All roles

[Remote] Senior Detection Engineer (SIEM / Security Observability)

Remote · USA Full-time New today

Note: The job is a remote job and is open to candidates in USA. Keeper Security is seeking a Senior Detection Engineer to advance detection engineering, SIEM operations, and security telemetry across a globally distributed, cloud-native environment. The role focuses on building and operating detection capabilities to enhance security visibility and operational readiness.

Responsibilities

  • Design, build, and maintain detection and telemetry capabilities across Datadog, SentinelOne, and Wiz
  • Develop, test, and tune high-fidelity detection rules aligned to real-world attack scenarios and adversary behaviors
  • Continuously improve alert quality by reducing false positives, eliminating noise, and increasing detection accuracy
  • Implement and mature detection-as-code practices for scalable, version-controlled, and testable rule management
  • Define and enforce logging, telemetry, and instrumentation standards across cloud infrastructure, applications, endpoints, and identity systems
  • Build and optimize log ingestion, parsing, normalization, enrichment, and retention pipelines
  • Automate onboarding of new data sources and improve telemetry coverage across production and corporate environments
  • Correlate signals across SIEM, EDR, cloud, identity, and security tooling to improve detection depth and investigation quality
  • Partner with Security Operations to improve triage workflows, incident response readiness, and escalation quality
  • Build dashboards, analytics, and reporting that support operational decision-making across Security, SRE, and Engineering
  • Map and maintain detection coverage against MITRE ATT&CK and help identify visibility gaps
  • Perform detection gap assessments and evolve use cases based on threat intelligence, threat hunting, and emerging risks
  • Collaborate with cloud, infrastructure, product, and compliance teams to strengthen secure logging and observability patterns throughout the software development lifecycle

Skills

  • 5–8+ years of experience in detection engineering, SIEM engineering, security engineering, or security observability
  • Hands-on experience with SIEM, security analytics, or observability platforms, such as Datadog, SentinelOne, Splunk, Microsoft Sentinel, Elastic, or similar tools
  • Experience building, tuning, and maintaining detection rules, correlation logic, and alerting workflows
  • Strong understanding of security telemetry across cloud, endpoint, identity, and application environments
  • Experience with log parsing, normalization, enrichment, and pipeline management
  • Strong knowledge of cloud environments, with AWS preferred
  • Proficiency in scripting or automation using Python, PowerShell, or similar
  • Solid understanding of modern detection strategies, attacker behaviors, and the MITRE ATT&CK framework
  • Ability to work cross-functionally with Security Operations, Engineering, Infrastructure, and SRE teams
  • Experience with Datadog Cloud SIEM, SentinelOne, Wiz, or similar modern security platforms
  • Experience with observability concepts including logs, metrics, traces, and instrumentation
  • Experience with SOAR, workflow automation, or response orchestration
  • Familiarity with Sigma or other detection-as-code frameworks
  • Experience in high-scale SaaS, cloud-native, or security product environments
  • Familiarity with zero-trust architectures, identity-centric security, and privileged access management

Benefits

  • Medical, Dental & Vision (inclusive of domestic partnerships)
  • Employer Paid Life Insurance & Employee/Spouse/Child Supplemental life
  • Voluntary Short/Long Term Disability Insurance
  • 401K (Roth/Traditional)
  • A generous PTO plan that celebrates your commitment and seniority (including paid Bereavement/Jury Duty, etc)
  • Above market annual bonuses

Company Overview

  • Keeper Security is transforming cybersecurity for millions of individuals and thousands of organizations globally. It was founded in 2011, and is headquartered in Chicago, Illinois, USA, with a workforce of 501-1000 employees. Its website is https://www.keepersecurity.com.
  • Apply To This Job

    Related roles

    [Remote] Programmatic Media Buyer

    Remote · USA Full-time

    [Remote] Senior Software Engineer, Ruby on Rails

    Remote · USA Full-time

    [Remote] Business Intelligence Analyst

    Remote · USA Full-time

    [Remote] Engineering Manager, Infrastructure

    Remote · USA Full-time

    [Remote] Sr. Software Engineer, Backend

    Remote · USA Full-time

    [Remote] DER Business Analyst

    Remote · USA Full-time

    [Remote] Senior EBA Technical Analyst - ServiceNow

    Remote · USA Full-time

    [Remote] Senior - Database Administrator, Development (51412)

    Remote · USA Full-time

    [Remote] Principal Business Value Consultant

    Remote · USA Full-time

    [Remote] Project Manager, Influencer Campaigns

    Remote · USA Full-time

    Associate Vice President – Solutions Architecture

    Remote · USA Full-time

    [Remote] Remote | Hotel Reservationist | Entry Level | No Experience Needed

    Remote · USA Full-time

    Treasury Analyst - Remote

    Remote · USA Full-time

    Associate Manager, Global Payroll (Remote - East Coast US)

    Remote · USA Full-time

    Banquero/a Patrimonial Banca Digital (Mérida, Yucatán)

    Remote · USA Full-time

    Remote Data Entry Specialist – High‑Volume Healthcare Data Management – $25/hr – Join arenaflex’s Virtual Team

    Remote · USA Full-time

    Strategic Advisor, Travel & Hospitality

    Remote · USA Full-time

    [Hiring] Business Intelligence Analyst - Department of Medicine (System Applications Analyst, Sr.) @Oregon Health & Science University

    Remote · USA Full-time

    Experienced Customer Service Representative – Remote Work Opportunity at arenaflex

    Remote · USA Full-time

    Asst Dir-Customer Success Mgmt

    Remote · USA Full-time