Staff Security Engineer I, Detection & Response

IBM

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
Posted
21 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

How this pay compares to similar roles

Similar $190k
$132k most similar roles pay here $245k

This listing doesn't post a salary. Most similar roles pay $162,000–$219,000.

Based on 240 similar postings.

Employer

About IBM

IBM is a US-based global technology company providing hybrid cloud, AI, consulting, enterprise software, and IT infrastructure products and services.

IBM currently has 506 open roles on FindRole.

Listed pay typically runs $174,632–$197,165 across 5 roles with salary data.

Most-posted roles

View all roles at IBM

At a glance

TL;DR · Staff Security Engineer I, Detection & Response

Confluent - Staff Security Engineer I - Detection & Response joins the infrastructure security engineering team to build foundational systems and services protecting critical infrastructure from malicious actors. This role involves architecting and maintaining scalable cloud-based monitoring solutions across logging pipelines, ETL jobs, and SIEM ingestion. The engineer will drive the threat hunting roadmap by translating adversary tradecraft into high-signal detection strategies, manage incident response workflows, and research new attack vectors to ensure security program alignment with current threats. Key responsibilities include improving detection rule quality through metric tracking and collaborating with engineering teams to build secure-by-default visibility. Required skills include expertise in Kubernetes, containers, and multi-cloud environments, alongside proficiency in Python or Golang for developing automation and data pipelines. The role also involves mentoring other engineers and managing risk across large-scale, heterogeneous deployments.

What does a Security Engineer earn?

Median $185250 from 84 postings across 39 companies.

See salary data

What you'll do

  • Architect, build, and maintain scalable cloud-based security monitoring solutions across logging pipelines and SIEM ingestion.
  • Develop high-signal detection strategies by translating modern adversary tradecraft and threat models into actionable roadmaps.
  • Build processes and workflows to triage security alerts and manage incidents through to closure.
  • Research new threat attack vectors to ensure the detection program aligns with the current landscape.
  • Improve detection rule quality by defining and tracking metrics like coverage, precision, and MTTD.
  • Collaborate with engineering teams to build logging pipelines that ensure infrastructure ships with secure-by-default visibility.
  • Provide technical guidance, mentorship, and leadership to other engineers to improve security operations.

What we're looking for

  • Master's Degree (preferred).
  • 8+ years of experience in detection and response or similar security engineering roles in a cloud-first environment.
  • Expert-level domain knowledge in detection engineering and security incident response.
  • Experience building high-quality detections in large-scale, heterogeneous deployments like Kubernetes, containers, and multi-cloud environments.
  • Proficiency in writing code using Python or Golang to design tooling, automation, and data pipelines.
  • Experience with open-source or commercial solutions for logging and security event management such as SIEM, log aggregation, and SOAR.
  • Familiarity with more than one cloud vendor (AWS, GCP, Azure) (preferred).

More like this

Similar roles

Staff Security Engineer

IBM

25 days ago
Application Security Cloud-Native CI/CD Go Python Java Threat Modeling API Security Vulnerability Management Security Automation Distributed Systems Machine Learning Hybrid Cloud
10+ yrs exp

Staff Security Engineer

Twilio

Remote 17 days ago $155,520$194,400
AI Threat Hunting SIEM SOAR Terraform CloudFormation AWS GCP Infrastructure as Code Incident Response Service-Oriented Architecture MITRE ATLAS Automation Security Engineering
Remote

Staff Security Engineer, Detection & Response

Robinhood

Bellevue, WA +2 112 days ago $217,000$255,000
Incident Response Detection Engineering Kubernetes SOAR AI Threat Hunting Threat Intelligence Vulnerability Management Blockchain DeFi
8+ yrs exp Hybrid