Senior Security Operations: Detection & Response (Remote)

Point

San Francisco (CA)

On-site

USD 151,000 - 167,000

Full time

21 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Health benefits
Unlimited PTO
Remote & onsite options
Parental leave
Equity
401K

Job summary

Point is seeking a Senior Security Operations Analyst to join our remote U.S. team. You will drive incident response, design detections, and automate workflows across AWS and Google Workspace, reducing risk for hundreds of thousands of homeowners.

With 5+ years in security operations, you will own on-call duties, write runbooks, and deliver auditable security metrics. This is a high-visibility role offering broad autonomy and impact.

Qualifications

  • 5+ years of experience in security operations, incident response, SOC, or detection engineering (mid-to-senior individual contributor).
  • Hands-on experience running or actively participating in an on-call / incident-response rotation, independently.
  • Strong SIEM skills — authoring and tuning detections, correlation rules, and dashboards (Coralogix, Splunk, Elastic, Microsoft Sentinel, or similar).
  • Practical cloud security experience in AWS and Google Workspace, including identity and log sources.
  • Demonstrated ability to investigate and contain incidents end to end — e.g., phishing/AiTM, account takeover, business email compromise, and cloud/identity threats.
  • Working knowledge of vulnerability management and coordinating remediation with engineering teams.
  • Scripting and automation ability (Python or similar) for detection-as-code and SOAR-style workflows.
  • Clear written and verbal communication — able to produce runbooks, metrics, and audit-ready documentation.
  • Comfortable operating with autonomy on a small team and owning problems end to end.
  • Authorized to work in the United States, and able to participate in an off-hours on-call rotation.

Responsibilities

  • Rotate on-call and lead response: share the 24/7 on-call and incident-response rotation with the security lead — triaging, investigating, and driving containment of security alerts and incidents.
  • Own response documentation: build and maintain incident-response runbooks, escalation paths, and post-incident reviews so response is consistent and repeatable.
  • Engineer detections: build, tune, and maintain SIEM detections, correlation rules, dashboards, and reporting in Coralogix across cloud and identity log sources.
  • Close coverage gaps: reduce false positives and onboard new log sources to eliminate detection blind spots.
  • Own vulnerability management: run day-to-day vulnerability management — prioritize findings, coordinate remediation with system owners, and report on risk reduction across cloud and endpoints.
  • Automate response: develop detection-as-code and lightweight automation/SOAR so common alerts self-triage and response is faster and repeatable.
  • Add operational redundancy: serve as a redundant administrative and response path so containment is never bottlenecked on a single person.
  • Report and evidence: produce recurring security metrics and reporting for leadership, and supply control evidence for audits.
  • Apply AI to the workflow: use AI/LLM tooling to accelerate investigation, correlation, and detection engineering.
  • Improve the program: contribute to continuous improvement of the security-operations program, tooling, and threat monitoring.

Skills

Security operations
Incident response
SIEM tuning
Cloud security
Vulnerability management
Python scripting
On-call rotation
Communication

Tools

Coralogix
Splunk
Elastic
Microsoft Sentinel
AWS
Google Workspace

Job description

Point is seeking a Senior Security Operations Analyst to join our remote U.S. team. You will drive incident response, design detections, and automate workflows across AWS and Google Workspace, reducing risk for hundreds of thousands of homeowners.

With 5+ years in security operations, you will own on-call duties, write runbooks, and deliver auditable security metrics. This is a high-visibility role offering broad autonomy and impact.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Detection & Security Operations Engineer (Remote)
Senior Detection & Security Operations Engineer (Remote)

Arkenstone • Menlo Park (CA)

On-site
USD 150,000 - 190,000
Health insurance
401(k) plan with matching
Paid time off and holidays
+2
Senior Security Engineer: Remote Red Team & Detection
Senior Security Engineer: Remote Red Team & Detection

Mgsecureops • United States

On-site
USD 150,000 - 230,000
Remote work
Equity package
Health, dental, and vision insurance
+2
Remote Senior Security Operations Lead | Cloud & Incident Response
Remote Senior Security Operations Lead | Cloud & Incident Response

Mountain Digital, Inc. • United States

On-site
USD 100,000 - 150,000
Flexible vacation policy
401(k) plan
Access to coaching and professional development
Senior Detection and Response Analyst
Senior Detection and Response Analyst

Prestige Staffing • Dallas (TX)

On-site
USD 120,000 - 180,000
Contract extension potential
Remote work
Career growth
+2
Senior Security Engineer, AI-Driven Detection & Response
Senior Security Engineer, AI-Driven Detection & Response

DaParrot Ltd • Northern (KY)

Hybrid
USD 140,000 - 200,000
Health insurance
Equity stock options
Retirement plans
+2
Senior Detection Engineer — Remote/Hybrid
Senior Detection Engineer — Remote/Hybrid

LinkedIn • United States

Hybrid
USD 129,000 - 212,000
Senior Security Operations Engineer – Incident Response (Remote)
Senior Security Operations Engineer – Incident Response (Remote)

Samsara • United States

Hybrid
USD 135,000 - 183,000
Flexible working model
Professional development stipend
Comprehensive health benefits
Senior Security Analyst - Remote Cloud & Incident Response
Senior Security Analyst - Remote Cloud & Incident Response

CoLab • Washington

On-site
USD 120,000 - 190,000
Stock options
Comprehensive health benefits
Unlimited paid vacation
+2
Senior Security Analyst - Lead SOC & Threat Hunting Remote
Senior Security Analyst - Lead SOC & Threat Hunting Remote

SPS Commerce Inc • Minneapolis (MN)

Hybrid
USD 108,000 - 140,000
Senior Security Engineer: Remote Detection & IR
Senior Security Engineer: Remote Detection & IR

Transformcap • San Francisco (CA)

Hybrid
USD 217,000 - 288,000
Health benefits
Grow for Grow
Financial wellness
+7