Talent.com
Security Engineer - Detection & Response

Security Engineer - Detection & Response

NerdyPhoenix, AZ, US
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Job Description

Job Description

Overview :

You are an AI-powered Security Engineer responsible for identifying and responding to malicious or suspicious activity across our environment with speed and confidence. This role leads the engineering work behind these capabilities—designing scalable systems to detect threats and trigger automated responses. You will integrate AI into detection and response workflows to accelerate rule development, streamline enrichment, and reduce investigation time, with human validation ensuring precision and alignment.

As a cloud-first SaaS company relying on a broad portfolio of SaaS tools, we generate large volumes of event data across identity, endpoint, infrastructure, and collaboration systems. The scale and complexity of this telemetry demand improved detection engineering and automation.

This is a platform engineering role focused on building and operating a modern detection pipeline integrated with security automation workflows. You will use Python, structured data, and widely adopted frameworks for mapping adversary behaviors and response logic to drive faster, more effective security outcomes. This role is not a support or triage position but a strategic contributor to our security infrastructure.

About Nerdy :

At Nerdy (NYSE : NRDY) - the company behind Varsity Tutors - we're redrawing the blueprint of learning. Our Live + AI™ platform fuses real-time human expertise with proprietary generative-AI systems, setting a new bar for measurable academic impact at global scale. We recruit the kind of technologists and operators you'd bet on as solo founders - people who turn ambiguous problems into shipping code, iterate faster than markets move, and compound their advantage with every data point. In an era where great employees can deliver 10-times the leverage of the merely good, we back those who play to win.

Fortune favors the bold. Join us.

How we compete :

  • AI-Native at every level

From the CEO to day-one hires, everyone builds and ships with generative AI. If you're not wielding AI, you're not done.

  • Entrepreneurial velocity
  • Move at founder speed, prototype in hours, and measure in real user outcomes. Slow teams die.

  • Free-market rigor
  • Ideas rise or fall on merit and results - no committees, no politics, no cap on upside.

  • Full-stack ownership
  • You design, build, and run what you ship; accountability is a feature, not a bug.

  • Reward for contribution
  • Pay rises with impact, not years. Outstanding results earn outsized rewards. We evaluate both what you achieve and how you achieve it : living our leadership principles and using AI effectively are formally measured and rewarded.

  • Relentless exploration
  • Push the frontier of generative AI in live learning and - because only the paranoid survive - questioning every legacy assumption along the way.

  • Is Apolitical
  • You stay focused on mission-aligned outcomes, not distractions or unrelated causes.

    If you're a technically minded builder who thrives on open competition, personal responsibility, and the chance to redefine how the world learns - while continually stretching the limits of what generative AI can do - come do the most ambitious and rewarding work of your career here. Learn more at nerdy.com.

    Nerdy's shareholder letters below explain our latest products and strategy :

  • Q2-2025 Shareholder Letter
  • Q1-2025 Shareholder Letter
  • Q4-2024 Shareholder Letter
  • Qualifications : Required :

  • 5+ years in security engineering, detection engineering, or threat-focused automation roles.
  • Strong knowledge of MITRE ATT&CK framework, detection logic, and IOC / IOA patterns.
  • Familiarity with MITRE D3FEND for defense-in-depth and response playbook design.
  • Hands-on experience designing, deploying, or managing SIEM platforms (vendor-neutral mindset preferred).
  • Strong Python scripting skills for integrations, enrichment logic, and playbook development.
  • Experience working with structured data formats such as JSON, YAML, logs, and metrics.
  • Familiarity with SaaS logging constraints and cloud-native telemetry, preferably AWS.
  • Understanding of event-driven architecture and API-driven integrations.
  • Demonstrated ability to use AI tools to accelerate scripting, generate or translate detection rules, or assist with enrichment workflows, always with human validation for accuracy.
  • Comfortable working autonomously and cross-functionally to deliver reliable detection outcomes.
  • Preferred :

  • Experience building or maintaining detection pipelines using Elastic, Panther, or similar platforms.
  • Experience with detection-as-code practices, managing detection logic as version-controlled code with testing and CI / CD.
  • Experience writing detection rules in formats such as Sigma, including contributing to open-source or internal detection libraries. E
  • Experience with MITRE frameworks : ATT&CK (adversary techniques), D3FEND (defensive techniques), and ATLAS (AI-related attacks).
  • Experience with OWASP guidance on application telemetry and detection (e.g., AppSensor, Logging Cheat Sheet). U
  • Responsibilities :

  • Implement and operate detection systems, including a scalable cloud-native SIEM platform supporting ingestion from identity, endpoint, SaaS, and infrastructure sources.
  • Develop and maintain detection coverage maps aligned to MITRE ATT&CK techniques, threat modeling, and incident history.
  • Leverage AI to accelerate detection rule creation, enrichment, and triage insights, and conduct AI-assisted threat hunting to surface novel behaviors and codify them as deterministic detections.
  • Build detection observability tools and dashboards to monitor rule effectiveness, alert volumes, and system performance.
  • Design and implement SOAR workflows and automated response playbooks with built-in observability, rollback, and reliability controls.
  • Leverage AI within SOAR for adaptive enrichment, workflow generation, and documentation, while continuously tuning automation based on incident outcomes.
  • Lead incident response activities as part of the incident commander rotation, and drive continuous improvement of runbooks and playbooks using lessons learned and AI support for timelines and summaries.
  • Collaborate cross-functionally with engineering and business stakeholders to embed detection and response into system design, operational processes, and organizational priorities.
  • Unlock Your Full Potential at Nerdy :

    At Nerdy, you'll earn your success through meritocracy and exceptional outcomes. Our benefits reward performance and initiative :

    Competitive Compensation : Market-leading salary paired with clear promotion pathways - become an owner in our success.

    Retirement Made Simple : 401(k) plan with company match and immediate vesting.

    A Remote-First Culture : We embrace flexibility across time zones and working styles to attract top talent and meet learners where they are.

    Flexible Time Off : Recharge on your terms, ensuring maximum productivity.

    Continuous Learning : Access an all-inclusive learning membership for you and your household, including 1 : 1 tutoring hours, unlimited on-demand classes, and our full suite of learning products and services.

    Supercharge with AI : Leverage cutting-edge AI tools to accelerate your workflow.

    You're Covered : Medical, dental, vision, life, STD & LTD plans plus strong maternity, paternity, and adoption leaves - numerous options for you and your family.

    The Bottom Line :

    If you're driven by impact, energized by ownership, and excited to help shape what's next, you'll thrive here. We move fast, think big, and reward those who deliver. This isn't a traditional corporate environment - it's a place to do the most meaningful work of your career.

    serp_jobs.job_alerts.create_a_job

    Security Engineer • Phoenix, AZ, US

    Job_description.internal_linking.related_jobs
    Network Security Engineer | Palo Alto

    Network Security Engineer | Palo Alto

    UltraViolet CyberPhoenix, Arizona, United States, 85003
    serp_jobs.job_card.permanent
    Network Security Engineer | Palo Alto.UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security operations solutions.Founded an...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    Practice Lead, AI Information Security

    Practice Lead, AI Information Security

    TevoraScottsdale, Arizona, United States, 85250
    serp_jobs.job_card.full_time
    Practice Lead, AI Information Security.Practice Lead, AI Information Security.If you haven't heard of Tevora, it's because we've done our job!. Tevora is a tight-knit community of professionals with...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Border Patrol Agent

    Border Patrol Agent

    U.S. Customs and Border ProtectionCoolidge, AZ, United States
    serp_jobs.job_card.full_time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    1-20- Security Engineer

    1-20- Security Engineer

    Focused HR SolutionsPhoenix, Arizona, United States
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    This job is hybrid and this will be a mix of remote and on site in Phoenix AZ.Our direct client has an opening for a Security Engineer 1323 .Please send us your rate ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Cloud Security Engineer (Scottsdale)

    Senior Cloud Security Engineer (Scottsdale)

    Irvine Technology CorporationScottsdale, AZ, US
    serp_jobs.job_card.full_time +2
    Senior Cloud Security Engineer.We are seeking a Senior Cloud Security Engineer to join our client for a full-time, direct hire role that will be hybrid in Scottsdale, AZ. This role will design, depl...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    Security Operations Center Lead

    Security Operations Center Lead

    CarvanaTempe, AZ
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    About Carvana If you like disrupting the norm and are looking to join a company revolutionizing an industry then you will LOVE what Carvana has done for the car bu...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    Security Lead

    Security Lead

    Riot Hospitality GroupScottsdale, AZ, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Headquartered in Scottsdale, Arizona, Riot Hospitality Group is a premier, national hospitality management company dedicated to evolving the typical restaurant landscape into one that provides uniq...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Target Security Specialist

    Target Security Specialist

    TargetMesa, AZ, US
    serp_jobs.job_card.full_time
    Working at Target means helping all families discover the joy of everyday life.We bring that vision to life through our values and culture. Assets protection (AP) teams function to keep our guests, ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Security Professional - Access Control

    Security Professional - Access Control

    Allied Universal®Waddell, AZ, US
    serp_jobs.job_card.full_time +1
    Allied Universal®, North America’s leading security and facility services company, offers rewarding careers that provide you a sense of purpose. While working in a dynamic, welcoming, and ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior-Level Product Engineer - Battery Management Systems

    Senior-Level Product Engineer - Battery Management Systems

    1010 Analog Devices Inc.East Elliot, AZ, United States
    serp_jobs.job_card.full_time +1
    NASDAQ : ADI ) is a global semiconductor leader that bridges the physical and digital worlds to enable breakthroughs at the Intelligent Edge. ADI combines analog, digital, and software technologie...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Customs and Border Protection Officer - Experienced (GS9)

    Customs and Border Protection Officer - Experienced (GS9)

    U.S. Customs and Border ProtectionFountain Hills, AZ, United States
    serp_jobs.job_card.full_time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Security Specialist - Intermediate Level

    Security Specialist - Intermediate Level

    USAAPhoenix, AZ, US
    serp_jobs.job_card.full_time
    Security Specialist - Intermediate Level.At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice.We ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    Wealth Security Specialist

    Wealth Security Specialist

    The Strickland GroupMesa, AZ, US
    serp_jobs.job_card.full_time +1
    serp_jobs.filters_job_card.quick_apply
    Wealth Security Specialist – Build, Lead, and Innovate!.Are you a strategic thinker with a passion for solving problems, optimizing systems, and driving business growth?.We are looking for am...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    Security Specialist

    Security Specialist

    Security Industry Specialists, Inc.Gilbert, Arizona, United States
    serp_jobs.job_card.part_time
    serp_jobs.filters_job_card.quick_apply
    The Security Specialists, under the direct supervision of the Shift Supervisor, ensures SIS standards and policies are met in overall field services, operations and functions in assigned area such ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Customs and Border Protection Officer

    Customs and Border Protection Officer

    U.S. Customs and Border ProtectionMaricopa, AZ, United States
    serp_jobs.job_card.full_time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Cloud Security Engineer

    Senior Cloud Security Engineer

    Irvine Technology CorporationScottsdale, AZ, US
    serp_jobs.job_card.full_time +1
    Senior Cloud Security Engineer.We are seeking a Senior Cloud Security Engineer to join our client for a full-time, direct hire role that will be hybrid in Scottsdale, AZ. This role will design, depl...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Marine Interdiction Agent

    Marine Interdiction Agent

    U.S. Customs and Border ProtectionBiltmore, TN, United States
    serp_jobs.job_card.full_time
    Air and Marine Operations (AMO), a component of U.Customs and Border Protection (CBP) offers those with Merchant Mariner Credentials the exceptional opportunity of a career in law enforcement worki...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    Information Security Engineer

    Information Security Engineer

    MetroSysPhoenix, AZ, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    MetroSys is seeking a skilled Information Security Engineer to support a range of InfoSec initiatives, tool maintenance, and day-to-day security operations for our enterprise client.This role requi...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    Cybersecurity Engineer

    Cybersecurity Engineer

    MetroSysPhoenix, AZ, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    MetroSys is seeking a Cybersecurity Engineer to support a client in Phoenix with immediate implementation efforts while a full-time Sr. Security Engineer role is being recruited.This role will focus...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Air Interdiction Agent

    Air Interdiction Agent

    U.S. Customs and Border ProtectionCoolidge, AZ, United States
    serp_jobs.job_card.full_time
    Pilot CBP Air Interdiction Agent.Air and Marine Operations (AMO), a component of U.Customs and Border Protection (CBP), offers skilled Pilots interested in law enforcement an opportunity to work wi...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30