You will design and tune security detections, lead complex incident response investigations, build security automation workflows, and maintain SIEM and security data pipelines. You will improve detection coverage and response playbooks, use AI coding tools for automation, collaborate through design reviews, and serve as a technical reference for less senior engineers.
Responsibilities
Design and tune detections across Google Security Operations
Lead complex and high-severity incident response investigations from triage through remediation
Build and maintain security automation workflows in tools such as Tines
Own and improve SIEM and security data pipeline health
Improve log source coverage, parsing, normalization, and alert quality
Develop cross-functional relationships to drive adoption of security tooling
Monitor the evolving threat landscape and improve detection coverage and response playbooks
Use AI coding tools such as Claude Code or OpenAI Codex for detection engineering and automation
Participate in design reviews
Break complex detection challenges into simple systems and repeatable processes
Requirements
7+ years of experience in security operations, detection engineering, or incident response
Advanced knowledge of security principles, tools, and blue team practices
Advanced proficiency in at least one scripting language
Experience using REST APIs to automate security operations
Experience with SIEM platforms and security data pipelines
Knowledge of log source onboarding, parsing, and alert tuning
Hands-on experience with EDR, identity, email security, and network security tooling
Ability to write technical specifications
Ability to identify project risks and reason about trade-offs
Ability to break down complex projects into simple systems and repeatable processes
Ability to participate in design reviews and provide constructive feedback
Problem-solving skills for ambiguous or high-pressure situations
Ability to coach, motivate, and empower others
Benefits
Professional development budget
Flexible in-office schedule with teams deciding which 10+ days per month to work in the office
Team offsites
Team bonding activities
Happy hours
Physical healthcare coverage
Mental healthcare coverage
Retirement benefits
Family-forming benefits
Family support benefits
Employee giving match
Mobile phone stipend
R&R days
Wellness reimbursement
Weekly onsite and virtual wellness programming
Generous vacation policy
Parental leave
Family planning benefits
Catered lunches
Fully stocked kitchens with premium snacks and beverages