Senior Security Engineer - Detection And Response

Fastly Inc. San Francisco , CA 94118

Posted 2 months ago

As a Senior Security Engineer on our Detection and Response team, you will help detect and respond to threats for one of the biggest online platforms in the world that handles massive amounts of traffic at very low latency.

We are looking for a teammate with expertise in both security engineering and operations and that values the complement between the two. You will have the opportunity to build and integrate tooling and detections, as well as investigate threats and lead incidents. As part of the larger Security organization, we make risk-informed decisions and prioritize automations to help us scale. In this role, you will help design, build, and mature our detection and response program, enabling rapid detection and effective response to threats against Fastly.

What You'll Do:

  • Develop detections and other analytics to identify threats across cloud, corporate, and edge environments

  • Partner closely with Engineering, Security Architecture, Risk Management, Compliance, and other teams to prioritize detections and delivery of other security initiatives

  • Triage and investigate security threats and lead security incidents

  • Research, evaluate, implement, and maintain a variety of custom and commercial security tools, such as Endpoint Detection and Response (EDR), anti-phishing, and Security Information and Event Monitoring (SIEM)

  • Develop strategies, frameworks, designs, automations, metrics, and processes to support the maturity of the Detection and Response program

  • Develop and maintain incident response playbooks and other detection and response documentation

  • Conduct threat hunts to discover unknown malicious activity across our environment

  • Participate in our on-call rotations

  • Mentor other team members and contribute to larger Security initiatives

What We're Looking For:

At Fastly we value a diversity of voices. The following is not a laundry list, but to be effective in this role you should possess most of the following and an interest in learning more about the rest:

  • Experience in utilizing Splunk to include investigating threats, developing metrics and dashboards, normalizing data feeds, and integrating with other tools

  • Familiarity of attacker tactics, techniques, and procedures (TTPs) and investigating advanced threats

  • Experience in evaluating, implementing, configuring, tuning, and maintaining Endpoint Detection and Response solutions

  • Experience with at least one major public cloud infrastructure, such as Amazon Web Services (AWS) or Google Cloud Platform (GCP)

  • Experience in effectively leading large and complex security incidents from detection to remediation

  • Familiarity with modern security frameworks and best practices, such as the MITRE ATT&CK framework and NIST CSF

  • Proficiency in one or more general purpose programming languages such as Python, Ruby, Go, or Rust

  • Experience with Linux administration at scale, associated intrusion/manipulation techniques, and standard methodologies for system hardening and process isolation

We'll be super impressed if you have experience in any of these:

  • Developed "detections-as-code"

  • Conducted threat hunts

  • Published research on detection engineering or threat intelligence

  • Developed automations to improve security operations

  • Familiarity with content delivery networks (CDN), edge cloud platforms, or other Fastly products and services

Work Hours:

This position will require you to be available during core business hours and support an on-call rotation.

Work Locations & Travel Requirements:

This position is open to both hybrid and remote work.

The preferred locations for this position are:

  • San Francisco, CA
  • Los Angeles, CA
  • Denver, CO
  • New York City, NY

Fastly currently embraces a largely hybrid model for most roles which allows employees flexibility to split their time between the office and home.

We are willing to consider remote candidates in US (Remote).

This position may require travel as required by your role or requested by your manager.

Salary:

The estimated salary range for this position is $155,370 to $194,210.

Starting salary may vary based on permissible, non-discriminatory factors such as experience, skills, qualifications, and location.

This role may be eligible to participate in Fastly's equity and discretionary bonus programs.

Benefits:

We care about you. Fastly works hard to create a positive environment for our employees, and we think your life outside of work is important too. We support our teams with great benefits that start on the first day of your employment with Fastly. Curious about our offerings?

We offer a comprehensive benefits package including medical, dental, and vision insurance. Family planning, mental health support along with Employee Assistance Program, Insurance (Life, Disability, and Accident), a Flexible Vacation policy and up to 18 days of accrued paid sick leave are there to help support our employees. We also offer 401(k) (including company match) and an Employee Stock Purchase Program. For 2024, we offer 10 paid local holidays, 11 paid company wellness days.


icon no score

See how you match
to the job

Find your dream job anywhere
with the LiveCareer app.
Mobile App Icon
Download the
LiveCareer app and find
your dream job anywhere
App Store Icon Google Play Icon
lc_ad

Boost your job search productivity with our
free Chrome Extension!

lc_apply_tool GET EXTENSION

Senior Security Engineer - Detection And Response

Fastly Inc.