Threat Detection and Response Engineer

Whatnot

$120K — $145K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, Information Security, or equivalent work experience
  • 5+ years experience in cyber incident response or related field in a large enterprise
  • Strong understanding of SOAR, EDR, NDR, and SIEM technologies
  • Familiarity with multiple Cloud Service Providers (AWS, GCP)
  • Excellent written communication skills
  • Availability for on-call responsibilities

Responsibilities

  • Apply knowledge of Incident Response concepts and principles
  • Collaborate with Information Security and business partners for rapid incident response
  • Act as escalation point within the Incident Response team for cyber incidents
  • Identify detection opportunities and create supporting playbooks
  • Analyze threat intelligence to mitigate risks and maintain threat landscape awareness
  • Report SOC health via metrics and risk indicators
  • Provide Incident Response support for security incident containment and eradication

Benefits

  • Flexible Time Off Policy and Company-wide Holidays including seasonal breaks
  • Health Insurance options: Medical, Dental, Vision
  • Work From Home Support: home office setup allowance and monthly cell phone/internet allowance
  • Care benefits: wellness allowance, childcare allowance, and family planning assistance
  • Retirement: 401k with employer match and international pension plans
  • Monthly allowance to use the company app as both buyer and seller
  • Parental Leave: 16 weeks of paid leave and gradual return to work options
Full Job Description
Role
  • Apply comprehensive knowledge and a thorough understanding of Incident Response concepts, principles, and technical capabilities
  • Collaborate across Information Security and business partners to ensure effective, precise, and rapid response
  • Act as the point of escalation from within the Incident Response team to drive all cyber incidents
  • Identify new detection opportunities, create playbooks, and support new technology implementations to defend against evolving threats
  • Maintain awareness and understanding of the current threat landscape. Analyze threat intelligence with the aim to mitigate potential risks
  • Report the overall health of the SOC via metrics, OKRs, and risk indicators to leadership
  • Provide Incident Response (IR) support when analysis suspects security incidents to help contain and eradicate threats;
    • Perform incident triage, incident response, and forensic investigations across endpoints and cloud environments
    • Conduct technical examinations of computer-based evidence including logs, packet captures, SIEM & IDS events, disk forensics, malware analysis, and more
    • Document incidents from initial detection through final resolution, and present the findings
  • Investigate, document, and report on cyber security issues
  • Create and continuously improve standard processes, operating procedures, and incident response playbooks
You

Curious about who thrives at Whatnot? We've found that low ego, a growth mindset, and leaning into action and high impact goes a long way here.

As our next Threat Detection and Response Engineer, you should have a minimum of 5+ years of relevant experience in security, preferably in a large enterprise environment, plus:
  • Bachelor's degree in Computer Science, Information Security, a related field, or equivalent work experience.
  • 5+ years' experience in cyber incident response, or a similar cyber field, including experience with security principles, and defense-in-depth techniques
  • Experience and understanding of security concepts, SOAR(Tines), EDR, NDR and SIEM (Chronicle) technologies
  • Experience with multiple Cloud Service Providers (AWS, GCP)
  • Excellent written communication skills with the ability to document, communicate, and report security incidents, as well as the status of the implementation and effectiveness of cybersecurity controls with product and business leaders
  • Expected to perform on-call duties
Benefits
  • Flexible Time off Policy and Company-wide Holidays (including a spring and winter break)
  • Health Insurance options including Medical, Dental, Vision
  • Work From Home Support
    • Home office setup allowance
    • Monthly allowance for cell phone and internet
  • Care benefits
    • Monthly allowance for wellness
    • Annual allowance towards Childcare
    • Lifetime benefit for family planning, such as adoption or fertility expenses
  • Retirement; 401k offering for Traditional and Roth accounts in the US (employer match up to 4% of base salary) and Pension plans internationally
  • Monthly allowance to dogfood the app
    • All Whatnauts are expected to develop a deep understanding of our product. We're passionate about building the best user experience, and all employees are expected to use Whatnot as both a buyer and a seller as part of their job (our dogfooding budget makes this fun and easy!).
  • Parental Leave
    • 16 weeks of paid parental leave + one month gradual return to work *company leave allowances run concurrently with country leave requirements which take precedence.

Similar Jobs

More Jobs at Whatnot

More Information Technology Jobs

Find similar Threat Detection and Response Engineer jobs: