Senior Detection & Incident Security Engineer (HIPAA)

Socket.dev

United States

Remote

USD 120,000 - 190,000

Full time

6 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Solace is seeking a Sr. Security Engineer to own the detection and alerting program in a HIPAA-regulated environment. You will lead SIEM efforts across identity, cloud, endpoint, and SaaS logs, writing detections, reducing noise, and ensuring fast, accurate responses.

You will collaborate with staff security engineers and on-call teams to mature incident response and build automations for faster triage and containment, helping define security standards across the stack.

Qualifications

  • 3–6 years in security operations, detection engineering, incident response, or similar hands-on roles.
  • Real experience building and tuning detections in a SIEM — Datadog Cloud SIEM strongly preferred.
  • Fluency reading and correlating logs from cloud providers, identity providers, and SaaS platforms.
  • Hands-on incident response experience: triage, investigations, post-mortems.
  • Scripting ability (Python or similar) for automation and detection tooling.
  • Strong understanding of common attack patterns (phishing, cloud misconfig, credential compromise).
  • Comfortable with ambiguity and startup environments.

Responsibilities

  • Own Datadog Cloud SIEM: log pipelines, parsing, enrichment, retention, cost management.
  • Build, tune, and maintain detection rules across identity, cloud, endpoint, data platforms, and SaaS logs.
  • Reduce alert noise and improve fidelity, time-to-triage, and false positives.
  • Map detections to MITRE ATT&CK and close top risk gaps.
  • Treat detections as code: versioned, tested, documented.
  • Ensure logging/audit trails meet HIPAA for ePHI systems.
  • Serve as primary responder for security alerts and incidents.
  • Improve and extend incident response playbooks and post-incident reviews.
  • Build automation to speed triage and response; contribute to on-call rotation.
  • Contribute to cloud/infrastructure security hardening and IAM improvements.
  • Assist in vendor security reviews and audit evidence gathering.

Skills

Security operations
Detection engineering
Incident response
Python scripting
SIEM tuning
Cloud logs

Tools

Datadog Cloud SIEM
Splunk
Elastic
Okta
Jamf
Snowflake
GitHub

Job description

Solace is seeking a Sr. Security Engineer to own the detection and alerting program in a HIPAA-regulated environment. You will lead SIEM efforts across identity, cloud, endpoint, and SaaS logs, writing detections, reducing noise, and ensuring fast, accurate responses.

You will collaborate with staff security engineers and on-call teams to mature incident response and build automations for faster triage and containment, helping define security standards across the stack.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer: Detection & Incident Response
Senior Security Engineer: Detection & Incident Response

Solace • United States

Remote
USD 120,000 - 190,000
Senior Detection & Response Engineer — Automation & SIEM
Senior Detection & Response Engineer — Automation & SIEM

Rippling • San Francisco (CA)

On-site
USD 170,000 - 210,000
Equity
Benefits
Senior Security Engineer - Remote, Cloud & SIEM Lead
Senior Security Engineer - Remote, Cloud & SIEM Lead

RSi • Mission (KS)

Hybrid
USD 120,000 - 170,000
Competitive pay
Fully remote with Mon–Fri schedule
Growth opportunities
Senior Detection & Response Engineer — Build Next-Gen Security
Senior Detection & Response Engineer — Build Next-Gen Security

United States Digital Space LLC • New York (NY), Washington

On-site
USD 238,000 - 297,000
Health, dental & vision coverage
Retirement benefits
Learning & development stipend
+2
Senior Detection & Response Engineer — SIEM & Threat Hunt
Senior Detection & Response Engineer — SIEM & Threat Hunt

Cedarparktexasedc • Austin (TX)

On-site
USD 140,000 - 190,000
Senior SOC Engineer: Threat Detection & Automation
Senior SOC Engineer: Threat Detection & Automation

Healthcare Outcomes Performance Co. (HOPCo) • Phoenix (AZ)

On-site
USD 120,000 - 170,000
Senior Security Operations & Incident Response Engineer
Senior Security Operations & Incident Response Engineer

Attentive • Wilmington (DE)

On-site
USD 140,000 - 207,000
Health & wellness
Equity
Lead Threat Detection Engineer - SIEM & Hunting
Lead Threat Detection Engineer - SIEM & Hunting

CVS Health • Carson City (NV)

On-site
USD 107,000 - 284,000
Bonus program
Equity awards
Comprehensive benefits
Hands-On SecOps Engineer – Automate and Secure HIPAA
Hands-On SecOps Engineer – Automate and Secure HIPAA

K Health • New York (NY)

Hybrid
USD 125,000 - 150,000
Stock options
Paid parental leave
Hybrid work schedule
+2
Lead Security Incident Response Analyst
Lead Security Incident Response Analyst

Accendra Health, Inc. • Virginia (MN)

Hybrid
USD 86,000 - 105,000
Medical coverage
401(k) plan
Paid time off
+2