Job Closed
This listing is no longer active.
Movable Ink personalizes every customer engagement through automation and artificial intelligence. The world’s most innovative brands rely on Movable Ink to maximize revenue, simplify workflow and achieve the optimal customer experience. Headquartered in New York City with 600 employees, Movable Ink serves its global client base with operations throughout North America, Central America, Europe, and Australia.
Security Detection Engineer
Location
United States
Posted
135 days ago
Salary
$110K - $130K / year
Seniority
Mid Level
Job Description
Security Detection Engineer
Movable Ink
• Build, tune, and maintain detection rules and alerts in Splunk to identify security threats, suspicious activity, and policy violations • Reduce alert fatigue by continuously improving detection logic to minimize false positives while maintaining coverage • Monitor and develop detections for cloud security events across AWS and GCP using our CSPM tooling (Prisma Cloud) • Collaborate with the Security team to develop detection strategies based on threat intelligence and the MITRE ATT&CK framework • Investigate alerts and escalate confirmed incidents according to our incident response procedures • Set up and configure automation scripts and tooling for alert triage, ticket creation, and incident workflows • Create dashboards and reports to provide visibility into security posture and detection effectiveness • Document detection logic, runbooks, and response procedures • Support EDR (CrowdStrike) monitoring and investigate endpoint-related alerts • Identify opportunities to use Splunk for operational and product monitoring beyond pure security use cases
Job Requirements
- 2+ years of experience in a security operations, detection engineering, or SIEM-focused role
- Hands-on experience writing and tuning SPL queries in Splunk
- Familiarity with common attack techniques and the MITRE ATT&CK framework
- Experience with cloud platforms (AWS or GCP) and understanding of cloud-specific threats
- Exposure to EDR platforms (CrowdStrike preferred) and CSPM tools
- Understanding of log sources such as Okta, Google Workspace, endpoint logs, and network traffic
- Strong analytical and troubleshooting skills with attention to detail
- Clear written and verbal communication skills; ability to document findings and escalate effectively
- Self-motivated and comfortable working autonomously with a distributed team.
Benefits
- full range of medical, financial, and/or other benefits
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Requirement Engineering: Translate German regulatory requirements (SGB V, DiGAV Annex 1) into actionable technical security specifications for the development team. • Penetration Testing Coordination: Define the scope for mandatory white-box penetration tests and manual code reviews; manage the relationship with BSI-certified testing centers. • Risk Assessment: Conduct and document data protection impact assessments (DPIA) and security risk assessments tailored to high-protection health data. • Vulnerability Management: Establish a lifecycle process for vulnerability handling and incident reporting as required by the EU Cyber Resilience Act (CRA) and DiGA guidelines.
Information Security Member
Anchorage DigitalTrusted institutional partner in crypto and first federally chartered crypto bank
• Help build and scale a forward-looking security program • Ensure security of data and client’s digital assets • Work on various information security projects • Identify and evaluate risk to the Information Security Program • Create and improve controls to manage operational risks • Contribute to the long-term strategy of Information Security Team
• Support the design and configuration of enterprise information systems in alignment with security standards and requirements • Review and improve the security posture • Review new and existing system security plans • Participate in architecture reviews • Create and refine threat models • Offer technical guidance to minimize security risks • Oversee the execution of cybersecurity initiatives • Collaborate with other teams and serve as a subject matter expert while adhering to best security practices
• Ensure the security and safety of all business information, both at rest and in transit. • Work with Policy and Compliance to build and maintain IT networks and systems that adhere to government/contractual requirements. • Partner with engineering and DevOps on secure architecture. • Partner with Compliance and Legal on regulatory requirements. • Manage Vulnerability review and work with IT operations to regularly perform internal and external scans and audits and fix any identified issues to ensure IT security. • Manage Infrastructure Security. • Enhance and maintain the current network per IT policy. • Analyze security breaches to determine root cause, then mitigate any discovered issues. • Participate in architecture reviews and provide security approvals. • Manage security incident policy and response plan execution. • Provide quarterly and security assessment reviews. • Conduct all 3rd party vendor security assessment. • Manage and maintain perimeter defense systems (firewalls, VPN tunnels, etc.). • Maintain and administer security awareness training curriculum for employees. • Lead certification efforts for SOC 2, SOX ITGC Audits. • Work cross-functionally within the company to fulfill security requirements.




