Detection & Response Security Engineer @WorkOS
Software Development
Salary usd 175,000 - 2..
Remote Location
Job Type full-time
Posted YDay

[Hiring] Detection & Response Security Engineer @WorkOS

YDay - WorkOS is hiring a remote Detection & Response Security Engineer. πŸ’Έ Salary: usd 175,000 - 275,000 per year πŸ“Location: USA, Canada

Role Description

We are looking for a Detection & Response Security Engineer to take our D&R capabilities to the next level.

  • Build out our detection engineering capability.
  • Design and implement detection logic across our SIEM, EDR, cloud security tools, and identity systems.
  • Own security incident response.
  • Lead and support security incident investigations using data analytics, log analysis, and system forensics across corporate and production environments.
  • Extend detection into the product.
  • Instrument additional application-level telemetry across the WorkOS platform to detect abuse patterns, anomalous authentication activity, and threats that target our customers' identities.
  • Build tooling and automation.
  • Improve visibility and logging.
  • Partner with our MDR provider.
  • Contribute to security operations maturity.
  • Participate in a shared on-call rotation for security incidents, with occasional evening or weekend availability for critical events.

Qualifications

  • 5+ years of experience in security engineering, detection engineering, incident response, or a related technical security role.
  • Strong engineering fundamentals; ideally a computer science or engineering degree or equivalent industry experience (software engineering, SRE, network engineering).
  • Proficiency in Python, Go, or another general-purpose programming language.
  • Hands-on experience with SIEM platforms (Panther, Splunk, Elastic, or similar) β€” writing detection rules, building log pipelines, and investigating alerts.
  • Experience with EDR technologies (SentinelOne, CrowdStrike, or similar) and endpoint investigation.
  • Familiarity with cloud security fundamentals (AWS IAM, networking, Kubernetes basics).
  • Experience with incident response in production and/or corporate environments.
  • Strong written and verbal communication skills.

Requirements

  • Experience with Detection-as-Code practices (version-controlled, tested detections).
  • Familiarity with SOAR platforms and security automation.
  • Experience with identity/authentication systems (Okta, SAML, OIDC) β€” highly relevant given our product domain.
  • Prior experience building a D&R function from scratch.
  • Experience at a developer tools, identity/auth, or infrastructure company.

Benefits

  • Competitive pay
  • Substantial equity grants
  • Healthcare insurance (Medical, Dental and Vision) for you and your family
  • 401k matching
  • Wellness and fitness monthly allowances
  • PTO + paid holidays + unlimited sick leave
  • Autonomy and flexibility with remote work
Before You Apply
️
remote Be aware of the location restriction for this remote position: USA, Canada
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Detection & Response Security Engineer @WorkOS
Software Development
Salary usd 175,000 - 2..
Remote Location
Job Type full-time
Posted YDay
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Unlock 152,720 Remote Jobs
️
remote Be aware of the location restriction for this remote position: USA, Canada
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Unlock 152,720 Remote Jobs
Γ—

Apply to the best remote jobs
before everyone else

Access 152,720+ vetted remote jobs and get daily alerts.

4.9 β˜…β˜…β˜…β˜…β˜… from 500+ reviews
Unlock All Jobs Now

Maybe later