AdTechTalent
Engineering26 days agoRemote

Liftoff Mobile

Security Engineer, Detection & Response

security engineeringSIEMdetection engineeringincident responsesecurity automationAI-augmented SOCcloud securityAWSendpoint forensicsCI/CDmobile adtechsecurity operations

Key details

Salary

Not specified

Employment type

Full-time

Seniority

Senior

Years experience

5-10

Location

Remote, United States

Full job description

Liftoff is seeking a senior security engineer to lead and enhance its detection and response function. The role involves managing the SIEM platform (Panther), adopting AI-augmented SOC tools, triaging security alerts, leading incident response, building automation tooling, and partnering with engineering teams on security initiatives. Candidates must have 5+ years of relevant security engineering or operations experience, hands-on SIEM operation skills, coding ability for security automation, incident response leadership, strong technical writing, and excellent communication. The position is full-time, remote within the US, and includes participation in an on-call rotation. Salary ranges from $172,000 to $240,000 depending on location. Benefits include competitive salaries, equity, medical coverage, wellness stipends, and other perks.

What you'll do

  • Own day-to-day operation of Liftoff's SIEM (Panther) — log source ingestion, detection content, and the alert investigation pipeline
  • Lead Liftoff's adoption of AI-augmented SOC tooling as a multi-year modernization investment
  • Triage incoming security alerts and drive timely investigation and remediation with stakeholders across Engineering and IT
  • Lead incident response — investigation, containment, and post-incident review — and mature processes and runbooks
  • Build tooling and automation that detects active threats, enriches alerts, and reduces manual investigation toil
  • Partner with Engineering and IT to make detection and response self-service where possible
  • Close the feedback loop between offensive findings and detection coverage
  • Partner across the security team on cloud, infrastructure, and application security work
  • Participate in the Security team's on-call rotation and incident response

Requirements

  • 5+ years in security engineering, security operations, detection engineering, or software engineering with a security focus
  • Hands-on production SIEM operation — onboarding log sources, writing and maintaining detection content, and triaging alerts
  • Write production-quality code for security automation and detection-as-code
  • Experience leading or substantially contributing to security incident response
  • Strong technical writing — design docs, runbooks, and post-incident reviews
  • Demonstrated judgment in prioritizing security work using a risk-based approach
  • Ability to quickly navigate large, unfamiliar codebases and reason about complex engineering systems
  • Excellent verbal communication
  • Willing to participate in an on-call rotation

Tech stack

SIEMPantherAI-augmented SOC toolingProphet SecurityDropzone AIsecurity automationdetection-as-codecloud environmentsAWSendpoint forensicsCI/CD pipelines

Benefits

Competitive salariesEquityMedical coverageWellness stipendsAdditional perks based on country of residence

Apply now

This MVP uses a placeholder application flow. In production, this section can connect to an external apply URL or a native application form.

Similar jobs

More roles worth a look

Related opportunities based on specialty and working model so candidates can keep momentum.