Senior Security Engineer, Detection & Response Engineering
Remote - US
Twilio
Connect with customers on their preferred channels—anywhere in the world. Quickly integrate powerful communication APIs to start building solutions for SMS and WhatsApp messaging, voice, video, and email.Join the team as our next Senior Security Engineer, Detection & Response Engineering.
Who we are & why we’re hiringTwilio powers real-time business communications and data solutions that help companies and developers worldwide build better applications and customer experiences.
Although we're headquartered in San Francisco, we're on a journey to becoming a globally antiracist company that supports diversity, equity & inclusion wherever we do business. We employ thousands of Twilions worldwide, and we're looking for more builders, creators, and visionaries to help fuel our growth momentum.
About the jobThis position is needed to build self sustaining security solutions using Infrastructure as Code, automate intelligence gathering, and vetting for security events, develop tooling to automate all phases of the OODA loop, perform adversarial simulation to test our detection solutions, work with internal and external red teams to build automation that puts us steps ahead of attackers, as well as share our learnings with the wider security organization and community through talks and demos.
We’re a small team of experienced security engineers with diverse technical and non-technical backgrounds. We’re a passionate group of individuals who enjoy challenging the traditional, prescriptive security techniques of the past by adopting modern development practices and technologies. We talk about our methods and accomplishments in public blogs, at conferences, and in presentations. If you want to be this kind of security person and work with a team that's like you, to create innovative security solutions for distributed systems and architecture, we'd love to hear about your approach, and introduce you to our team.
ResponsibilitiesIn this role, you’ll:
- Be an Owner: Conducting daily operations tasks including developing detective tooling, automating response runbooks, and participating in system threat models
- Wear the customer’s shoes: Work closely with the Threat Intelligence, SIRT, and Security Engineering teams to ensure the best user experience within Security.
- Ruthlessly Prioritize: Identifying areas that would most benefit from security automation, and following through to execution
- Don’t Settle: Utilize and improve our use of security tools such as: DDoS mitigation, intrusion detection, log aggregation, forensic collection, and WAF products
- Draw the Owl: Building systems and services to make the most complex security problems simple and frictionless
- Write It Down: Contributing to security team practices around detection, response, and general security
Not all applicants will have skills that match a job description exactly. Twilio values diverse experiences in other industries, and we encourage everyone who meets the required qualifications to apply. While having “desired” qualifications make for a strong candidate, we encourage applicants with alternative experiences to also apply. If your career is just starting or hasn't followed a traditional path, don't let that stop you from considering Twilio. We are always looking for people who will bring something new to the table!
Required:
- 5+ years of engineering experience in a production-cloud environment.
- Subject-matter expert on security issues and technologies
- Experience in Security Engineering and Security Operations, preferably at a technology company, and in a PaaS or SaaS environment
- Working knowledge of service-oriented architectures and software development, as well as experience with different tools and technologies fit for a cloud environment
- You’ve practiced your CloudSec craft most recently in cloud data-centers and with container technology
- Experience in at least one of AWS, GCP or Kubernetes
- Experience managing cloud or data center environments
- Proficiency in at least 1 major operating system
- Proficiency in at least 1 compiled, and 1 interpreted language
- Proficiency with infrastructure as code, such as Terraform or Pulumi
- Proficiency with SIEM platforms and are able to extend their functionality
- Proficiency with SOAR tools and automating manual security processes
- Commitment to sharing experiences and good security practices with colleagues and the community
Desired:
- Experience managing cloud or data center environments
Location
This role will be remote.
What We OfferThere are many benefits to working at Twilio, including, in addition to competitive pay, things like generous time-off, ample parental and wellness leave, healthcare, a retirement savings program, and much more. Offerings vary by location.
Twilio thinks big. Do you?We like to solve problems, take initiative, pitch in when needed, and are always up for trying new things. That's why we seek out colleagues who embody our values — something we call Twilio Magic. Additionally, we empower employees to build positive change in their communities by supporting their volunteering and donation efforts.
So, if you're ready to unleash your full potential, do your best work, and be the best version of yourself, apply now!
If this role isn't what you're looking for, please consider other open positions.
*Please note this role is open to candidates outside of Colorado as well. The information below is provided for those hired in Colorado only.
*If you are a Colorado applicant:
- The estimated pay range for this role, based in Colorado, is $116,312 - $182,776
- Non-Sales: Additionally, this role is eligible to participate in Twilio's equity plan.
The successful candidate’s starting salary will be determined based on permissible, non-discriminatory factors such as skills, experience, and geographic location within the state. This role is also eligible to participate in Twilio’s equity plan and for the following benefits: health care insurance, 401(k) retirement account, paid sick time, paid personal time off, paid parental leave.
Tags: Automation AWS Cloud DDoS GCP Intrusion detection Kubernetes PaaS SaaS SIEM SOAR Terraform Threat intelligence
Perks/benefits: 401(k) matching Career development Competitive pay Conferences Equity Health care Parental leave Team events
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Ethical hacker / Pentester H/F jobs
- Open Information Security Specialist jobs
- Open Manager Pentest H/F jobs
- Open Senior Cyber Security Engineer jobs
- Open Cyber Security Architect jobs
- Open Cyber Security Specialist jobs
- Open Product Security Engineer jobs
- Open Principal Security Engineer jobs
- Open Staff Security Engineer jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Senior Information Security Analyst jobs
- Open Cybersecurity Analyst jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Chief Information Security Officer jobs
- Open IT Security Analyst jobs
- Open Consultant SOC / CERT H/F jobs
- Open Cybersecurity Consultant jobs
- Open Security Specialist jobs
- Open Senior Information Security Engineer jobs
- Open Cybersecurity Specialist jobs
- Open Senior Penetration Tester jobs
- Open Senior Security Architect jobs
- Open Security Researcher jobs
- Open Sr. Security Engineer jobs
- Open IT Security Engineer jobs
- Open Clearance-related jobs
- Open ISO 27001-related jobs
- Open Windows-related jobs
- Open Application security-related jobs
- Open Network security-related jobs
- Open Agile-related jobs
- Open Pentesting-related jobs
- Open Vulnerability management-related jobs
- Open GCP-related jobs
- Open Analytics-related jobs
- Open SaaS-related jobs
- Open CISA-related jobs
- Open IAM-related jobs
- Open Threat intelligence-related jobs
- Open APIs-related jobs
- Open Security assessment-related jobs
- Open Java-related jobs
- Open IDS-related jobs
- Open DevOps-related jobs
- Open Security Clearance-related jobs
- Open Malware-related jobs
- Open EDR-related jobs
- Open Kubernetes-related jobs
- Open CEH-related jobs
- Open IPS-related jobs