Search jobs > San Francisco, CA > Detection engineer

Senior Security Engineer, Detection & Response San Francisco, United States

Tbwa Chiat/Day Inc
San Francisco, California, US
$180K-$212K a year
Full-time

Senior Security Engineer, Detection & ResponseWho Are We?

Postman is the world's leading collaboration platform for API development. Postman's features simplify each step of building an API & streamline collaboration to help create better APIs faster.

More than 30 million developers & 500,000 organizations worldwide use Postman today, and we continue to strive humbly towards our mission of 100 million connected developers & serving companies as they seek to innovate in an API-first world.

Our customers are doing more and more astounding things with the Postman product every day, and as a result, we are growing rapidly.

Is this your next job Read the full description below to find out, and do not hesitate to make an application.

We are seeking an experienced Senior Security Engineer, Detection & Response to join our dynamic security team. In this role, you will provide Level 2 support to our managed Security Operations Center (SOC), monitoring and analyzing security alerts and emerging threats across our corporate, cloud and production environments to identify and respond to potential security incidents and critical vulnerabilities.

You’ll work closely with the broader security and IT team and other engineering teams to develop a strong understanding of our ecosystem to enable you to act effectively as an Incident Commander when required, and coordinate incident resolution with cross-functional teams to ensure 24 / 7 coverage.

This understanding will aid you in your threat hunting and forensic investigations to uncover indicators of compromise and patterns of malicious activity, as well as fine-tune and develop additional detection rules, configurations, custom playbooks and automations tailored to our environment in collaboration with our managed SOC.

In the area of vulnerability management, you will monitor security advisories and threat intelligence feeds, and drive proactive actions within the organization.

Your collaboration with cross-functional teams will be essential in proactively detecting and responding to security threats and ensuring the overall security of our digital assets.

What You’ll Do :

Security Operations Duties :

  • Provide Level 2 support to a managed SOC and support monitoring security alerts and events from various sources, including corporate tools, WAF, security information and event management (SIEM) systems, and AWS to identify potential security incidents, intrusions and vulnerabilities.
  • Conduct threat hunting and perform forensic investigations to identify indicators of compromise (IOCs) and patterns of malicious activity.
  • Coordinate and manage incident resolution with cross-functional teams, including acting as Incident Commander during incidents to help provide 24 / 7 coverage with other team members.
  • Support Cloud Detection & Response platforms to enable various automated notification and containment workflows.

Detection Engineering :

  • Fine-tune and develop detection rules, configurations, and automations based on new threats, lessons learned, or environmental changes.
  • Work with the managed SOC to develop custom playbooks.
  • Where possible, write scripts and develop custom tools to automate the detection and response processes. Adhere to SSDLC best practices when writing scripts or developing tools.
  • Identify any gaps in logging coverage to ensure we maintain the highest visibility into any threats to our environment.
  • Manage Cloudflare security products for web application security, including WAF rules and DDoS protection.
  • Collaborate with cross-functional teams to proactively detect and respond to potential security threats and ensure the overall security of our organization's digital assets.

Vulnerability Management :

Monitor security advisories, threat intelligence feeds, and vendor updates for critical threats to drive action back into the enterprise / product organization.

About You :

Education & Experience :

Bachelor’s degree in Computer Science, Information Security, or a related field.

Minimum of 5-7 years of experience in a SOC analyst or security operations role.

Technical Skills :

Experience with AWS security services and best practices.

Familiarity with Cloudflare, SentinelOne, Okta, and related security tools.

Understanding of network protocols, firewalls, and intrusion detection systems.

Soft Skills :

Strong analytical and problem-solving abilities.

Excellent communication skills, both written and verbal.

Ability to work independently and as part of a team.

Preferred Qualifications :

Certifications such as CISSP, CEH, and AWS Certified Security Specialty.

Experience with infrastructure as code tools (e.g., Terraform).

Knowledge of DevSecOps practices and CI / CD pipelines.

Familiarity with regulatory compliance standards (e.g., GDPR, ISO 27001).

Our Values

At Postman, we create with the same curiosity that we see in our users. We value transparency & honest communication about not only successes, but also failures.

In our work, we focus on specific goals that add up to a larger vision. Our inclusive work culture ensures that everyone is valued equally as important pieces of our final product.

We are dedicated to delivering the best products we can.

What Else?

If the role is based in the greater San Francisco area, we are offering a base range of $180,000 to $212,000 plus a competitive equity package.

Actual compensation is based on the candidate's skills, qualifications, and experience. In addition to our pay-on-performance philosophy, we offer a comprehensive set of benefits, including full medical coverage, flexible PTO, wellness reimbursement, and a monthly lunch stipend.

Salaries will vary outside of the listed metropolitan areas & the U.S.

Postman is an Equal Employment Opportunity and Affirmative Action Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender perception or identity, national origin, age, marital status, protected veteran status, or disability status.

Apply for this job

J-18808-Ljbffr

9 days ago
Related jobs
Promoted
Tbwa Chiat/Day Inc
San Francisco, California

In-depth technical knowledge of security engineering, network security, authentication, security protocols, and vulnerability management. Senior Infrastructure Security Engineer. Drive detection, response, investigation, and remediation of infrastructure security vulnerabilities. Our hub locations a...

Promoted
Verkada
San Mateo, California

Verkada is the largest cloud-based B2B physical security platform company in the world. Only Verkada offers six product lines — video security cameras, access control, environmental sensors, alarms, workplace and intercoms — integrated with a single cloud-based software platform. Designed with simpl...

Promoted
Tbwa Chiat/Day Inc
San Francisco, California

Interested in working on cutting-edge blockchain technology and creating equitable access to the global financial system? Since 2014, the mission-driven team at the Stellar Development Foundation (SDF) has helped fuel the tremendous growth of the Stellar blockchain network, an open-source platform t...

Promoted
Rippling
San Francisco, California

Senior Staff Software Engineer - Data Infrastructure. Based in San Francisco, CA, Rippling has raised $1. We’re looking for a Senior Staff Engineer to lead a number of interesting & challenging projects inside our Infrastructure Organization (which is a part of the larger Platform Eng Org). Work...

Promoted
Flexport
San Francisco, California

As a Product Security Engineer, you have a deep understanding of product development and strategy, and are able to quickly identify and communicate security risks to diverse audiences while offering alternative solutions. Partner with others in the Security organization to drive the security champio...

Promoted
University of California , San Francisco
San Francisco, California

UC San Francisco seeks candidates whose experience, teaching, research, or community service has prepared them to contribute to our commitment to diversity and excellence. Senior Research Scientist - Ashworth Lab. ...

Promoted
Tbwa Chiat/Day Inc
San Francisco, California

The Orb solves a fierce combination of engineering and UX challenges, centered around image quality, security, and ease-of-use. In this role, you will work with our team of security experts to build the most secure embedded device in the world by innovating and applying the state of the art security...

Promoted
Rippling
San Francisco, California

Senior Engineering Manager - HRIS Company Team. Based in San Francisco, CA, Rippling has raised $1. Drive engineering initiatives such as architectural changes, hiring process changes, engineering effectiveness, and post-mortem processes. As a fast-growing workforce management company, Rippling onbo...

Victory Automotive Group
San Francisco, California

Our continued commitment is to improve our dealerships and services to satisfy our customer’s wants and needs 100 percent of the time and always provide a pleasant, informative, and professional experience. Follows all safety and security procedures. ...

Mediabistro
San Francisco, California

Develop and implement the content strategy for the San Francisco 49ers and Levi’s Stadium, including messaging/campaign plans, editorial calendars, channel mix, cadence, tone, and KPIs. ...