Detection Engineer II
OR · Remote
We care deeply about reducing noise, improving analyst efficiency through automation and SOAR, and ... Knowledge of machine learning for threat detection #LI-remote
New
OR · Remote
We care deeply about reducing noise, improving analyst efficiency through automation and SOAR, and ... Knowledge of machine learning for threat detection #LI-remote
New
OR · Remote
We care deeply about reducing noise, improving analyst efficiency through automation and SOAR, and ... Knowledge of machine learning for threat detection #LI-remote
New
OR · On-site +1
Build common response workflows to expedite investigation and response using AI and SOAR Technology ... Remote-US Time zone requirements The team operates on the East/West coast time zones. Travel ...
OR · On-site +1
Build common response workflows to expedite investigation and response using AI and SOAR Technology ... Remote-US Time zone requirements The team operates on the East/West coast time zones. Travel ...
OR · On-site +1
Build common response workflows to expedite investigation and response using AI and SOAR Technology ... Remote-US Time zone requirements The team operates on the East/West coast time zones. Travel ...
OR · On-site +1
Build common response workflows to expedite investigation and response using AI and SOAR Technology ... Remote-US Time zone requirements The team operates on the East/West coast time zones. Travel ...
OR · Remote
$63 - $83/hr
Cyware's Cyber Fusion platform integrates SOAR and TIP technology, enabling collaboration across ... You'll work as closely with our Product and Engineering teams as you do with Customers. You'll ...
OR · Remote
$63 - $83/hr
Cyware's Cyber Fusion platform integrates SOAR and TIP technology, enabling collaboration across ... You'll work as closely with our Product and Engineering teams as you do with Customers. You'll ...
The role produces the Engineering Design Documents, blueprints, and control mappings that govern ... Remote work requires a high level of trust in our employees, and we strictly adhere to the details ...
The role produces the Engineering Design Documents, blueprints, and control mappings that govern ... Remote work requires a high level of trust in our employees, and we strictly adhere to the details ...
OR · Remote
$231K - $265K/yr
Experience with security tools and cloud environments (e.g., Vulnerability Scanners, SIEM, SOAR ... remote Notice of Collection and Use of Personal Information for California Residents: California ...
OR · Remote
$231K - $265K/yr
Experience with security tools and cloud environments (e.g., Vulnerability Scanners, SIEM, SOAR ... remote Notice of Collection and Use of Personal Information for California Residents: California ...
OR · On-site +1
Clear communication across engineering, security, and business stakeholders * High ownership ... remote-first environment * Background with SIEM/SOAR platforms (Sentinel, Splunk) for security ...
OR · On-site +1
Clear communication across engineering, security, and business stakeholders * High ownership ... remote-first environment * Background with SIEM/SOAR platforms (Sentinel, Splunk) for security ...
$99K - $128K/yr
Remote work requires a high level of trust in our employees, and we strictly adhere to the details ... Experience leveraging SIEM, SOAR, and other tools to identify threat activity and incidents.
$99K - $128K/yr
Remote work requires a high level of trust in our employees, and we strictly adhere to the details ... Experience leveraging SIEM, SOAR, and other tools to identify threat activity and incidents.
... SOAR platforms. * Prior experience in security engineering and architecture, application security ... Remote - U.S., Eastern Time Zone. Some travel may be required. What you will have at Harness
... SOAR platforms. * Prior experience in security engineering and architecture, application security ... Remote - U.S., Eastern Time Zone. Some travel may be required. What you will have at Harness
A typical workday for a Remote SOAR Engineer involves designing, building, and maintaining automated security workflows, analyzing security alerts, and quickly responding to incidents using SOAR tools. You’ll work closely with Security Operations Center (SOC) analysts, incident responders, and IT teams, often coordinating via virtual meetings, chat platforms, and collaborative documentation tools. Tasks may also include troubleshooting automation scripts, updating playbooks based on emerging threats, and participating in team reviews to improve security processes. Despite being remote, effective communication and regular check-ins are key to ensuring alignment and smooth collaboration across global security teams.
To thrive as a Remote SOAR Engineer, you need expertise in cybersecurity operations, automation scripting (such as Python), and familiarity with Security Orchestration, Automation, and Response (SOAR) platforms, often supported by a degree in computer science or a related field. Proficiency with tools like Splunk, Palo Alto Cortex XSOAR, and relevant certifications (e.g., CISSP, GIAC) are highly valued. Strong problem-solving skills, effective communication, and the ability to work independently in a distributed environment are key soft skills. These qualifications ensure effective incident response automation and seamless integration with security operations while collaborating remotely with global teams.
A Remote SOAR (Security Orchestration, Automation, and Response) Engineer is responsible for designing, implementing, and maintaining SOAR solutions to enhance an organization's cybersecurity operations. They work remotely to automate security workflows, integrate various security tools, and improve incident response efficiency. This role requires expertise in scripting, API integrations, and security operations to optimize threat detection and response.

7.1
Based on 31 frontline employees who took The Breakroom Quiz
28th of 64 rated delivery companies
Overview
Instacart's Detection Engineering team sits at the core of our Security organization, building and operating the systems that identify, surface, and respond to threats across one of North America's largest grocery technology platforms. We own the full detection lifecycle, from telemetry collection and signal design to automated response, across a complex, cloud-native environment spanning endpoint, cloud, container, and SaaS.
As a Detection Engineer, you'll be a technical anchor on the team: developing high-fidelity detection logic, hunting for novel attacker techniques, and raising the bar for how we think about coverage, quality, and scale. You'll work closely with Engineering, Red Team, Incident Response, Fraud, and Trust & Safety to ensure our detections reflect real-world adversary behavior (and not just signatures).
We operate with a detection-as-code mindset: everything we build is versioned, tested, and deployed through repeatable pipelines. We care deeply about reducing noise, improving analyst efficiency through automation and SOAR, and continuously evolving our coverage as the threat landscape shifts.
If you're energized by hard forensic problems, enjoy translating attacker TTPs into durable detection logic, and want to help shape the future of a growing security function, this role is for you.
About the Job
About You
Minimum Qualifications
Preferred Qualifications
#LI-remote
Get the full story on Breakroom
Sourced by ZipRecruiter
Instacart, based in San Francisco, CA, US, operates within the retail industry, specifically grocery delivery and pick-up service. It is recognized as a pioneer in this field, delivering fresh groceries from local stores directly to customers' doors. The company, which launched its services in 2012, continues to pioneer change in the online grocery shopping sector through its commitment to cutting-edge technology, new business ideas, and dedicated service.
Technology, communication and media
10,000+ Employees
San Francisco, CA, US
2012