Security Operations Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
As a Security Operations Engineer, you will serve on the front lines of our security program, helping protect the organization by detecting, investigating, and containing threats across our endpoints, cloud infrastructure, and network. You will act as both an investigator and a builder: triaging and resolving security incidents with precision while continuously improving detections and automations that help the team move faster and operate more effectively. This role is central to our day-to-day security posture, turning alerts into meaningful action., * Triage, investigate, and respond to security alerts across endpoints, cloud infrastructure, and network telemetry.
- Take a builder’s mindset to the role by automating repetitive workflows and using AI to increase speed, scale, and effectiveness.
- Execute containment and remediation actions for confirmed incidents, while following and continuously improving established runbooks.
- Tune and maintain SIEM and EDR detections to reduce false positives, strengthen signal quality, and close coverage gaps.
- Apply threat intelligence, including IOCs and TTPs, to active investigations and ongoing monitoring.
- Participate in the on-call rotation and contribute clear, actionable post-incident documentation.
Requirements
- You bring 3+ years of experience in security operations, detection and response, or a related security engineering role.
- You have experience investigating and responding to security threats across endpoints, cloud environments, and network telemetry.
- You bring strong analytical judgment and a calm, methodical approach to triaging alerts and driving incidents through resolution.
- You have hands-on experience with SIEM and EDR platforms, including tuning detections to improve signal quality and reduce false positives.
- You think like a builder and look for opportunities to automate repetitive work, including using AI to improve speed and scale.
- You are comfortable applying threat intelligence, including IOCs and TTPs, to investigations and proactive monitoring.
- You are prepared to participate in an on-call rotation and can document incidents clearly and effectively to support continuous improvement.
About the company
Today’s financial infrastructure is archaic, expensive, inefficient and risky - supporting a system that leaves out more people than it lets in. So we’re rebuilding it.
We’re on a mission to open the world’s financial system to everyone by enabling the instant movement of any asset, any time, in a trustworthy way. For over a decade, we’ve built blockchain infrastructure that tokenizes, custodies, trades and settles assets for the world’s leading financial institutions, like Mastercard, Visa, Robinhood, and PayPal.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
9 Ways to Make Money Hacking
Understanding and Mitigating Common Web Vulnerabilities
7 Cloud Computing Trends Coming in 2025 for Developers