CronJobs

security jobs

Senior Security Engineer, Detection & Response

Flexport · San Francisco, California, United States

unknownsenior$183,272–$183,272Posted Aug 27, 2026PythonGoCI/CDMITRE ATT&CK

Apply on the employer site

About this role

**About Flexport** At Flexport, we believe global trade can move the human race forward. Our mission is to make global commerce easy—powered by innovative technology and exceptional people. Flexport technology helps companies move more than **$19B** of merchandise across **112 countries** each year. The global supply chain crisis has put Flexport at the center of how goods move worldwide. If you’re ready to tackle global challenges that impact business, society, and the environment, come join us. --- ## What you’ll do There is **no MSSP** and **no tier-1 queue** here. Detection & Response engineers own detections end to end: you **write** them, **tune** them, and your team is **paged when they fire**. The security team uses a **follow-the-sun pager rotation**, so nobody is paged at **3am local**. The adversaries are real. The business is growing fast, and the threat surface is growing with it—so **defining the necessary telemetry** is part of the job. ### Detection engineering - **Build and tune detections** across **endpoint, identity, SaaS, and cloud**, treating detections as software: **version-controlled, peer-reviewed, and shipped** through the same **CI/CD** practices as the rest of engineering. - **Track detection quality** using measurable outcomes: **coverage against MITRE ATT&CK, precision, and time-to-detect**. We don’t build-and-forget. ### Response & automation - **Own incident response**: triage, contain, remediate, and write the retrospective that turns the incident into a systemic fix. - **Build automation** that removes toil from investigations, and partner closely with the US-based team so context carries across time zones instead of getting lost at handoff. ### Telemetry & partnership - **Define telemetry requirements for new systems before they ship**, working with infrastructure and product teams to close visibility gaps rather than discovering them during an incident. - **Threat hunt proactively** across the estate, converting hypotheses into either **new detections** or documented coverage. --- ## You should have - Typically **5–8 years** of experience in **detection engineering, incident response, or threat hunting**, with real hands-on time writing and tuning detections (we care more about what you’ve built than the exact number). - Proficiency in **at least one programming language** (e.g., **Python, Go, or similar**) and comfort writing **production-grade detection and automation code**. *(Additional requirements were present in the source text but were truncated.)*

Listing freshness

CronJobs last confirmed this listing 10m ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.

Browse all software engineering jobs →

Follow fresh jobs in Discord