Senior Security Operations Engineer

Brex Brex · Fintech · New York, NY +3 · Engineering

Brex is seeking a Senior Security Operations Engineer to prevent, detect, and respond to security threats across their corporate and cloud environments. This role involves using and developing tools to enhance security capabilities, working closely with various security and IT teams, and contributing to the open-source project Substation. The ideal candidate has a strong background in incident response, familiarity with CI/CD and cloud environments, and experience with security tools. Coding experience in Go and Python is required.

What you'd actually do

  1. Work on a highly cross-functional team to prevent, detect and respond to security threats across Brex's corporate and cloud environments
  2. Perform security incident response, investigation, remediation, and documentation, participate in periodic threat hunting and security exercises
  3. Leading, scoping and building features, participate in designing, and maintaining tools and systems which support the team’s domains – corporate security, detection & response and infrastructure security
  4. Collaborating and partnering with engineering and operations teams to drive remediation of security issues, while balancing prioritization of those security issues within SLA and teams’ respective backlogs
  5. Caring about secure system design, valuing building things correctly, an understanding of a MVP approach and an empathetic mindset when working with others

Skills

Required

  • Experience working in a corporate security, detection & response or infrastructure security role with responsibilities for security alert triage and security incident response
  • Familiarity with CI/CD systems and DevOps workflows (e.g. Buildkite, Flux, Git, Terraform) in cloud environments (e.g. AWS, Azure, GCP)
  • Experience with deploying and maintaining some of the security services and tools owned by the team (e.g. - SIEM, data pipelines, SOAR, domain monitoring, endpoint tooling, email protection tooling, cloud security tools)
  • experience with coding is required
  • Go
  • Python

Nice to have

  • Proficiency with Go and other programming languages
  • Experience with securing distributed systems in AWS, cloud and Kubernetes environments
  • Contributions to the wider technical community (open source, public research, mentorship, community organizing, blogging, presentations, etc)

What the JD emphasized

  • prevent, detect and respond to security threats
  • security incident response
  • security issues