Senior Security Engineer - Detection & Response (DART)

JobCubby

Hinoba-an

On-site

PHP 1,200,000 - 1,800,000

Full time

5 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Rippling is seeking an experienced Security Engineer to join our Detection and Response Team (DART). You will help scale our incident response, improve processes, and build detection infrastructure across production and corporate environments.

The role requires strong cloud security, threat hunting, and automation skills, with excellent communication to stakeholders. Responsibilities include responding to events, developing runbooks, leading threat-hunting efforts, and building tools to collect

Qualifications

  • 7+ years of full-time security engineering experience including monitoring, incident response and threat hunting in cloud environments.
  • Defensive security practitioner who understands offensive security and real-world compromise scenarios.
  • Experience leading complex investigations with many stakeholders.
  • Excellent communication with internal and external stakeholders at all levels.
  • Expertise in AWS security controls and services.
  • Experience coding for automation, alert enrichment and detections.
  • Knowledge of adversary TTPs and MITRE ATT&CK framework.
  • Hands-on data analysis, modeling and correlation at scale.
  • OS forensics experience: macOS, Windows and Linux.
  • Experience with current SIEM and SOAR platforms.
  • Experience building tools and automation with DevOps toolsets and languages.
  • Understanding malware functionality and persistence mechanisms.
  • Ability to analyze endpoint, network and application logs for anomalies.

Responsibilities

  • Respond to security events, triage, investigate incidents and communicate findings to stakeholders.
  • Improve detection, response processes, and tooling post-incident debriefs.
  • Develop and run tooling to collect telemetry from cloud production systems.
  • Automate workflows to speed up detection and response times.
  • Build and optimize detection rules to focus on meaningful alerts.
  • Develop runbooks and incident playbooks for detections.
  • Lead threat hunting activities and surface attacker signals for security controls.

Skills

Security monitoring
Incident response
Threat hunting
AWS security
Automation coding
MITRE ATT&CK
Data analysis
Forensics
SIEM & SOAR
DevOps tooling

Tools

SIEM
SOAR
DevOps toolchains

Job description

Rippling is seeking an experienced Security Engineer to join our Detection and Response Team (DART). You will help scale our incident response, improve processes, and build detection infrastructure across production and corporate environments.

The role requires strong cloud security, threat hunting, and automation skills, with excellent communication to stakeholders. Responsibilities include responding to events, developing runbooks, leading threat-hunting efforts, and building tools to collect

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer - DART (Detection and Response Team)
Senior Security Engineer - DART (Detection and Response Team)

JobCubby • Hinoba-an

On-site
PHP 1,200,000 - 1,800,000
Senior Security Engineer – Threat & Incident Response
Senior Security Engineer – Threat & Incident Response

PDAX • Pasig

On-site
PHP 900,000 - 1,300,000
Senior XDR Product Leader: Detection & Response
Senior XDR Product Leader: Detection & Response

United States Digital Space LLC • España

On-site
PHP 7,524,000 - 11,912,000
Threat Detection & Response Analyst
Threat Detection & Response Analyst

THOMSON REUTERS CORP PTE LTD - PHILIPPINE BRANCH • Manila

Hybrid
PHP 520,000 - 780,000
Hybrid Work Model
Career development
Mental Health Days/Headspace access
+2
Principal Security Incident Response Leader (Remote)
Principal Security Incident Response Leader (Remote)

CrowdStrike • España

Hybrid
PHP 4,433,000 - 6,875,000
Compensation & equity awards
Wellness programs
Generous vacation & holidays
+2
Security Operations Lead — Detection & Response
Security Operations Lead — Detection & Response

Thumbtack Philippines • Philippines

On-site
PHP 1,200,000 - 2,400,000
Remote InfoSec Engineer: Incident Response & Threat Hunting
Remote InfoSec Engineer: Incident Response & Threat Hunting

Oportun • Mexico

On-site
PHP 7,486,000 - 11,229,000
Cybersecurity Incident Response Engineer
Cybersecurity Incident Response Engineer

Assurity Trusted Solutions Pte Ltd • Santo Niño 1st

On-site
PHP 4,436,000 - 6,407,000
A wholly-owned subsidiary of GovTech.
Learning culture and growth encouraged
AI Infrastructure Security Operations Lead
AI Infrastructure Security Operations Lead

Fireworks • San Mateo

On-site
PHP 1,800,000 - 3,200,000
Senior Detection & Response Engineer — Telemetry & IR
Senior Detection & Response Engineer — Telemetry & IR

Suno • Boston

On-site
PHP 13,973,000 - 20,049,000
Equity
401(k) plan
Medical/Dental/Vision insurance
+5