5+ years of relevant experience in security, particularly in incident response or similar fields
Bachelor's degree in Computer Science, Information Security, or related field, or equivalent work experience
Familiarity with SOAR, EDR, NDR, and SIEM technologies
Experience with multiple Cloud Service Providers like AWS and GCP
Excellent written communication skills, capable of reporting on cybersecurity incidents and controls
Willingness to perform on-call duties when required
Responsibilities
Apply comprehensive knowledge of Incident Response concepts and technical capabilities
Collaborate with Information Security and business partners for effective response
Act as the point of escalation within the Incident Response team for cyber incidents
Identify detection opportunities, create playbooks, and support technology implementations
Maintain awareness of the threat landscape and analyze threat intelligence
Report on the health of the SOC through metrics and risk indicators
Provide Incident Response (IR) support and perform forensic investigations
Benefits
Flexible Time Off Policy and company-wide holidays, including dedicated spring and winter breaks
Health Insurance options including medical, dental, and vision
Work From Home Support including a home office setup allowance and monthly allowances for cell phone and internet
Care benefits including monthly wellness allowance, childcare allowance, and lifetime family planning benefits
Retirement options with 401k employer match and international pension plans
Monthly allowance to 'dogfood' the app to enhance personal understanding of the product
16 weeks of paid parental leave plus one month of gradual return to work
Full Job Description
Role
Apply comprehensive knowledge and a thorough understanding of Incident Response concepts, principles, and technical capabilities
Collaborate across Information Security and business partners to ensure effective, precise, and rapid response
Act as the point of escalation from within the Incident Response team to drive all cyber incidents
Identify new detection opportunities, create playbooks, and support new technology implementations to defend against evolving threats
Maintain awareness and understanding of the current threat landscape. Analyze threat intelligence with the aim to mitigate potential risks
Report the overall health of the SOC via metrics, OKRs, and risk indicators to leadership
Provide Incident Response (IR) support when analysis suspects security incidents to help contain and eradicate threats;
Perform incident triage, incident response, and forensic investigations across endpoints and cloud environments
Conduct technical examinations of computer-based evidence including logs, packet captures, SIEM & IDS events, disk forensics, malware analysis, and more
Document incidents from initial detection through final resolution, and present the findings
Investigate, document, and report on cyber security issues
Create and continuously improve standard processes, operating procedures, and incident response playbooks
You
Curious about who thrives at Whatnot? We've found that low ego, a growth mindset, and leaning into action and high impact goes a long way here.
As our next Threat Detection and Response Engineer, you should have a minimum of 5+ years of relevant experience in security, preferably in a large enterprise environment, plus:
Bachelor's degree in Computer Science, Information Security, a related field, or equivalent work experience.
5+ years' experience in cyber incident response, or a similar cyber field, including experience with security principles, and defense-in-depth techniques
Experience and understanding of security concepts, SOAR(Tines), EDR, NDR and SIEM (Chronicle) technologies
Experience with multiple Cloud Service Providers (AWS, GCP)
Excellent written communication skills with the ability to document, communicate, and report security incidents, as well as the status of the implementation and effectiveness of cybersecurity controls with product and business leaders
Expected to perform on-call duties
Benefits
Generous Holiday and Time off Policy
Health Insurance options including Medical, Dental, Vision
Work From Home Support
Home office setup allowance
Monthly allowance for cell phone and internet
Care benefits
Monthly allowance for wellness
Annual allowance towards Childcare
Lifetime benefit for family planning, such as adoption or fertility expenses
Retirement; 401k offering for Traditional and Roth accounts in the US (employer match up to 4% of base salary) and Pension plans internationally
Monthly allowance to dogfood the app
All Whatnauts are expected to develop a deep understanding of our product. We're passionate about building the best user experience, and all employees are expected to use Whatnot as both a buyer and a seller as part of their job (our dogfooding budget makes this fun and easy!).
Parental Leave
16 weeks of paid parental leave + one month gradual return to work *company leave allowances run concurrently with country leave requirements which take precedence.
Please note: Whatnot will only contact you through official [redacted].com email addresses. If you see an email impersonating a Whatnot recruiter, please disregard and report it as spam.