Staff Security Engineer: Detection & Response Leader

IBM

Tucson (AZ)

On-site

USD 140,000 - 190,000

Full time

21 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Confluent is seeking an experienced security engineer to join our infrastructure security engineering team with a focus on Detection and Response. You will apply threat detection and response expertise to build foundational systems that keep our cloud environments secure and observable.

Collaborating with engineering and compliance teams, you will drive high-impact projects, mentor junior engineers, and help define strategy and metrics for detection and response across the organization while

Qualifications

  • 8+ years of relevant industry experience in detection and response or similar security engineering role in a cloud-first environment.
  • Deep, expert-level domain knowledge in detection engineering and security incident response.
  • Experience in instrumenting telemetry and building high-quality detections in large-scale, heterogeneous deployments (e.g., Kubernetes, containers, multi-cloud).
  • Proficient ability in writing code using Python or Golang to design complex tooling, automation, and data pipelines.
  • Demonstrated experience with effective incident response and containment practices, preferably in a cloud-first environment.
  • Experience with operating open-source and/or commercial solutions for logging and security event management (e.g. SIEM, log aggregation, SOAR, etc).
  • Ability to work alongside a remote team, using a data-driven mindset to propose and own engineering decisions, and the capability to drive consensus across ambiguous, organizational-wide challenges.

Responsibilities

  • Architect, build and maintain scalable cloud-based security monitoring solutions, across logging pipelines, ETL jobs, and SIEM ingestion.
  • Drive the long-term roadmap for threat hunting by translating modern adversary tradecraft (TTPs) and threat models into high-signal detection strategies to ensure our critical infrastructure operates safely.
  • Build processes and workflows to triage security alerts and drive incidents to closure, including participating in a shared on-call rotation for incident response.
  • Research new threat attack vectors and ensure that our detection and response program is in line with the current threat landscape.
  • Proactively improve the quality of our detection rules by defining and tracking key metrics (e.g., coverage, precision, MTTD), working directly with engineering teams to eliminate classes of issues.
  • Collaborate with engineering teams in building logging pipelines needed to gather relevant security telemetry, ensuring new infrastructure ships with secure-by-default visibility.
  • Contribute to strategy, risk management and prioritization for all efforts around detection and response.
  • Provide technical guidance, mentorship, and leadership to other engineers, raising the bar for security operations across the organization.

Skills

Security engineering
Python
Golang
Kubernetes
Containers
Multi-cloud
Incident response
Threat hunting
SIEM
SOAR
Telemetry
Cloud-first

Education

Master's Degree

Tools

SIEM
Log aggregation
SOAR

Job description

Confluent is seeking an experienced security engineer to join our infrastructure security engineering team with a focus on Detection and Response. You will apply threat detection and response expertise to build foundational systems that keep our cloud environments secure and observable.

Collaborating with engineering and compliance teams, you will drive high-impact projects, mentor junior engineers, and help define strategy and metrics for detection and response across the organization while

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff Security Engineer: Detection & Response (Cloud)
Staff Security Engineer: Detection & Response (Cloud)

IBM • City of Poughkeepsie (NY)

On-site
USD 150,000 - 230,000
Cloud Security Detection Engineer – IR & Threat Hunting
Cloud Security Detection Engineer – IR & Threat Hunting

IBM • Lowell (MA)

On-site
USD 140,000 - 190,000
Confluent - Staff Security Engineer I - Detection & Response
Confluent - Staff Security Engineer I - Detection & Response

IBM • Tucson (AZ)

On-site
USD 140,000 - 190,000
Confluent - Staff Security Engineer I - Detection & Response
Confluent - Staff Security Engineer I - Detection & Response

IBM • Lowell (MA)

On-site
USD 140,000 - 190,000
Confluent - Staff Security Engineer I - Detection & Response
Confluent - Staff Security Engineer I - Detection & Response

IBM • City of Poughkeepsie (NY)

On-site
USD 150,000 - 230,000
Detection & Response Engineering Lead
Detection & Response Engineering Lead

Confluent • United States

Hybrid
USD 180,000 - 260,000
Senior Manager, Detection & Response (Security Engineering)
Senior Manager, Detection & Response (Security Engineering)

Confluent • United States

Hybrid
USD 180,000 - 260,000
Senior Security Engineer — Incident Response & Cloud Security
Senior Security Engineer — Incident Response & Cloud Security

Conexess Group • Plantation (FL)

On-site
USD 120,000 - 180,000
Lead Incident Response Engineer
Lead Incident Response Engineer

Fluidstack • New York (NY)

On-site
USD 330,000 - 380,000
Detection & Response Engineer — Cloud Security (SF)
Detection & Response Engineer — Cloud Security (SF)

Monograph • San Francisco (CA)

On-site
USD 230,000 - 260,000