Staff Security Engineer - Detection & Response

Crusoe · Data AI · Dublin - IE · IT, Compliance, and Security

Staff Security Engineer focused on Detection & Response, architecting defense strategies, tuning correlation models, and integrating AI into response workflows. Requires extensive cyber experience, Detection as Code mastery, cloud proficiency, and Python scripting.

What you'd actually do

  1. Architect and implement advanced detection mechanisms to proactively hunt for threats across on-premise and cloud environments (GCP).
  2. Lead high-stakes response efforts and forensic investigations, managing everything from initial triage and mitigation to post-incident stakeholder communication.
  3. Manage and refine alerting rules to maximize signal-to-noise ratios, utilizing modern workflows to ensure detections are version-controlled, tested, and scalable.
  4. Build and maintain a robust library of automated playbooks and scripts to reduce manual intervention and accelerate our mean time to respond (MTTR).
  5. Partner with Engineering, Product, and Legal teams to align security operations with organizational goals, ensuring our defense scales with our infrastructure.

Skills

Required

  • 6+ years of professional experience in cybersecurity, specifically focused on detection, incident response, and security automation.
  • Detection as Code workflows
  • GCP
  • Python for security scripting, automation, and building custom tooling.
  • incident handling and forensic investigations across Unix/Linux, Windows, and Mac endpoints.
  • Terraform, Docker, Kubernetes, and Ansible.
  • build, scale, and manage open-source security observability solutions and network security at scale.

Nice to have

  • Experience or interest in integrating AI and machine learning into automated response workflows
  • integrating complex threat intelligence feeds directly into automated SOAR playbooks.
  • GCIA, GCIH, or cloud-specific security certifications.
  • working within high-growth tech environments or companies focused on energy and sustainable infrastructure.
  • A portfolio of technical blog posts, white papers, or advanced documentation

What the JD emphasized

  • Detection as Code Mastery
  • extensive cyber experience
  • Expert-level proficiency in Python
  • SOC 2 and HIPAA compliance frameworks