> Markdown version of [/jobs/ext/3017980-security-engineer-detection-response-organization](https://www.wearedevelopers.com/jobs/ext/3017980-security-engineer-detection-response-organization). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - Detection & Response Organization - **Company:** CO-RIPPLING LLC - **Location:** Seattle, WA, United States - **Experience:** Expert - **Salary:** $168,000.0 - $280,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Data Analysis, Apple Mac Systems, Big Data, Cloud Computing, Cyber Security, Computer Programming, Linux, DevOps, Internet Security, Python (Programming Language), Log Analysis, Microsoft Software, Security Information and Event Management, Scripting, Mitre Att&ck, Slack, Cybercrime, Multiplatform - **Published:** September 20, 2026 - **Apply:** https://www.careerbuilder.com/job-details/senior-security-engineer-detection-response-seattle-wa--a0e24601-e391-4257-8587-06c93b28eada ## About the Role * Extensive Expertise: 4+ years of full-time experience as a security engineer, with a focus on security monitoring, incident response, and threat hunting. * Programming Skills: Proficiency in developing tools and automation using common DevOps toolsets, with a preference for Python. * Deep Technical Knowledge: Practical understanding of common attacks, adversary tactics, techniques, and procedures (TTPs), and MITRE ATT&CK principles. * Analytical Proficiency: Hands-on experience with large-scale data analysis, modeling, and correlation. * Cross-Platform Forensics: Expertise in operating systems internals and forensics for macOS, Windows, and Linux. * Platform Management: Experience managing and working with current SIEM and SOAR platforms. * Log Analysis Expertise: Ability to analyze endpoint, network, and application logs for anomalous events., Analysis Skills, Automation, Case Management, Cloud Computing, Computer Programming, Computer Security, Continuous Improvement, Data Analysis, Data Collection, Data Modeling, DevOps, Establish Priorities, Finance, Forensic Science, Hunting, Incident Response, Internet Security, Linux Operating System, Mac Operating System, Medical Genetics, Microsoft Product Family, Microsoft Windows Operating System, Military, Multiplatform/Cross-Platform, Network Performance/Analysis, Onboarding, Operating Systems, Procedure Development, Process Improvement, Production Systems, Python Programming/Scripting Language, Security Attacks, Security Information and Event Management (SIEM), Security Monitoring, Slack, Strategic Planning, System Lifecycle, Systems/Internals Programming, Telemetry ## Description We are looking for a hands-on Senior Detection and Response Security Engineer to be a critical force in driving Ripplings security program forward. This role offers the opportunity to revolutionize our detection and response strategies through advanced automation, strategic data collection, and innovative detection logic. You will collaborate with our talented security team and broader engineering org to elevate and enhance our security efforts. What Youll Do * Innovative Tool Development: Design and implement sophisticated tools to gather security telemetry data from cloud production systems, enhancing our ability to detect and respond to threats. * Automation and Optimization: Lead the charge in automating workflows, significantly improving the speed and accuracy of security event identification and response. * Detection Rule Development: Build and refine advanced detection rules to protect against emerging cyber threats. * Process and Technology Enhancement: Drive continuous improvement of processes, procedures, and technologies used for detection and response. * Strategic Development: Spearhead advancements in Security Incident and Event Management (SIEM), Case Management, and Automation frameworks. * Comprehensive Documentation: Develop detailed runbooks and incident playbooks for both new and existing detections. * Proactive Threat Hunting: Lead threat hunting initiatives, uncovering potential attack vectors and integrating findings into security controls. ## Related Videos - [Stack Overflow: Community and AI](https://www.wearedevelopers.com/videos/600-stack-overflow-community-and-ai) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [#90DaysOfDevOps - The DevOps Learning Journey](https://www.wearedevelopers.com/videos/548-90daysofdevops-the-devops-learning-journey) - [Leading Through Stagility: Human Capital Trends That Redefine Work](https://www.wearedevelopers.com/videos/1717-leading-through-stagility-human-capital-trends-that-redefine-work) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)