Miro

Senior Threat Detection Engineer - Intelligence

Miro$120K — $145K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years in security, with 2+ years specifically in threat detection or intelligence
  • Experience in cloud-native SaaS environments, preferably AWS
  • Strong investigation skills with a focus on attacker behavior analysis
  • Proficiency in Python for automating security workflows
  • Experience with SQL or similar for querying large datasets
  • Familiarity with cloud security telemetry and detection platforms
  • Solid understanding of incident response and digital forensics

Responsibilities

  • Track emerging threats and attacker techniques relevant to cloud and SaaS
  • Convert threat intelligence into detection strategies and attack hypotheses
  • Design context-aware detections across cloud, identity, and application layers
  • Lead investigations from initial signal to root cause and remediation
  • Guide response as a technical lead during security incidents
  • Analyze trends in detection and investigation to enhance preventative measures
  • Collaborate with engineering teams to elevate security maturity

Benefits

  • Equity participation
  • Wellbeing benefit
  • Work from home equipment allowance
  • Annual learning and development stipend
  • Supportive and connected work environment
  • Join a diverse team for better collaboration
Full Job Description
We're looking for a Senior Threat Detection & Intelligence Engineer to help us understand how adversaries operate, detect meaningful threats early, and lead investigations when it matters most. This role sits at the intersection of threat intelligence, detection engineering, and incident investigation with an engineering-first mindset.

If you enjoy turning messy signals into clear attacker narratives, this role is for you.
What You'll Do
  • Track emerging threats, attacker techniques, and campaigns relevant to cloud and SaaS
  • Turn threat intelligence into practical detection strategies and attack hypotheses
  • Design and maintain context-aware detections across cloud, identity, and application layers
  • Lead deep investigations, from first signal to root cause and remediation
  • Act as a technical lead during security incidents, guiding response and decision-making
  • Analyze detection and investigation trends to improve preventative controls
  • Partner with engineering teams to raise security maturity across the organization
Who This Role Is For

This role is a great fit if you:
  • Think inattacker TTPs, not just alerts or dashboards
  • Enjoy investigating ambiguous signals and turning them into clear conclusions
  • Have experience in threat intelligence, threat hunting, or security investigations
  • Care about why something is happening, not just what fired
  • Want to build detection programs that evolve with the threat landscape
  • Are comfortable explaining technical risk in business terms

This role is not a fit if you're mainly focused on compliance, policy writing, or managing vendors.
What We're Looking For
  • 5-7 years in security, with 2+ years in threat detection, threat intelligence, or investigations
  • Experience in cloud-native SaaS environments (AWS strongly preferred)
  • Strong investigation skills and ability to analyze attacker behavior
  • Experience using threat intelligence to inform detection and response
  • Proficiency in Python and comfort automating security workflows
  • Experience querying large datasets (SQL or similar)
  • Familiarity with cloud security telemetry, logging, and detection platforms
  • Solid understanding of incident response and digital forensics
  • Experience with Infrastructure as Code (Terraform or similar)
Why You'll Love This Role
  • You'll help define how threat intelligence is used, not just consume it
  • You'll work on real attacker behavior, not checkbox security
  • You'll have room to build, experiment, and improve detection capabilities
  • You'll partner closely with engineers who value security as an engineering problem

What's in it for you

We want you to feel supported, connected, and ready to grow. Our global benefits package generally includes equity, a wellbeing benefit, a WFH equipment allowance, and an annual Learning & Development stipend. Join a diverse team where you can do your best work. Full benefits may differ per location. If you would like to learn more about location-specific benefits, please refer to our Global Miro benefits board.

Recruiter: #LI-MH1

About Miro

Miro is a visual collaboration platform used by teams to create, collaborate, and centralize communication across any device. The company was founded in 2011 by Andrey Khusid and Oleg Shardin and was formerly known as RealtimeBoard. Miro has over 5 million users and is used by companies such as Netflix, Twitter, and Airbnb. The platform allows teams to collaborate in real-time on a virtual whiteboard, share files, and integrate with other tools such as Slack and Trello. Miro has raised over $170 million in funding and is headquartered in Boston, Massachusetts.
Learn more about Miro
Size
500 employees
Industry
Founded
2012

Similar Jobs

More Jobs at Miro

More Information Technology Jobs

Find similar Senior Threat Detection Engineer - Intelligence jobs: