Salary Range: $204,000.00 - $240,000.00
Responsibilities
- Participate in detection and response workstreams: write detection logic, lead incidents, and communicate to leadership.
- Strengthen detection and response processes, then lead AI-driven automation workstreams.
- Collaborate with security and engineering teams to support multiple security efforts.
- Mentor engineers on incident leadership, detection engineering, security fundamentals, and communications.
- Participate in an on‑call rotation (minimum once a month).
- Engage in active threat hunting, security event analysis, and incident triage.
- Perform end‑to‑end security event and incident response duties, including root‑cause analysis, incident commander responsibilities, and cross‑functional collaboration.
- Chart AI adoption strategy for automated triage and response.
- Develop, tune, and manage tools to gather security telemetry data.
- Build detection rules and threat hunting queries.
- Improve processes, procedures, technologies, and runbooks for detection and response.
- Challenge detection and response assumptions built for human‑speed threats.
- Support high‑visibility security initiatives and the technical/operational aspects of them.
- Pair on incidents, review detection logic, and coach engineers through post‑incident deep dives.
- Use threat modeling to prioritize detection coverage and assess impact during active incidents.
Qualities and Experience
- 9+ years in a security role with significant incident response experience.
- Proficiency with web applications and cloud technologies.
- Strong foundational knowledge of information security and common attacks, tactics, techniques, and procedures.
- Familiarity with operating system internals, malware functionality, and persistence mechanisms.
- Hands‑on experience with SIEM, SOAR, EDR, and MDM platforms.
- 5+ years of professional development experience, delivering large engineering projects.
- Strong mental threat model for web applications and cloud data flows, with real‑time reasoning about blast radius, pivot paths, and data exposure during incidents.
- Bias toward building and improving systems; a drive to replace manual processes with automated solutions.
- Experience building, tuning, and validating AI agents, including running them alongside manual analysis until confident in output.
Nice to Haves
- Experience with Google Workspace and/or GCP Container technology.
- Experience in CTI, penetration testing, network or system engineering.
Benefits
- Equity package.
- Annual performance bonus.
- Competitive benefits supporting employees and families.
EEO Statement
Etsy, Inc. is a proud equal opportunity workplace. We encourage people from all backgrounds, ages, abilities, and experiences to apply. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or veteran status, or any other characteristic protected by applicable law. If, due to a disability, you need an accommodation during any part of the application or interview process, please let your recruiter know.