Staff Security Engineer - Detection and Response

1Password
Canada
$228K a year
Remote
Full-time

What we're looking for :

  • Minimum 7 years of experience in a security role with a focus on Detection Engineering, Incident Response, Digital Forensics and / or Threat Intelligence
  • Experience leading and collaborating on complex and ambiguous cross-functional projects from design through implementation
  • Expertise in leading security incidents to resolution with various incident responders and stakeholders
  • Experience in building logging pipelines for log ingestion into a centralized system
  • Expertise in SIEM and SOAR solutions for building behavior based detections and security automations
  • Experience with Detection-as-Code to automate detection engineering workflows
  • Experience with EDR, IDS / IPS and forensic analysis tools on various operating systems
  • Strong understanding of current threat landscape and threat actor TTPs
  • Experience with threat hunting and analyzing logs to identify potential security or privacy impacts
  • Experience deploying cloud services (e.g., AWS, GCP) and a strong understanding of cloud security principles
  • Proficiency in scripting and programming languages (e.g., Python, Bash) for automation and tool development
  • Experience with software development lifecycle, project management, Terraform and CI / CD in GitLab or GitHub
  • Excellent communication skills with a drive for collaboration and leveling up team members
  • Bonus : Relevant certifications such as CEH, OSCP, GSOC, GCIH, GCDA or equivalent.

What you can expect :

  • Lead the design, development, and implementation of detection and response processes for all of Security
  • Operate as a technical leader by helping define the Detection and Response team roadmap through collaboration with the manager
  • Define the scope, timeline, milestones and success criteria for projects, ensuring deliverables are met and in alignment with Security OKRs
  • Build strong relationships with partner and stakeholder teams in order to advise on improvements to detection capabilities and response procedures
  • Manage security incidents through the incident response process from identification to resolution
  • Design and build systems to automate security processes and workflows to improve efficiency and scalability
  • Participate in an on-call rotation with potential for work on nights or weekends in the event a significant security issue is identified
  • Partner with developers, engineers and other departments to review and address security issues
  • Develop and maintain threat intelligence sources to stay informed about emerging threats and attack vectors
  • Write and execute response playbooks that can be utilized by all members of the team
  • Mentor and train team members to uphold a high team standard
  • Participate in security audits, vendor assessments and security tabletop exercises
  • Be a subject matter expert on the team’s security tooling, processes and procedures

USA-based roles only : The Annual base salary for this role is between $187,000 USD and $253,000 USD, plus immediate participation in 1Password's benefits program (health, dental, 401k and many others), utilization of our generous paid time off, an equity grant and, where applicable, participation in our incentive programs.

Canada-based roles only : The Annual base salary for this role is between $168,000 CAD and $228,000 CAD, plus immediate participation in 1Password’s generous benefits program (health, dental, RRSP and many others), utilization of our generous paid time off, an equity grant and, where applicable, participation in our incentive programs.

At 1Password, we approach each individual's compensation with a promise of fair market value and internal equity commensurate with experience and specific skill set.

What we offer : We believe in working hard, and resting hard. We’re always looking for new ways to support our team members, but here’s a glance at what we currently offer : Health and wellbeing >

Maternity and parental leave top up programs>

Wellness spending account>

Generous PTO policy >

Company-wide wellness days off scheduled throughout the year >

Wellness Coach membership>

Comprehensive health coverage Growth and future >

Employee stock option program for all full time employees >

Retirement matching program>

Training budget, 1Password University access, and learning sessions >

Free 1Password account (and friends and family discount!) Flexibility and community >

Paid volunteer days >

Employee-led DEI&B programs and ERGs>

Fully remote environment>

Peer-to-peer recognition through Bonusly

6 days ago
Related jobs
Yelp
Canada
Remote

The Security Incident Detection and Response Team at Yelp is responsible for leading and managing Security Incident Response activities, actively managing and increasing detection precision, and providing advanced systems and tooling. We’re looking for a Software Engineer, Security (Incident Detecti...

Rippling
Canada
Remote

We're looking for a hands-on staff security engineer to play a key role in building Rippling's security program. With Rippling, you can just click a button and set up a new employees’ payroll, health insurance, work computer, and third-party apps—like Slack, Zoom, and Office 365—all within 90 second...

ClickUp
Canada

Build a deep understanding of how ClickUp's systems behave, scale, interact and fail, and use that insight to identity risks and opportunities for remediation. We are looking for driven and innovative software engineers with strong site reliability engineering (SRE) discipline or interest in this ar...

Rippling
Canada
Remote

We're looking for a hands-on staff security engineer to play a key role in building Rippling's security program. With Rippling, you can hire a new employee anywhere in the world and set up their payroll, corporate card, computer, benefits, and even third-party apps like Slack and Microsoft 365—all w...

1Password
Canada
Remote

Collaboration with the Detection and Response Team to build new and improve existing detections for critical platforms. Experience with using and implementing security frameworks within an organization, such as the Center for Internet Security (CIS) Benchmarks or NIST 800-53. Partner with other memb...

Okta, Inc.
Canada

In addition, Okta offers equity (where applicable), bonus, and benefits, including health, dental, and vision insurance, RRSP with a match, healthcare spending, telemedicine, and paid leave (including PTO and parental leave) in accordance with our applicable plans and policies. Our Workforce and Cus...

MongoDB
Canada

Collaborate with MongoDB Infosec and application security teams to create a threat matrix focused on SDLC processes, tooling and infrastructure to improve and evolve our security posture within our development ecosystem. Provide architectural guidance on best practices on, and implement security too...

StackAdapt
Canada

Mentor the team and lead by example to uphold software development best-practices in addition to conducting rigorous code and tech spec reviewsIdentify bottle-necks and general system wide performance issues and offer actionable solutions to address them. We're seeking a Staff Engineer to help lead ...

Okta, Inc.
Canada

Partner closely with teams and organizations across Engineering, Legal, and Product to embed sound technical data security and privacy practices in everything we ship and help uncover risks before they become issues. We seek a knowledgeable and execution-focused Security Engineer to take the securit...

Arctic Wolf
Remote, Canada
Remote

Conducts duties and responsibilities in accordance with AWN’s Information Security policies, standards, processes and controls to protect the confidentiality, integrity and availability of AWN business information (in accordance with our employee handbook and corporate policies). As such, we strive ...