Senior Security Software Engineer, Detection and Response

Discord Discord · Consumer · Remote · Security Engineering

This role focuses on building scalable detection systems, automating response workflows, and developing tooling for security threats within Discord's cloud infrastructure, applications, and enterprise systems. It involves large-scale log analysis, behavioral signals, threat hunting, and shipping production code for security purposes.

What you'd actually do

  1. Build detection systems at scale.
  2. Engineer response automation.
  3. Lead incident response.
  4. Architect observability.
  5. Hunt proactively.

Skills

Required

  • 3+ years in Detection and Response as a senior IC
  • 3+ years programming in Python or similar
  • Strong experience with cloud security monitoring and investigations
  • Experience in building detections from large datasets
  • Experience automating incident response processes
  • Deep knowledge of attacker TTPs, malware analysis, and threat hunting methodologies
  • Experience with container orchestration (Kubernetes) and/or serverless technologies (Cloud Functions, Workers)
  • Familiarity with distributed systems observability and log analysis at scale

Nice to have

  • Hands-on experience with Panther SIEM
  • Background in BeyondCorp / Zero-trust environments
  • Experience with Cloudflare security tooling
  • Contributions to open-source security projects

What the JD emphasized

  • building (not just operating) security tooling
  • write production code, not just scripts
  • building detections from large datasets
  • automating incident response processes
  • cloud security monitoring and investigations