Senior Security Operations Engineer

Brex Brex · Fintech · New York, NY +3 · Engineering

This role is for a Senior Security Operations Engineer at Brex, an AI-native intelligent finance platform. The engineer will focus on preventing, detecting, and responding to security threats in corporate and cloud environments, using and developing tools to enhance security capabilities. Responsibilities include incident response, investigation, remediation, and building/maintaining security systems. The role requires experience in corporate security or detection & response, familiarity with CI/CD and cloud environments, and coding experience in Go and Python.

What you'd actually do

  1. Work on a highly cross-functional team to prevent, detect and respond to security threats across Brex's corporate and cloud environments
  2. Perform security incident response, investigation, remediation, and documentation, participate in periodic threat hunting and security exercises
  3. Leading, scoping and building features, participate in designing, and maintaining tools and systems which support the team’s domains – corporate security, detection & response and infrastructure security
  4. Collaborating and partnering with engineering and operations teams to drive remediation of security issues, while balancing prioritization of those security issues within SLA and teams’ respective backlogs
  5. Caring about secure system design, valuing building things correctly, an understanding of a MVP approach and an empathetic mindset when working with others

Skills

Required

  • Experience working in a corporate security, detection & response or infrastructure security role with responsibilities for security alert triage and security incident response
  • Familiarity with CI/CD systems and DevOps workflows (e.g. Buildkite, Flux, Git, Terraform) in cloud environments (e.g. AWS, Azure, GCP)
  • Experience with deploying and maintaining some of the security services and tools owned by the team (e.g. - SIEM, data pipelines, SOAR, domain monitoring, endpoint tooling, email protection tooling, cloud security tools)
  • While not primarily a development role, the team develops and maintains tools written in Go and Python, so experience with coding is required

Nice to have

  • Proficiency with Go and other programming languages
  • Experience with securing distributed systems in AWS, cloud and Kubernetes environments
  • Contributions to the wider technical community (open source, public research, mentorship, community organizing, blogging, presentations, etc)

What the JD emphasized

  • security alert triage
  • security incident response
  • coding is required