security
Posted 1 weeks agoSenior Security Engineer (Detection & Response)
at Justworks
New York, United StatesHybrid
Responsibilities
- Build, tune, and deploy high‑quality detections across our platform
- Develop and refine detections using telemetry from EDR, threat intel, endpoint & cloud posture platforms and native AWS cloud services
- Conduct proactive threat hunting to uncover threat actor behaviors and detection gaps
- Lead security event & incident handling, including triage, investigation, containment guidance, and post‑incident improvements
- Build automation and tooling to reduce manual effort and improve detection accuracy
- Drive process improvements across detection engineering, incident response, and telemetry workflows
- Collaborate with Engineering to ensure high‑quality logging and visibility across AWS environments
- Explore and prototype AI‑assisted detection and response capabilities
- Design and conduct table‑top exercises to validate readiness and strengthen response processes
- Influence and leadership - fostering a community of knowledge-sharing, collaboration, mentorship, and forward-thinking.
Requirements
- At Justworks, you’ll enjoy a welcoming and casual environment, great benefits, wellness program offerings, company retreats, and the ability to interact with and learn from leaders in the startup community.
- You’ll help explore how AI can enhance detection, hunting, and operational efficiency.
- experience in detection engineering, threat hunting, security event analysis, and incident response
- Strong understanding of attacker behaviors, malware techniques, and modern threat landscapes Hands‑on
- experience with EDR platforms (event analysis, detections, hunting)
- Proficiency with AWS security and logging services (CloudTrail, GuardDuty, IAM, VPC Flow Logs, Lambda, etc.) •
- Experience designing and conducting attack & defend (table‑top) exercises
- Demonstrated ability to improve processes, reduce friction, and automate repetitive tasks
- Interest in how AI/ML can enhance detection, hunting, and response workflows