Staff Security Engineer - Detection & Incident Lead

Ripple

Greater London

Hybrid

GBP 120,000 - 180,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Ripple is seeking a Staff Security Engineer to join our Security Operations team. You will design, implement, and tune detections, lead the most complex investigations, and build automation to scale security workflows across our environment.

You will own SIEM pipelines and collaborate with detection engineers and developers, applying AI-assisted tooling while safeguarding alert quality and response integrity.

Qualifications

  • 7+ years in security operations, detection engineering, or incident response with end-to-end ownership.
  • Advanced knowledge of blue team practices and scripting for automation.
  • Experience with SIEM platforms and security data pipelines, including log onboarding and alert tuning.
  • Hands-on experience with EDR, identity, email security, and network security tooling.
  • Ability to write clear technical specs and reason about trade-offs.
  • Ability to break down complex projects into simple, repeatable processes and to give feedback in design reviews.

Responsibilities

  • Design, build, and tune detections across the security stack to improve threat identification and mitigation.
  • Lead incident response for the most complex investigations from triage through remediation.
  • Build and maintain security automation workflows that reduce manual toil in detection, triage, and response.
  • Own and improve SIEM/data pipeline health, including log source coverage, parsing, normalization, and alert quality.
  • Develop cross-functional relationships to influence security initiatives and drive adoption of security tooling.
  • Maintain awareness of evolving threat landscape and translate to concrete improvements to detection coverage and playbooks.
  • Use AI tools as more than a chatbot - agentic coding tools for detection engineering and automation work, while verifying output.
  • Participate in design reviews, breaking complex challenges into simple systems that others can build and maintain.

Skills

Security operations
Incident response
Detection engineering
Scripting
SIEM
EDR / Identity / Network security
Technical specs
Project breakdown
Coaching & feedback

Tools

Google SecOps
Tines
Claude Code
OpenAI Codex

Job description

Ripple is seeking a Staff Security Engineer to join our Security Operations team. You will design, implement, and tune detections, lead the most complex investigations, and build automation to scale security workflows across our environment.

You will own SIEM pipelines and collaborate with detection engineers and developers, applying AI-assisted tooling while safeguarding alert quality and response integrity.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff Security Engineer — Lead Security Operations
Staff Security Engineer — Lead Security Operations

Ripple • Greater London

Hybrid
GBP 120,000 - 180,000
Competitive salary
Equity
Learning budget
+1
Staff Security Engineer
Staff Security Engineer

Ripple • Greater London

On-site
GBP 120,000 - 180,000
Staff Security Engineer
Staff Security Engineer

Hidden Road • Greater London

Hybrid
GBP 110,000 - 170,000
Bonuses
Equity
Professional development budget
Staff Security Engineer London, UK
Staff Security Engineer London, UK

Ripple • Greater London

Hybrid
GBP 120,000 - 180,000
Competitive salary
Equity
Learning budget
+1
Senior AI Security Engineer: Architecting Safe, Scalable AI
Senior AI Security Engineer: Architecting Safe, Scalable AI

Ripple • Greater London

Hybrid
GBP 120,000 - 170,000
Bonuses
Equity
Mobile phone stipend
+4
Senior Security Engineer: Detection & Automation Consultant
Senior Security Engineer: Detection & Automation Consultant

InfoSec People Ltd • Basingstoke

Hybrid
GBP 70,000 - 100,000
Hybrid working model
Comprehensive employee benefits
Azure Security Engineer — SIEM, XDR & Incident Response (Contract)
Azure Security Engineer — SIEM, XDR & Incident Response (Contract)

jobr.pro • Greater London

On-site
GBP 90,000 - 130,000
Senior Security Engineer, Detection & Response Lead
Senior Security Engineer, Detection & Response Lead

Mixpanel • Greater London

On-site
GBP 103,000 - 140,000
Comprehensive Medical, Vision, and…
Mental Wellness Benefit
Generous Vacation Policy & Additional…
+3
Staff Software Engineer — Identity & Authorization Platform
Staff Software Engineer — Identity & Authorization Platform

Hidden Road • Greater London

Hybrid
GBP 90,000 - 190,000
Equity
Professional development budget
Wellness programs
+1
Senior AI Security Architect for Agentic AI & LLM
Senior AI Security Architect for Agentic AI & LLM

P2P • Greater London

Hybrid
GBP 120,000 - 180,000
Learning budget
Equity
Flexible onsite days
+2