hewlett Packard Enterprise

10 000+ employés

🏢 Entreprise

🔧 Matériel

☁️ SaaS

Sales Leader driving innovative SSE solutions for Hewlett Packard Enterprise. Overseeing a team of cybersecurity sales professionals with a focus on growth, strategy, and customer alignment.

🗣️🇺🇸🇬🇧 Anglais requis