Senior Detection Engineer

10 hours, 12 minutes ago
Full-time
Senior
Cybersecurity
instacart.careers

instacart.careers

Instacart is a leading grocery technology company in North America that works with grocers and retailers to transform how people shop. They partner with over 1,000 national, regional, and local retail banners to facilitate online shopping, delivery, an...

Internet Software & Services
1K-5K

Description

  • Develop, tune, document, and maintain detection logic across endpoint, cloud, container, and SaaS log sources.
  • Assist with cyber forensic investigations across a variety of log sources.
  • Optimize log ingestion pipelines and telemetry collection to improve data quality while managing volume and cost.
  • Design and build SOAR playbooks and automation workflows for detection triage, enrichment, and response.
  • Mentor junior security analysts and detection engineers on threat hunting, detection logic, and investigation techniques.
  • Develop high-fidelity detections that translate attacker TTPs into durable logic.
  • Collaborate with Engineering, Red Team, Incident Response, Fraud, and Trust & Safety to improve detection coverage and response.
  • Hunt for novel attacker techniques and continuously evolve detection coverage as the threat landscape changes.

Requirements

  • 5+ years of experience in detection engineering, incident response, or offensive security.
  • Experience with one or more public cloud platforms, including AWS, Azure, or GCP.
  • Deep understanding of attacker TTPs in modern zero-trust environments, including identity compromise, token theft, and trust-boundary abuse.
  • Proficient understanding of macOS internals and telemetry used to identify macOS-specific threats.
  • Experience implementing detection-as-code workflows, including version control, peer review, automated testing, and CI/CD deployment pipelines.
  • Basic proficiency with Python, Golang, or other programming languages.
  • Relevant certifications such as GCFA, GCFE, GNFA, GREM, OSCP, GCIA, or similar.
  • Background in offensive security or red teaming preferred.
  • Knowledge of machine learning for threat detection preferred.

Benefits

  • Flexible remote-first work environment through Instacart's Flex First policy.
  • Highly market-competitive compensation.
  • Base salary range of $230,000-$242,500 for CA, NY, CT, and NJ; $220,000-$232,000 for WA; $211,000-$222,500 for several other listed states; and $192,000-$202,500 for all other states.
  • Eligible for a new hire equity grant.
  • Eligible for annual refresh grants.
  • Access to Instacart's benefits offerings.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Head of Malware Research & Engineering (remote-only, Europe)

CloudLinux 51-250 IT Services

CloudLinux is seeking an Engineering Leader to head the Cloud Antivirus Department at Imunify360, owning the end-to-end malware detection and cloud scanning platform that protects millions of websites.

Apache Airflow AWS Celery ClickHouse Docker GCP GitLab CI Grafana Jenkins Kafka Kubernetes LLM Luigi Machine Learning Microservices MongoDB PHP PostgreSQL Python RabbitMQ Redash Redis Rust SQL Transformers
12 minutes ago

Lead Security Engineer (Web3 Wallet/ DeFi)

Binance 5K-10K Capital Markets

Binance is seeking a Lead Security Engineer to protect Web3 wallet and DeFi products by driving cybersecurity, incident response, risk management, and AI security across global teams and regulated environments.

Blockchain Cybersecurity Encryption LLM Penetration Testing
27 minutes ago

Infrastructure and Endpoint Security Engineer

Devoted Studios 51-250 Internet Software & Services

This role at an international game production company focuses on securing network, infrastructure, endpoints, and cloud environments while also leading security awareness, incident response, and client-facing security assurance activities.

AWS Azure Bash DNS GCP Linux macOS Network Security PowerShell Python SIEM TCP/IP
42 minutes ago

Python Agent Developer

Magic Media 51-250 Internet Software & Services

Cyrex, a Magic Media company, is seeking a Python-focused cybersecurity specialist to help build autonomous penetration testing tools and support game-industry clients.

Burp Suite Nmap Python
42 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers