Security Engineer, Insider Threat

DoorDash

$130K — $192K *
US-AnywhereRemote in United States
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 2-5+ years of experience in insider threat investigations, incident response, or federal law enforcement
  • Strong verbal and written communication skills with experience presenting findings to stakeholders
  • Experience conducting ethical, complex investigations in partnership with Legal, HR, and cross-functional stakeholders
  • Hands-on experience with insider risk and security tooling including SIEM/SOAR platforms
  • Proficiency querying large-scale datasets (e.g. SQL) and familiarity with log sources
  • Familiarity with scripting and automation in cloud and distributed environments

Responsibilities

  • Conduct investigations into anomalous events and potential insider risks
  • Support onboarding and improvement of custom tooling for detecting anomalous behaviors
  • Maintain a use case library to support detection creation and scalability
  • Establish standard operating procedures for cross-team investigation collaboration
  • Develop agentic and AI-assisted workflows for scaling investigations and detections
  • Prepare investigative reports and presentations for leadership
  • Engage with external law enforcement related to investigations and maintain chain-of-evidence

Benefits

  • 401(k) plan with employer matching
  • 16 weeks of paid parental leave
  • Wellness benefits and commuter benefits match
  • Medical, dental, and vision benefits
  • 11 paid holidays and paid sick leave
  • Disability and basic life insurance
  • Family-forming assistance and a mental health program
Full Job Description
About the Role

This role will be responsible for conducting investigations into anomalous events and behaviors that may pose risk to the company, while contributing to the design and development of detection and investigation capabilities to scale those efforts.. This is a critical role that will analyze threat intelligence, develop use cases, conduct data analysis, execute complex investigations, drive detection engineering, write reports, advise on preventative controls, and collaborate with multiple internal teams to ensure coordinated investigation and response efforts.

You will report into the Director, Security Operations under the Chief Information Security Officer.
You're excited about this opportunity because you will...
  • Use monitoring and detection platforms to investigate anomalous activity for potential insider risk, and develop detections to proactively identify similar behaviors at scale
  • Support the onboarding, implementation, and improvement of custom tooling designed to alert on anomalous behaviors
  • Create and maintain a use case library to inform detections, and develop corresponding playbooks, leveraging version-controlled workflows (e.g., Git) to ensure consistency and scalability
  • Create standard operating procedures and cross-functional processes to govern investigation and response collaboration between teams
  • Leverage and help develop agentic and AII-assisted workflows to automate and scale insider threat investigations and detection capabilities
  • Prepare investigative reports and briefings for leadership
  • Maintain chain-of-evidence and engage with External Law Enforcement, when required
  • Lead training or other education and awareness opportunities for the enterprise as required
We're excited about you because...
  • 2-5+ years of experience in insider threat investigations, incident response, or federal law enforcement
  • Strong verbal and written communication skills with experience presenting findings to stakeholders
  • Experience conducting ethical, complex investigations in partnership with Legal, HR, and cross-functional stakeholders
  • Hands-on experience with insider risk and security tooling including SIEM/SOAR platforms, UEBA, UAM, and DLP tools
  • Proficiency querying large-scale datasets to support investigations (e.g. SQL) and familiarity with log sources, data pipelines, and parsing
  • Familiarity with scripting and automation, and experience working in cloud and distributed environments using version control


We expect this position to be filled by 7/7/26.

Compensation

The successful candidate's starting pay will fall within the pay range listed below and is determined based on job-related factors including, but not limited to, skills, experience, qualifications, work location, and market conditions. Base salary is localized according to an employee's work location. Ranges are market-dependent and may be modified in the future.

In addition to base salary, the compensation for this role includes opportunities for equity grants. Talk to your recruiter for more information.

DoorDash cares about you and your overall well-being. That's why we offer a comprehensive benefits package to all regular employees, which includes a 401(k) plan with employer matching, 16 weeks of paid parental leave, wellness benefits, commuter benefits match, paid time off and paid sick leave in compliance with applicable laws (e.g. Colorado Healthy Families and Workplaces Act). DoorDash also offers medical, dental, and vision benefits, 11 paid holidays, disability and basic life insurance, family-forming assistance, and a mental health program, among others.

To learn more about our benefits, visit our careers page here.

See below for paid time off details:
  • For salaried roles: flexible paid time off/vacation, plus 80 hours of paid sick time per year.
  • For hourly roles: vacation accrued at about 1 hour for every 25.97 hours worked (e.g. about 6.7 hours/month if working 40 hours/week; about 3.4 hours/month if working 20 hours/week), and paid sick time accrued at 1 hour for every 30 hours worked (e.g. about 5.8 hours/month if working 40 hours/week; about 2.9 hours/month if working 20 hours/week).


The national base pay range for this position within the United States, including Illinois and Colorado.

$130,600-$192,000 USD

Similar Jobs

More Jobs at DoorDash

More Information Technology Jobs

Find similar Security Engineer, Insider Threat jobs: