Threat Detection and Response Engineer

Whatnot

United States

Remote

USD 120,000 - 170,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Health Insurance
401(k) with employer match
Work From Home Support
Parental Leave
Flexible Time off

Job summary

Whatnot seeks a Threat Detection and Response Engineer to lead incident response efforts and work with security and business partners to contain threats. You will identify detection opportunities, create playbooks, and support new security technology deployments.

The role requires 5+ years in cyber incident response, strong communication, and experience with SOAR, SIEM, and cloud providers (AWS, GCP). Remote-friendly with US hub offices available.

Qualifications

  • Minimum 5+ years in cyber incident response or related cyber field.
  • Experience with security principles and defense-in-depth techniques.
  • Strong written communication to document and report incidents.

Responsibilities

  • Lead incident response and drive cyber incident containment and eradication.
  • Collaborate with Information Security and business teams for rapid response.
  • Develop playbooks and improve incident response processes and SOPs.
  • Analyze threat intelligence to mitigate risks and report health metrics.

Skills

Security incident response
Threat detection
On-call duties
Communication skills

Education

Bachelor’s degree in CS or related field

Tools

SOAR (Tines)
EDR/NDR
SIEM Chronicle
Cloud: AWS, GCP

Job description

Join the Future of Commerce with Whatnot!

Whatnot is the largest live shopping platform in North America and Europe to buy, sell, and discover the things you love. Whether it’s trading cards, fashion, electronics, or live plants, our sellers are building real businesses across hundreds of categories. We’re building live commerce at a scale that’s never been done in the West, and there’s no playbook to copy. The people here are shaping how an entirely new industry develops.

As a remote co-located team, we’re inspired by our values and anchored in hubs across the US, UK, Ireland, Poland, Germany, and Australia. We move fast, stay close to our users, and focus on the work that drives the most impact.

We’re one of the fastest growing marketplaces and were recently named the #1 Best Startup Employer in America by Forbes. Check out the latest Whatnot updates on our news and engineering blogs and join us as we enable anyone to turn their passion into a business and bring people together through commerce.

Role
  • Apply comprehensive knowledge and a thorough understanding of Incident Response concepts, principles, and technical capabilities

  • Collaborate across Information Security and business partners to ensure effective, precise, and rapid response

  • Act as the point of escalation from within the Incident Response team to drive all cyber incidents

  • Identify new detection opportunities, create playbooks, and support new technology implementations to defend against evolving threats

  • Maintain awareness and understanding of the current threat landscape. Analyze threat intelligence with the aim to mitigate potential risks

  • Report the overall health of the SOC via metrics, OKRs, and risk indicators to leadership

  • Provide Incident Response (IR) support when analysis suspects security incidents to help contain and eradicate threats;

  • Investigate, document, and report on cyber security issues

  • Create and continuously improve standard processes, operating procedures, and incident response playbooks

You

Curious about who thrives at Whatnot? We’ve found that low ego, a growth mindset, and leaning into action and high impact goes a long way here.

As our next Threat Detection and Response Engineer, you should have a minimum of 5+ years of relevant experience in security, preferably in a large enterprise environment, plus:

  • Bachelor’s degree in Computer Science, Information Security, a related field, or equivalent work experience.

  • 5+ years’ experience in cyber incident response, or a similar cyber field, including experience with security principles, and defense-in-depth techniques

  • Experience and understanding of security concepts, SOAR(Tines), EDR, NDR and SIEM (Chronicle) technologies

  • Experience with multiple Cloud Service Providers (AWS, GCP)

  • Excellent written communication skills with the ability to document, communicate, and report security incidents, as well as the status of the implementation and effectiveness of cybersecurity controls with product and business leaders

  • Expected to perform on-call duties

Benefits
  • Flexible Time off Policy and Company-wide Holidays (including a spring and winter break)

  • Health Insurance options including Medical, Dental, Vision

  • Work From Home Support

  • Care benefits

  • Retirement; 401k offering for Traditional and Roth accounts in the US (employer match up to 4% of base salary) and Pension plans internationally

  • Monthly allowance to dogfood the app

  • Parental Leave

EOE

Whatnot is proud to be an Equal Opportunity Employer. We value diversity, and we do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, parental status, disability status, or any other status protected by local law. We believe that our work is better and our company culture is improved when we encourage, support, and respect the different skills and experiences represented within our workforce.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Threat Detection and Response Engineer
Threat Detection and Response Engineer

Whatnot • Los Angeles (CA)

Remote
USD 140,000 - 210,000
Health Insurance
WFH Support
Home office setup
+5
Threat Detection and Response Engineer
Threat Detection and Response Engineer

Whatnot • San Francisco (CA)

On-site
USD 175,000 - 260,000
Health Insurance (Medical, Dental, Vis
Work From Home Support
Home office setup allowance
+5
Security Engineer (GRC)
Security Engineer (GRC)

Whatnot • Los Angeles (CA)

On-site
USD 120,000 - 180,000
Health Insurance options
Work From Home Support
Home office setup allowance
+3
Security Engineer (GRC)
Security Engineer (GRC)

Whatnot • New York (NY)

On-site
USD 175,000 - 230,000
Health insurance options
Work from home support
Parental leave
+2
Security Engineer (GRC)
Security Engineer (GRC)

Whatnot • San Francisco (CA)

On-site
USD 175,000 - 230,000
Health Insurance
Home office setup allowance
Cell phone and internet allowance
+6
Software Engineer, Safety Experience
Software Engineer, Safety Experience

Whatnot • New York (NY)

Hybrid
USD 120,000 - 180,000
Holiday & Time off
Health Insurance
WFH Support
+6
Software Engineer, Trust Experience
Software Engineer, Trust Experience

Whatnot • San Francisco (CA)

Hybrid
USD 150,000 - 210,000
Health Insurance
WFH Support
Home office setup allowance
+6
Software Engineer, Safety XP
Software Engineer, Safety XP

Whatnot • United States

Remote
USD 120,000 - 180,000
Software Engineer, Fraud
Software Engineer, Fraud

SupportFinity™ • Seattle (WA)

On-site
USD 180,000 - 260,000
Health Insurance options (Medical, Dental, Vision)
Generous Holiday and Time off Policy
Work From Home Support
+2
IT Systems & Ops Engineer
IT Systems & Ops Engineer

Whatnot • Los Angeles (CA)

Hybrid
USD 90,000 - 120,000
Flexible Time off Policy
Health Insurance options
Work From Home Support
+2