Job Closed
This listing is no longer active.
The creators and maintainers of dbt
Senior Security Operations Engineer, Detection & Response
Location
United States
Posted
85 days ago
Salary
$175K - $212K / year
Seniority
Senior
Job Description
Senior Security Operations Engineer, Detection & Response
dbt Labs
• Participate in a 24/7 on-call rotation providing coverage for active security incidents, investigations, and security events across our global infrastructure. • Lead investigation and remediation of security incidents, coordinating cross-functional response efforts to minimize impact and recovery time. • Play a major role in bootstrapping an end to end D&R alert and investigation pipeline. • Triage and investigate security alerts from detection tools including Wiz Defend, Crowdstrike, to identify genuine threats and reduce false positives. • Develop and maintain detection rules, runbooks, and response procedures mapped to the company's threat model. • Automate alert triage workflows and improve mean time to detection and response through tooling and process enhancements. • Conduct security event analysis to identify policy violations, misconfigurations, and potential attack vectors before they become incidents.
Job Requirements
- 8+ years of professional experience in security-related domains, including at least 4 years in security operations, incident response, threat hunting, or threat detection roles.
- Demonstrated experience working within security detection and response programs in cloud-native environments.
- Hands-on experience with security tooling (SIEM, SOAR, EDR, and CSPM tools) with a focus on detection engineering and alert tuning.
- Experience working in Kubernetes-based production environments with extensive SaaS platform integration.
- Working knowledge of attacker TTPs and frameworks such as MITRE ATT&CK.
- Relevant certifications such as GCIH, GCIA, GCFA, or equivalent are a plus.
Benefits
- Unlimited vacation (and yes we use it!)
- 401k w/3% guaranteed contribution
- Excellent healthcare
- Paid Parental Leave
- Wellness stipend
- Home office stipend, and more!
Related Guides
Related Categories
Related Job Pages
More Security Operations Jobs
• Monitor and investigate security alerts using SIEM platforms (preferably Sumo Logic), performing deep-dive threat analysis across our entire infrastructure • Operate and fine-tune endpoint protection tools like CrowdStrike, ensuring our systems stay one step ahead of potential threats • Support Zero Trust Network Access and cloud security solutions, including Palo Alto Prisma/Global Protect • Lead incident response activities from detection through recovery, including post-incident analysis and lessons learned • Continuously improve alert quality by tuning detection rules and reducing false positives to focus on real threats • Build and refine SOC workflows, playbooks, and procedures to mature our security operations and response capabilities
Solution Sales Manager – GRC, SecOps Solutions
smartvokatInnovating Legal, Compliance & Risk Service delivery | End-to-end | Cross-disciplinary | Digital
• Drive revenue growth from clients in the Financial Services sector in Austria (primary focus) and Switzerland. • Achieve sales targets by selling advisory, implementation and application management services related to ServiceNow’s Integrated Risk Management (IRM) and Tanium’s Autonomous IT Platform. • Lead discovery workshops to understand client challenges in risk, compliance, and cybersecurity. • Present tailored demonstrations showing how ServiceNow IRM and Tanium deliver continuous risk visibility, automated compliance, and real-time remediation. • Build strong relationships with C-level executives, risk officers, and IT security leaders. • Collaborate with ServiceNow and Tanium technical consultants to design integrated solutions. • Stay current on regulatory trends impacting Financial Services. • Represent the company at industry events, conferences, and executive briefings.
• Operate, improve, and coordinate the CTEM program • Work directly in the Seemplicity platform for CTEM aggregation • Follow up to communicate and resolve found vulnerabilities • Collaborate with technical teams to communicate findings • Respond to potential security incidents
Cybersecurity Operations Consultant
Jobs for HumanityConnecting historically under represented talent to welcoming employers across the globe!
• Assist in the delivery of Cybersecurity Operations services and projects. • Investigate security alerts and anomalies identified through Google’s security tools. • Collaborate with cybersecurity teams to support architecture changes and implement new solutions. • Identify and suggest new detection use cases for real-time threat detection. • Contribute to the development and maintenance of automation playbooks. • Support and participate in security risk assessments and audits related to Cloud environment. • Manage vulnerabilities using Googlenative or third-party security tools. • Monitor and act on assigned security operations activities in the SOC.




