> Markdown version of [/jobs/ext/1085028-sr-cybersecurity-engineer](https://www.wearedevelopers.com/jobs/ext/1085028-sr-cybersecurity-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Sr Cybersecurity Engineer - **Company:** PayPal - **Location:** Austin, TX, United States (Remote available) - **Experience:** Expert - **Salary:** $130,500.0 - $221,500.0 - **Contract:** Permanent contract - **Skills:** Bash Shell, Cloud Computing Security, Cyber Security, Identity and Access Management, Intrusion Detection and Prevention, Python (Programming Language), Packet Analyzer, Windows PowerShell, Security Software, Security Information and Event Management, Cloud Platform System, Mitre Att&ck, Malware, Cyber Threat Analysis, Azure Security Center, Information Technology, Cybercrime, CIS Benchmarks, Splunk, Security Orchestration, Automation & Response - **Published:** June 13, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=2d00633caefa73af ## About the Role Do you have experience in Triage?, Do you have a Bachelor's degree?, best practices and participate in continuous improvement efforts across the organization. Partial telecommuting permitted from within a commutable distance. Work hours are Sunday to Wednesday, 6AM - 4PM, 40 hours per week. Minimum Requirements: Bachelor's degree (or foreign equivalent) in Computer Science, Cybersecurity, Information Assurance, Information Technology, or a closely related field and three (3) years of experience in the job offered or in a related cybersecurity or information security occupation. Special Skill Requirements: Three years of experience in each of the following: 1. Threat Analysis: Analyzing SIEM and EDR alerts, triaging security events, performing log and packet analysis, and correlating threat intelligence to detect and contain sophisticated cyber threats 2. Incident Response & Escalation: Demonstrated ability to identify, investigate, and escalate cybersecurity incidents for containment, eradication, and remediation within enterprise environments 3. Security Information & Event Management (SIEM): Hands-on experience with SIEM platforms such as Splunk, and Google SecOps for log correlation, threat detection, and continuous monitoring 4. Endpoint and Network Detection: EDR platforms including Falcon CrowdStrike, and Microsoft Defender for endpoint protection, lateral movement detection, and behavioral analytics 5. Threat Intelligence & Analysis: Experienced in collecting, processing, and analyzing threat data to produce actionable intelligence; applying frameworks such as MITRE ATT&CK and Diamond Model to support hunting, IR, and engineering teams 6. Detection Engineering: Skilled in developing custom detection logic, writing Sigma and YARA rules, building hunt queries, and correlating external intelligence with internal telemetry for early threat identification 7. Security Automation and Scripting: Python, PowerShell, and Bash for automating SOC workflows, enhancing incident response playbooks, and integrating detection and response processes 8. Cloud Security: Experience securing hybrid and cloud environments, including use of cloud security posture management (CSPM) tools such as WIZ, IAM configuration, and analysis of native cloud telemetry 9. Forensic and Malware Analysis: Performing endpoint triage, basic malware analysis, and forensic investigation to determine root cause and adversary behavior 10. Compliance and Frameworks: Security and compliance frameworks including NIST CSF, NIST 800-53, CIS Controls, CSA CCM, and ISO 27001, ensuring SOC processes align with organizational standards 11. Threat Hunting Operations: Experience developing hypotheses, conducting proactive hunts using telemetry data, and operationalizing intelligence to detect weak signals and unknown threats 12. Collaboration and Communication: Collaborate with cross-functional IT, engineering, and threat intelligence teams, improve detection workflows, and communicate findings to both technical and executive audiences Additional Responsibilities & Preferred Qualifications: EOE, including disability/vets. The base pay for this role will depend on where you work and the relevant experience and expertise you bring. The expected range of pay for this role by location is ## Description Job Duties: Apply cybersecurity best practices to enhance and optimize PayPal's cyber threat management operations, ensuring effective protection and operational efficiency. Partner with peers and internal teams to drive security initiatives and contribute to cross-functional projects that strengthen PayPal's security posture. Analyze and respond to security alerts, incidents, and threats using established processes and advanced tools. Participate in incident response readiness exercises and simulations to improve preparedness and efficiency. Collaborate with security and engineering teams to assess security events, document findings, and implement process improvements. Support management and optimization of cybersecurity tools and automation systems to enhance incident detection and response capabilities. Contribute to the review and refinement of incident management procedures based on emerging threats and evolving industry trends. Maintain current knowledge of cybersecurity ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Old tools, new tricks](https://www.wearedevelopers.com/videos/1916-old-tools-new-tricks) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Training Bots on Deliveroo Data, Alexa Can Swear and Mushroom Electronics - Julia Kordick](https://www.wearedevelopers.com/videos/1839-training-bots-on-deliveroo-data-alexa-can-swear-and-mushroom-electronics-julia-kordick) - [MCP doesn’t suck — your agent does](https://www.wearedevelopers.com/videos/100202-mcp-doesn-t-suck-your-agent-does) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [Software Engineer Salary London](https://www.wearedevelopers.com/magazine/252-software-engineer-salary-london) - [Software Engineer Salary in The UK](https://www.wearedevelopers.com/magazine/231-software-engineer-salary-in-the-uk) - [Best Paying Remote Jobs](https://www.wearedevelopers.com/magazine/255-best-paying-remote-jobs)