Senior Security Engineer – Detection

🕒 July 24

🇺🇸 United States – Remote

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 44%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Solace

Solace

1 - 10 employees

🏥 Healthcare

💼 Consulting

🛡️ Insurance

Healthcare • Consulting • Insurance

Solace is a healthcare advocacy company that connects patients and their families with skilled advocates, such as doctors, nurses, and other healthcare experts. Their mission is to empower patients and improve healthcare outcomes by assisting with the navigation of the complex healthcare system. Solace provides support in areas like scheduling, communicating with medical teams, and insurance dealings, and advocates are covered by Medicare and Medicare Advantage plans. The platform ensures patients receive personalized support through phone or video consultations, assisting with everything from chronic illness management to healthcare paperwork.

📋 Description

• Own the Datadog Cloud SIEM, including log pipelines, parsing, enrichment, retention, and cost management • Build, tune, and maintain detection rules across identity, cloud, endpoint, data platform, and SaaS audit logs • Reduce alert noise and drive alert quality metrics such as fidelity, time-to-triage, and false-positive rates • Map detection coverage to MITRE ATT&CK and close high-risk gaps • Maintain detections as version-controlled, tested, documented, and peer-reviewed code • Ensure logging and audit trails meet HIPAA requirements for ePHI systems • Triage, investigate, contain, and document security alerts and incidents • Improve incident response playbooks and conduct post-incident reviews • Build automation for enrichment, auto-containment, and workflow automation • Participate in and help mature the on-call rotation • Contribute to AWS and GCP cloud and infrastructure security hardening • Support Okta policies, access reviews, and least-privilege improvements • Assist with vendor security reviews, security questionnaires, and HIPAA/SOC 2 audit evidence • Build security culture through documentation, tooling, and partnership with engineering teams • Report to the Staff Security Engineer and work alongside application and infrastructure security engineers

🎯 Requirements

• 3–6 years in security operations, detection engineering, incident response, or similar hands-on security roles • Real experience building and tuning detections in a SIEM; Datadog Cloud SIEM strongly preferred, with Splunk, Elastic, Chronicle, Sentinel, or Panther experience translating well • Fluency reading and correlating logs from cloud providers, identity providers, and SaaS platforms • Hands-on incident response experience, including triaging real alerts, working incidents, and writing post-mortems • Scripting ability in Python or similar for automation, log analysis, and detection tooling • Strong understanding of phishing, credential compromise, SSO abuse, cloud misconfigurations, and supply chain risks • Comfortable with ambiguity and building from scratch; startup or small-team experience is a strong signal • Experience in healthcare or other regulated environments is nice to have • Detection-as-code workflows, SOAR or workflow automation experience, familiarity with Okta, Jamf, Snowflake, GitHub, or Vanta, and threat hunting/open-source detection contributions are nice to have • Applicants must be based in the United States • Must be authorized to work in the United States; application asks whether sponsorship is required

Apply Now

Similar Jobs

🕒 July 23

Highmark Health

10,000+ employees

🛡️ Insurance

💼 Consulting

📦 Logistics

Manager Information Security & Risk Management at Highmark Health ensuring alignment with security needs and managing personnel activities. Overseeing technology products and contributing to strategic planning efforts.

🕒 July 23

Censys

51 - 200

🔒 Cybersecurity

🏢 Enterprise

Senior Security Researcher at Censys conducting cybersecurity research and product capability development. Collaborating with teams to publish impactful findings and implement security solutions.

🕒 July 23

Aprio

1001 - 5000

💼 Consulting

🏥 Healthcare

🏗️ Construction

Senior Cybersecurity Engineer handling controls for U.S. government engagements, joining a top 20 CPA firm growing globally.

🕒 July 23

Guardant Health

1001 - 5000

🏥 Healthcare

💼 Consulting

🍽️ Food & Beverage

Senior Security Engineer focusing on designing and improving security tools for Guardant Health. Collaborating with cross-functional teams to enhance security posture and incident response capabilities.

🕒 July 22

KirkpatrickPrice

51 - 200

💼 Consulting

🏥 Healthcare

⚖️ Legal

Information Security Auditor conducting SOC and compliance audits for KirkpatrickPrice. Evaluating controls, risks, evidence, and corrective actions across client environments.