Senior Detection & Response Engineer

Anduril Anduril · Defense · Costa Mesa, CA · Corporate Technology : Information Security : Detection and Response

Anduril Industries is a defense technology company seeking a Senior Detection and Response Engineer to build defensive controls for their AI-powered defense products. The role involves technical leadership, architecting detection and response frameworks, building detection signatures and response automation, and leading threat modeling. Requires programming experience (Python, SQL, Go, Rust), data analysis in large-scale data lakes, infrastructure as code, and AWS/Azure security controls. Must be able to obtain a U.S. Top Secret security clearance.

What you'd actually do

  1. Provide technical leadership, vision, and strategy for the advancement of the Detection and Response capability at Anduril
  2. Collaborate with product security and engineering teams to architect and implement detection and response frameworks for Anduril’s products, assets, and other custom applications
  3. Build and optimize tailored detection signatures, response playbooks, and response automation using detection-as-code principles
  4. Lead threat modeling scenarios with cross-functional partners to understand weaknesses across OT, Cloud, Network, Endpoints, and other key worlds incorporating findings into security controls and/or detection signatures
  5. Lead large-scale baselines of data, collaborating across many teams to emit signals to incorporate into detections, new telemetry ingestion, and/or security controls

Skills

Required

  • Python
  • SQL
  • Go
  • Rust
  • data analysis in large-scale data lake environments
  • Terraform
  • CDK
  • CloudFormation
  • Github
  • CI/CD
  • unit testing
  • AWS security controls
  • Azure security controls
  • endpoint security
  • network security
  • identity security
  • application security
  • cloud infrastructure security
  • attacker tactics, techniques, and procedures (TTPs)

Nice to have

  • Kubernetes
  • EKS
  • Docker containers
  • ECS
  • threat hunting
  • threat intelligence

What the JD emphasized

  • Must be able to obtain and hold a U.S. Top Secret security clearance