Detection Engineer, Protective Services

1 day, 7 hours ago
Full-time
Mid Level
Software Development
DoorDash

DoorDash

DoorDash empowers small business owners by providing an affordable and convenient platform for local delivery services, primarily focusing on restaurant food delivery.

Air Freight & Logistics
10K-50K
Founded 2012

Description

  • Translate threat intelligence, incidents, and investigative needs into production detections that reduce noise and provide actionable context.
  • Build, test, deploy, tune, and maintain detections and supporting data pipelines using source-controlled engineering practices.
  • Correlate enterprise, marketplace, physical security, OSINT, support, identity, endpoint, and cloud signals to identify potential threats.
  • Apply rules, statistical methods, machine learning, and LLM-based techniques to improve detection quality and investigative context.
  • Investigate detections by querying data, validating hypotheses, and assessing confidence, scope, and potential impact.
  • Use investigation outcomes, false positives, missed indicators, and workflow friction to improve detection logic and tooling.
  • Contribute to technical reviews, testing, documentation, standards, and automation.
  • Participate in on-call rotations and support major investigations while communicating signal confidence and limitations.

Requirements

  • 3+ years of experience in detection engineering, threat hunting, incident response, security operations engineering, technical threat intelligence, or security-focused software engineering.
  • Experience contributing to production detection pipelines with source control, testing, review, deployment, and monitoring practices.
  • Proficiency in SQL or a security query language.
  • Ability to write maintainable code in Python, Go, or another relevant language.
  • Strong analytical skills, including data exploration, quality assessment, troubleshooting, and development of testable detection hypotheses.
  • Experience triaging alerts, conducting investigations, correlating data sources, and assessing evidence, confidence, and scope.
  • Experience with security, behavioral, or other relevant telemetry; identity, endpoint, cloud, marketplace, physical security, OSINT, or unstructured-data experience is preferred.
  • Experience using automation or analytics to improve detection and investigation workflows; machine learning or LLM experience is preferred.
  • Familiarity with MITRE ATT&CK or D3FEND.
  • Strong communication and collaboration skills, including the ability to handle sensitive information.
  • Bachelor’s degree or equivalent practical experience.
  • Experience with Snowflake, Cortex, or Google SecOps is preferred.

Benefits

  • U.S. base salary range of $130,600–$192,000, plus potential equity grants.
  • 401(k) plan with employer matching.
  • Medical, dental, and vision insurance, disability coverage, and basic life insurance.
  • 16 weeks of paid parental leave and family-forming assistance.
  • Flexible paid time off, paid sick leave, and 11 paid holidays.
  • Wellness benefits, commuter benefits match, and mental health programs.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Security Engineer

Cision 5K-10K Professional Services

Cision is hiring a Senior Security Engineer to monitor, investigate, and respond to security activity across its cloud, identity, endpoint, network, and Linux environments.

Active Directory AWS Bash GitHub GitLab Kubernetes Linux Network Security PowerShell Python SIEM Splunk
8 hours, 23 minutes ago

Sr. Security Software Engineer, Security Operations

Pinterest 5K-10K Internet Software & Services

Pinterest is hiring a Senior Security Software Engineer to lead Security Operations platforms that govern cloud infrastructure, automate vulnerability remediation and compliance, and integrate security controls into engineering workflows.

AWS System Design Terraform
8 hours, 53 minutes ago

Associate Director, Cybersecurity & IT

Sage Bionetworks 51-250 Biotechnology

Sage Bionetworks seeks an Associate Director, Cybersecurity & IT to lead cybersecurity strategy, enterprise IT operations, and technology protection for its nonprofit biomedical research and open-science mission.

Cybersecurity
1 day, 9 hours ago

Data Security Engineer - Junior+

Banco Plata, S.A., Institución de Banca Múltiple. 1001-5000 Banking / financial services

The Data Security Engineer will implement and operate data protection controls for sensitive company data, improving DLP coverage across endpoints, cloud platforms, collaboration services, repositories, and business systems.

AWS Bash Docker Elasticsearch Encryption Kibana Kubernetes OpenID Connect PostgreSQL Python SAML SIEM Snowflake
2 days, 8 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers