Senior Detection Engineer

2 hours, 51 minutes ago
Full-time
Senior
DevOps and Infrastructure
ActiveCampaign

ActiveCampaign

ActiveCampaign is a web-based software company that offers Email Marketing, Automation, and CRM services. Their Customer Experience Automation platform helps over 185,000 businesses build meaningful connections with their customers through personalized...

Internet Software & Services
251-1K
Founded 2003
$360M raised

Description

  • Design and deploy detection logic across the technology stack using detection-as-code principles.
  • Build automated response workflows to enrich, triage, and remediate security alerts.
  • Investigate complex security signals, including novel attack patterns and phishing campaigns.
  • Collaborate with DevOps and Security Engineering teams to update detections as infrastructure changes.
  • Use AI and LLMs to accelerate threat hunting, generate detection hypotheses, and automate investigative work.
  • Lead post-incident reviews and translate findings into preventative architectural improvements.
  • Prototype and test emerging detection capabilities and data sources.
  • Participate in an on-call rotation to help defend critical systems.

Requirements

  • 5+ years of hands-on experience in detection engineering, incident response, or security operations in high-growth technology environments.
  • Advanced Python programming proficiency with experience building production-quality security automations and custom integrations.
  • Deep expertise in AWS cloud security, including IAM, VPC, CloudTrail, and Lambda attack vectors.
  • Mastery of detection logic in at least two major languages such as YARA-L, Sigma, KQL, or SPL.
  • Experience building SOAR workflows or equivalent automation platforms that reduce operational overhead at scale.
  • Exceptional communication skills with the ability to translate complex security risks into actionable insights.
  • Experience using AI/LLMs for threat analysis, investigation automation, and improving security work velocity.
  • A self-directed, engineering-first mindset, ideally with a background in SRE, DevOps, or platform engineering.
  • Experience contributing to open-source security projects is preferred.

Benefits

  • Base salary of $126,000 to $154,000 per year, plus potential bonus and equity.
  • Fully covered HDHP, telehealth access, and a free Calm subscription.
  • Open PTO for flexible time off and work-life balance.
  • LinkedIn Learning access, professional development programs, and career growth opportunities.
  • Generous 401(k) matching with immediate vesting.
  • Quarterly perks, including commuter and lunch benefits for hub-based employees or a stipend for remote workers.
  • Four-week paid sabbatical with a bonus after five years.
  • Remote work arrangement in the United States.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Specialist Solutions Architect - Cloud Infrastructure & Security

Databricks 1K-5K IT Services

Databricks is hiring a Specialist Solutions Architect for Cloud Infrastructure & Security to support customers in designing, deploying, and securing Databricks environments across public cloud platforms.

Apache Spark AWS Azure Databricks Encryption GCP Hadoop Java Kafka Network Security OAuth Python SAML Scala SQL Terraform
4 hours, 33 minutes ago

Security Engineer, Application Security

Trail of Bits 51-250 Internet Software & Services

Trail of Bits is hiring a Security Engineer, Application Security to perform deep technical assessments and build security tooling that helps protect complex client software and cloud environments.

Android AWS Azure C C++ GCP Go iOS JavaScript Kotlin macOS Objective-C Python Ruby Rust Swift TypeScript
6 hours, 11 minutes ago

Senior Cyber Software Engineer

STR 251-1K Aerospace & Defense

STR is hiring a Senior Cyber Software Engineer to develop and assess software tools that improve the security and resiliency of national defense systems.

Bash C C++ CI/CD Docker GitHub Actions GitLab CI Gradle Jenkins Podman Rust
8 hours, 7 minutes ago

Staff Threat Research Engineer

Sumo Logic 251-1K Internet Software & Services

Sumo Logic’s Threat Labs is hiring a staff-level threat researcher to turn threat intelligence and original adversary research into high-quality detections for its SIEM platform.

AWS Azure Cybersecurity GCP Machine Learning PowerShell Python SIEM SOC
9 hours, 50 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers