AdTechTalent
Engineering2 months agoRemote

Liftoff Mobile

Security Engineer, Detection & Response

security engineeringSIEMdetection engineeringincident responsesecurity automationAI-augmented SOCcloud securityAWSendpoint forensicsCI/CDmobile adtechsecurity operations

Key details

Salary

Not specified

Employment type

Full-time

Seniority

Senior

Years experience

5-10

Location

Remote, United States

Full job description

Liftoff is seeking a senior security engineer to lead and enhance its detection and response function. The role involves managing the SIEM platform (Panther), adopting AI-augmented SOC tools, triaging security alerts, leading incident response, building automation tooling, and partnering with engineering teams on security initiatives. Candidates must have 5+ years of relevant security engineering or operations experience, hands-on SIEM operation skills, coding ability for security automation, incident response leadership, strong technical writing, and excellent communication. The position is full-time, remote within the US, and includes participation in an on-call rotation. Salary ranges from $172,000 to $240,000 depending on location. Benefits include competitive salaries, equity, medical coverage, wellness stipends, and other perks.

What you'll do

  • Own day-to-day operation of Liftoff's SIEM (Panther) — log source ingestion, detection content, and the alert investigation pipeline
  • Lead Liftoff's adoption of AI-augmented SOC tooling as a multi-year modernization investment
  • Triage incoming security alerts and drive timely investigation and remediation with stakeholders across Engineering and IT
  • Lead incident response — investigation, containment, and post-incident review — and mature processes and runbooks
  • Build tooling and automation that detects active threats, enriches alerts, and reduces manual investigation toil
  • Partner with Engineering and IT to make detection and response self-service where possible
  • Close the feedback loop between offensive findings and detection coverage
  • Partner across the security team on cloud, infrastructure, and application security work
  • Participate in the Security team's on-call rotation and incident response

Requirements

  • 5+ years in security engineering, security operations, detection engineering, or software engineering with a security focus
  • Hands-on production SIEM operation — onboarding log sources, writing and maintaining detection content, and triaging alerts
  • Write production-quality code for security automation and detection-as-code
  • Experience leading or substantially contributing to security incident response
  • Strong technical writing — design docs, runbooks, and post-incident reviews
  • Demonstrated judgment in prioritizing security work using a risk-based approach
  • Ability to quickly navigate large, unfamiliar codebases and reason about complex engineering systems
  • Excellent verbal communication
  • Willing to participate in an on-call rotation

Tech stack

SIEMPantherAI-augmented SOC toolingProphet SecurityDropzone AIsecurity automationdetection-as-codecloud environmentsAWSendpoint forensicsCI/CD pipelines

Benefits

Competitive salariesEquityMedical coverageWellness stipendsAdditional perks based on country of residence

Apply now

Ready to take the next step in your career? Click the button below to continue to the application process.

Similar jobs

More roles worth a look

Related opportunities based on specialty and working model so candidates can keep momentum.