Senior Threat Engineer @Coalition
All Others
Salary unspecified
Remote Location
remote UK
Employment Type full-time
Posted 2mths ago

[Hiring] Senior Threat Engineer @Coalition

2mths ago - Coalition is hiring a remote Senior Threat Engineer. πŸ’Έ Salary: unspecified πŸ“Location: UK

Role Description

A Senior Threat Engineer builds and improves systems, logic, and workflows that allow Coalition’s Wirespeed Verdict Engine to make high-precision security decisions at scale. This role is not a traditional SOC analyst position.

  • Success is defined by handling thousands of similar situations better, faster, and more consistently through automation, patterning, and engineering.
  • Key focus includes studying how investigations should work, identifying repeatable decision points, and turning that thinking into detections, enrichment, triage logic, and automated response workflows.
  • As a senior member of the team, you'll take ownership of complex problem areas and help shape the broader Threat Engineering function.
  • This role bridges threat detection, engineering, and customer experience.
  • Ideal for someone interested in solving entire classes of problems rather than just closing alerts.
  • Exciting opportunity to design systems that scale expert judgment and improve customer outcomes and operational efficiency.

Responsibilities

  • Design, build, and improve detection, decisioning, and response workflows for the Wirespeed Verdict Engine.
  • Own complex threat detection and workflow problem spaces from investigation concept through implementation, validation, and iteration.
  • Translate investigative thinking and threat research into scalable detections, enrichment, triage logic, and automated decisions.
  • Analyze operational data to identify false positives, false negatives, latency issues, and opportunities for improvement.
  • Continuously raise the ceiling of system autonomy, reducing manual review while improving service quality and consistency.
  • Support complex or novel cases and feed lessons back into the system for future handling.
  • Ensure Wirespeed outputs are clear, helpful, accurate, and appropriately calibrated to customer situations.
  • Identify patterns in customer pain, confusion, or friction to improve verdict logic and overall product behavior.
  • Partner closely with product, engineering, and security teams to improve platform capabilities and operational leverage.
  • Help define best practices, operating principles, and technical standards for Threat Engineering work.
  • Document detection concepts, workflow logic, and operating principles for team knowledge scaling.
  • Provide technical leadership through execution, sound judgment, and mentorship of less experienced teammates.

Qualifications

  • Significant experience in cybersecurity operations such as threat detection and response, detection engineering, incident response, threat hunting, or SOC operations.
  • Ability to identify repeatable patterns, clear decision logic, and scale good judgment through automation.
  • Strong investigative and analytical skills to turn ambiguous signals into practical detection logic and workflow improvements.
  • Experience building, tuning, or maintaining automations, detections, playbooks, rules, or enrichment pipelines in security tooling.
  • Demonstrated ability to independently own complex technical or operational problem areas and drive them to better outcomes.
  • Interest in improving how work gets done rather than just executing tasks.
  • Strong written and verbal communication skills to document logic and explain threats clearly.
  • Ability to work closely with product, engineering, and security stakeholders.
  • Comfort using data to evaluate detection quality and workflow performance.
  • Preference for simple, scalable solutions and willingness to reduce unnecessary complexity.

Bonus Points

  • Experience in high-volume security operations environments.
  • Significant experience with detection and response tooling such as SIEM, EDR, SOAR, case management, and telemetry enrichment systems.
  • Familiarity with writing scripts or queries for investigations, automation, or workflow analysis.
  • Experience improving operational quality through experimentation and continuous iteration.
  • Experience in workflow design, detection engineering, automation, or security product development.
  • Experience mentoring engineers and influencing team approaches to detection and response problems.

Benefits

  • 100% medical coverage, including outpatient care.
  • Life insurance.
  • 25+ paid holidays.
  • Annual home office stipend.
  • 7% employer pension contribution.
  • Mental and physical health wellness programs like Headspace, Wellhub.
  • Competitive compensation and opportunity for advancement.
Before You Apply
️
remote Be aware of the location restriction for this remote position: UK
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Senior Threat Engineer @Coalition
All Others
Salary unspecified
Remote Location
remote UK
Employment Type full-time
Posted 2mths ago
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Application Denied βœ“
Unlock 125,000+ Remote Jobs
️
remote Be aware of the location restriction for this remote position: UK
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Application Denied βœ“
Unlock 125,000+ Remote Jobs
Γ—
Apply to the best remote jobs
before everyone else

Access 125,000+ vetted remote jobs and get daily alerts.

4.9 β˜…β˜…β˜…β˜…β˜… from 500+ reviews

⚑ 127,100+ remote jobs, refreshed hourly

πŸ”” Real-time alerts: Apply first, direct to employer

πŸ›‘οΈ Vetted companies, no scams, true remote only

Unlock All Jobs Now

Maybe later