CrawlJobs Logo

Security Engineer - Detection Engineering, Surface Coverage

meta.com Logo

Meta

Location Icon

Location:
United States , Bellevue

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

122000.00 - 181000.00 USD / Year

Job Description:

Meta Security is looking for a Security Engineer with experience in threat modeling, TTP identification, and detection engineering. You’ll work alongside Software Engineers and Offensive Security Engineers to identify critical assets, assess the top risks, and evaluate potential attacks against Meta systems. You will be working across engineering teams supporting Production and Corporate systems to develop detection and response automation leveraging both industry-standard and custom detection and response platforms. You’ll generate detection ideas utilizing some of the world’s largest data sets and build on top of hyper-scale data pipelines.

Job Responsibility:

  • Lead cross-functional projects to improve our functionalities to effectively detect and respond to security incidents
  • Review security architecture of large-scale custom and commercial systems and under your own initiative propose logging, detection and prevention controls
  • Perform TTP-based Threat Modeling for a wide variety of assets including endpoints, mobile, servers, internal services, public & private cloud environments and networking equipment
  • Perform analysis against logs from a variety of sources (e.g., individual host logs, network traffic logs) to identify potential threats and detection ideas
  • Build response workflows and actions that auto-resolve false positives and provide context scaling our capacity to investigate
  • Support security incident response in a cross-functional environment and drive incident resolution
  • Design and implement attack testing automation to validate detection coverage
  • Build logging pipelines using our custom datasets and infrastructure

Requirements:

  • 2+ years of experience in Detection and Response Engineering or similar Security Engineering role
  • Bachelor's degree or equivalent experience in Cyber Security
  • Experience building complex automations and integrations using Security Orchestration, Automation and Response platforms
  • Experience designing systems used for responding to both external and insider threats
  • Experience analyzing network and host-based security events
  • Knowledge of networking technologies, specifically Transmission Control Protocol (TCP)/Internet Protocol (IP) and the related protocols
  • Knowledge of operating systems, file systems, and memory structures on Windows, MacOS and Linux
  • Coding/scripting experience in one or more general purpose languages
  • Experience with attacker tactics, techniques, and procedures

Nice to have:

  • Experience in Detection & Response Engineering or similar Security Engineering role
  • Experience building complex automations and integrations using Security Orchestration, Automation and Response (SOAR) platforms
  • Background in security-focused software engineering, designing large scale systems and data pipelines, or offensive security
  • Experience in threat hunting including leveraging intelligence data to proactively identify and iteratively investigates suspicious behavior across networks and systems
  • Broad knowledge across the Security domain, as well as thorough focus in one (or more) areas such as Logs and events processing, Incident Management, Digital Forensics, Offensive Security Testing, Detection and/or Response tooling development
What we offer:
  • bonus
  • equity
  • benefits

Additional Information:

Job Posted:
January 23, 2026

Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Security Engineer - Detection Engineering, Surface Coverage

Senior Security Engineer

The Infrastructure Security team at Scribd is responsible for protecting our app...
Location
Location
United States , San Francisco; Atlanta; Austin; Boston; Chicago; Dallas; Denver; Houston; Jacksonville; Los Angeles; Miami; New York City; Phoenix; Portland; Sacramento; Salt Lake City; San Diego; Seattle; Washington, D.C.; Ottawa; Toronto; Vancouver; Mexico City
Salary
Salary:
119000.00 - 225500.00 USD / Year
scribd.com Logo
Scribd
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 4+ years of experience in security engineering, detection engineering, incident response, or an equivalent blend of software and security engineering
  • Hands-on experience designing or operating detection and response systems (not just responding to alerts)
  • Strong understanding of logging, telemetry, and signal design in modern cloud and application environments
  • Experience with SIEM technologies such as Splunk, Elasticsearch, Datadog, Chronicle, or similar platforms
  • Experience partnering with or operating alongside an MDR or SOC provider
  • Familiarity with threat detection and response frameworks (e.g., MITRE ATT&CK, Time-Based Security, NIST CSF)
  • Ability to write quality code or tooling in at least one backend language (preferably Python, Ruby, or Go)
  • Strong collaboration and communication skills, with the ability to influence engineers without formal authority
Job Responsibility
Job Responsibility
  • Design and operationalize detection capabilities
  • Own and evolve detection coverage across applications, APIs, cloud infrastructure, identity, and bot/abuse surfaces
  • Translate threat models and real incidents into high-confidence detection patterns
  • Partner with engineers to instrument high-quality, security-relevant telemetry at the application and platform layers
  • Operationalize and mature the SIEM
  • Lead enrichment, normalization, and correlation of logs into actionable security signals
  • Define detection standards and patterns to reduce noise and improve signal quality
  • Ensure telemetry supports both internal investigations and MDR-led monitoring
  • Improve response speed and quality
  • Reduce MTTD and MTTR through improved triage, automation, and contextual alerting
What we offer
What we offer
  • Healthcare Insurance Coverage (Medical/Dental/Vision): 100% paid for employees
  • 12 weeks paid parental leave
  • Short-term/long-term disability plans
  • 401k/RSP matching
  • Onboarding stipend for home office peripherals + accessories
  • Learning & Development allowance
  • Learning & Development programs
  • Quarterly stipend for Wellness, WiFi, etc.
  • Mental Health support & resources
  • Free subscription to the Scribd Inc. suite of products
  • Fulltime
Read More
Arrow Right

Senior Security Engineer, Threat Intelligence

As a Senior Security Engineer specializing in Threat Intelligence on the Detecti...
Location
Location
United States; Canada
Salary
Salary:
156000.00 - 210000.00 USD; CAD / Year
https://www.1password.com Logo
1Password
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in technical security engineering roles
  • 3+ years focused on threat intelligence
  • Strong understanding of modern attacker TTPs, including cloud-native, SaaS, identity-focused, and insider-adjacent threat patterns
  • Experience developing intelligence requirements, prioritization frameworks, analysis workflows, and emulation scenarios
  • Hands-on experience with scripting or automation (e.g., Python, APIs, SOAR workflows) to improve operational efficiency and cross-team execution
  • Ability to produce concise, high-quality written intelligence, including executive-level summaries
  • Familiarity with security telemetry, logs, and investigative workflows used by detection and response teams
  • Willingness to participate in an on-call rotation and support security incidents during high-severity or off-hours events
Job Responsibility
Job Responsibility
  • Research, track, and assess the threat landscape by analyzing relevant threat actors, campaigns, and behaviors affecting 1Password’s attack surface, identity systems, brand, third-party ecosystem, and insider risk scenarios
  • Analyze and prioritize information to develop actionable intelligence that informs detection coverage, hunting activities, and response readiness
  • Partner with Detection Engineering to design and validate threat-based detections, including through adversary emulation, simulation, or controlled testing
  • Use automation and scripting to improve how threat intelligence is collected, enriched, distributed, and actioned across Security workflows
  • Curate and deliver threat intelligence reporting for both technical teams and executive stakeholders
  • Build and maintain repeatable threat intelligence processes, workflows, and documentation that scale with the Detection & Response program
  • Participate directly in security operations by triaging alerts, supporting investigations, managing incidents, and contributing to post-incident learning
What we offer
What we offer
  • Health benefits
  • Dental benefits
  • 401k/RRSP
  • Generous paid time off
  • Equity grant
  • Participation in incentive programs
  • Maternity and parental leave top-up programs
  • RSU program for most employees
  • Retirement matching program
  • Free 1Password account
  • Fulltime
Read More
Arrow Right

Software Engineer II

We are seeking a skilled software engineer to join our team and help implement a...
Location
Location
Czech Republic , Multiple Locations
Salary
Salary:
Not provided
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's Degree in Computer Science or related technical field AND technical engineering experience with coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, or Python
  • OR equivalent experience.
Job Responsibility
Job Responsibility
  • AI-Native Development: Improves artificial intelligence (AI) tools and practices across the software development lifecycle (SDLC)
  • Proactively takes responsibility for the content of their AI-generated requirements, design documents, code, and other assets, assisting other members of the team to do the same
  • Incorporates Responsible AI practices into the SDLC to ensure appropriate controls over AI-generated assets
  • Applies SDLC and engineering health measures (e.g., Accelerate, SPACE framework, Engineering System Success Playbook [ESSP]) to guide improvements to processes and practices, especially those involving AI
  • Experiments with AI tools and practices to improve their own capabilities, and provides recommendations on how to adopt them to other members of the team.
  • Coding: Leads by example across teams and mentors others to produce extensible, maintainable, well-tested, secure, and performant code used across products that adheres to design specifications
  • Leads efforts to continuously improve code performance, testability, maintainability, effectiveness, and cost, while learning about and accounting for relevant trade-offs
  • Identifies best practices and coding patterns (e.g., leveraging state-of-the-art generative artificial intelligence [GenAI], approaches to source code organization, naming conventions) and provides deep expertise in the coding and validation strategy
  • Creates and applies metrics to drive code quality and stability, appropriate coding patterns, and best practices
  • Identifies and anticipates blockers or unknowns during the development process, escalates them, communicates how they will impact timelines, and then leads efforts to identify and implement strategies and/or opportunities to address them.
  • Fulltime
Read More
Arrow Right

Security Engineer, Detection and Response

As a Security Engineer on Detection & Response, you’ll help protect OpenAI’s mos...
Location
Location
Australia; Japan; Singapore , Sydney; Tokyo; Singapore
Salary
Salary:
Not provided
openai.com Logo
OpenAI
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Have hands-on threat detection and/or incident response experience, including building detections, running investigations, and improving operational playbooks
  • Understand modern adversary tradecraft (TTPs) and can translate it into practical detection strategies and response actions
  • Bring a threat modeling mindset. You can evaluate new infrastructure or features, identify D&R implications (what could go wrong, what we’d need to see, how we’d respond), and turn that into concrete requirements for teams shipping the system
  • Have experience working in Kubernetes/containerized environments, including building detections from cluster telemetry and understanding common failure and attack modes (workloads, nodes, control plane, networking)
  • Are comfortable reasoning about lower-level infrastructure and datacenter risks, such as firmware/BMC surfaces, network segmentation/telemetry, and hard-to-observe control paths
  • Have experience across major cloud platforms (Azure, AWS, GCP, OCI), and can design cloud-agnostic detection approaches where possible
  • Like building automation that replaces repetitive D&R work, including thoughtfully using agent-style workflows where they meaningfully reduce toil, while keeping outcomes measurable, auditable, and safe
  • Are energized by new problem areas at a forward-leaning technology company: e.g., thinking through how to detect and respond to agents operating across systems at scale, and turning those ideas into pragmatic telemetry and response requirements
  • Communicate clearly and collaborate well across teams. You can translate D&R needs into clear requirements, align stakeholders, and drive follow-through across technical and non-technical audiences
  • Are comfortable with scripting and enjoy using AI/agent tooling to accelerate investigations and automation—more “directing” than doing everything by hand
Job Responsibility
Job Responsibility
  • Build and evolve Detection & Response capabilities across OpenAI’s infrastructure, products, and research environments, with an emphasis on high-signal detection and reliable operational response
  • Engineer detection pipelines and tooling: develop rule lifecycle management, measurement/quality loops (coverage, precision, latency), tuning processes, and safe rollout patterns
  • Automate response and investigations by building workflows that reduce toil (triage, enrichment, containment, evidence capture) and improve time-to-understand/time-to-contain
  • Partner with other Security teams and system/infrastructure owners across the company to ensure new systems ship with the right telemetry, threat models, and response playbooks from day one
  • Define D&R requirements and drive visibility across endpoints, identity, SaaS, cloud, Kubernetes: identify telemetry/control gaps, prioritize them, and advocate for fixes with partner teams (and implement directly when it’s the fastest/most effective path)
  • Evaluate and respond to emergent security concerns in a frontier AI lab environment, such as detection and response strategies for agents operating across infrastructure at scale
  • Fulltime
Read More
Arrow Right

Security Engineer - IR Threat Intelligence

Meta Security is looking for a threat intelligence investigator with extensive e...
Location
Location
United States , Bellevue
Salary
Salary:
154000.00 - 217000.00 USD / Year
meta.com Logo
Meta
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years threat intelligence experience
  • Bachelor's degree or equivalent experience in Security
  • Familiarity with campaign tracking techniques and ability to convert the tracking results to long term countermeasures
  • Familiarity with threat modeling framework, such as Diamond Model or/and MITRE ATT&CK framework
  • Experience intelligence-driven hunting to spot suspicious activities in the network and identify potential risks
  • Proven track record of managing and executing on short term and long term projects
  • Ability to work with a team spanning multiple locations/time zones
  • Ability to prioritize and execute tasks with minimal direction or oversight
  • Ability to think critically and qualify assessments with solid communications skills
  • Coding or scripting experience in one or more scripting languages such as Python or PHP
Job Responsibility
Job Responsibility
  • Track threat clusters posing threats to Meta’s infrastructure and employees, and identify, develop and implement countermeasures on our corporate network
  • Investigate, mitigate, and forecast emerging technical trends and communicate effectively with actionable suggestions to different types of audiences
  • Work closely with incident responders to provide useful and timely intelligence to enrich ongoing investigations
  • Improve the tooling of threat cluster tracking and intelligence data integration to existing systems
  • Engage constructively in cross-functional projects to improve the security posture of Meta’s infrastructure, such as red team operations, surface detection coverage expansion and vulnerability management discussions
What we offer
What we offer
  • bonus
  • equity
  • benefits
Read More
Arrow Right

Senior Backend Engineer, Vendor Risk Management

As a Senior Backend Engineer on our Vendor Risk Management team, you will own th...
Location
Location
United Kingdom , London
Salary
Salary:
Not provided
vanta.com Logo
Vanta
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Have at least 8 years of industry experience
  • You have experience with infrastructure, AWS services, and scaling platforms in fast-growing environments
  • You’re thoughtful about trade-offs and have good product sense when creating new infrastructure
  • Have played technical leadership roles for teams or complex projects
  • Have previous startup experience, or worked in an environment that prioritizes a bias for action
  • Have previous experience working on greenfield projects
  • Open to using AI to amplify their skills and strengthen their work - demonstrating curiosity, a willingness to learn, and sound judgment in applying AI responsibly to improve efficiency and impact
Job Responsibility
Job Responsibility
  • Design, build, and operate the backend services that power our large-scale, automated attack surface analysis engine
  • Build our distributed systems for asset discovery and vulnerability scanning, ensuring high performance and comprehensive coverage
  • Engineer sophisticated monitoring and alerting systems to guarantee the reliability, speed, and integrity of our security data pipeline
  • Collaborate with security researchers to rapidly deploy new scanning techniques and threat detection modules into our production environment
  • Work with talented and kind engineers to make a significant impact on our customer base, enabling them to improve their security and prove it
  • Lead complex projects with multiple stakeholders and engineers to deliver significant impact to our business
  • Set direction for critical technical surface areas, enabling us to stay ahead of continued rapid growth
  • Contribute to building Vanta’s engineering culture as we grow
What we offer
What we offer
  • Industry-competitive salary and equity
  • 100% covered medical, dental, and vision benefits with dependents coverage
  • 16 weeks paid Parental Leave for all new parents
  • Health & wellness stipend
  • Remote workspace, internet, and mobile phone stipend
  • Commuter benefits for team members who attend the office
  • Pension matching
  • 25 days of Annual Leave per year and unlimited sick time
  • 8 company-paid holidays
  • Virtual team building activities, lunch and learns, and other company-wide events
  • Fulltime
Read More
Arrow Right

Principal Applied Scientist

Security represents the most critical priority for our customers in a world awas...
Location
Location
United States , Redmond
Salary
Salary:
139900.00 - 274800.00 USD / Year
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's Degree in Statistics, Econometrics, Computer Science, Electrical or Computer Engineering, or related field AND 6+ years related experience (e.g., statistics, predictive analytics, research)
  • Master's Degree in Statistics, Econometrics, Computer Science, Electrical or Computer Engineering, or related field AND 4+ years related experience
  • Doctorate in Statistics, Econometrics, Computer Science, Electrical or Computer Engineering, or related field AND 3+ years related experience OR equivalent experience
  • Ability to meet Microsoft, customer and/or government security screening requirements
  • This position will be required to pass the Microsoft background and Microsoft Cloud background check upon hire/transfer and every two years thereafter
Job Responsibility
Job Responsibility
  • Lead independently projects focused on AI / Agentic research applied to cybersecurity problems aiming to translate ideas and prototypes into concrete product advancements or novel capabilities
  • Productionize AI & ML: collaborate with engineering and product teams to productionize models, pipelines, and meet objectives for latency, throughput, and availability. Develop fine-tuning techniques for transformer models and establish benchmarks for accuracy, robustness, and performance to ensure reliable model delivery
  • Identify and integrate diverse data sources, develop deep expertise across them, and surface new patterns and opportunities—communicating clear, compelling, data driven stories visually and verbally
  • Analyze largescale datasets and build robust, scalable feature engineering pipelines in PySpark based environment
  • Partner with AI, Engineering and Data scientist teams to build machine learning systems that identify anomalies, account compromise, fraud, and identity threats, leveraging GenAI and graph based approaches
  • Collaborate across Threat Research, Engineering, and Product teams to define and instrument metrics that demonstrate product and business success (e.g Detection Efficacy, Coverage, Timetodetect)
  • Embody our culture and values
  • Fulltime
Read More
Arrow Right
New

Healthcare Assistant & Lead Healthcare Assistant

Are you passionate about supporting older people and making a meaningful differe...
Location
Location
Ireland , Cork
Salary
Salary:
Not provided
jobs.360resourcing.co.uk Logo
360 Resourcing Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience in elderly care is desirable but not essential (training may be provided)
  • QQI Level 5 in Healthcare Support or equivalent is an advantage
  • A caring, patient and respectful approach to supporting older people
  • Ability to work flexible shifts including days, nights, and weekends
  • Strong commitment to resident safety, dignity and wellbeing
  • Applicants must have legal entitlement to work in Ireland
Job Responsibility
Job Responsibility
  • Deliver person-centred care to residents with dignity and respect
  • Support residents with activities of daily living where required
  • Encourage independence and social engagement
  • Maintain a clean, safe and comfortable living environment
  • Build positive relationships with residents, families, and colleagues
  • Follow all health, safety and safeguarding procedures
  • Assist with compliance processes, inspections, and quality standards
  • Lead Healthcare Assistants will also assist in guiding care teams, supporting best practice, and helping maintain high standards of care delivery
What we offer
What we offer
  • Flexible working hours to support work–life balance
  • Local employment opportunities within the Douglas, Cork area
  • Competitive rates of pay in line with experience and role
  • Supportive team environment with ongoing training and development
  • Employee wellbeing initiatives
  • Uniform provided
  • Free on-site parking
  • Meals provided while on duty
Read More
Arrow Right