Security Engineer - Detection and Response at Spotify

Stockholm, Stockholm County, Sweden

Spotify Logo
Not SpecifiedCompensation
Mid-level (3 to 4 years), Senior (5 to 8 years)Experience Level
Full TimeJob Type
UnknownVisa
Technology, Music StreamingIndustries

Requirements

  • Experience and interest in security detection engineering and incident response
  • Proven understanding of developer concepts and technologies such as Github, CI/CD, and infrastructure as code
  • Ability to craft repeatable processes and automate tasks using a scripting language or automation platform
  • Understanding of the current threat landscape and building detection and response capabilities in SaaS-oriented corporate IT environments
  • Experience working in cloud environments such as GCP, AWS, or Azure
  • Excitement about using generative AI to build next-generation triage and response tooling

Responsibilities

  • Work with IT, infrastructure, and feature teams across Spotify to identify new detection opportunities and build out signal collection
  • Determine the best solutions for monitoring, processing, and alerting on security-based signals
  • Form repeatable processes for prioritizing and responding to alerts and developing playbooks
  • Mature capabilities to proactively identify security threats and develop detections
  • Participate in response to incidents to drive containment and remediation
  • Work with security technologies such as SIEM, EDR, SOAR, and other platforms
  • Use powerful AI tools to automate, accelerate, and scale engineering capabilities

Skills

Key technologies and capabilities for this role

SIEMEDRSOARGithubCI/CDInfrastructure as CodeScriptingGCPAWSAzureGenerative AIThreat DetectionIncident ResponseSecurity TelemetryLogs

Questions & Answers

Common questions about this position

Is this a remote role or does it require office presence?

The role is based in London (UK) or Stockholm (Sweden) with flexibility to work where you work best, including some in-person meetings but allowing work from home.

What skills and experience are required for this Security Engineer role?

Candidates need experience in security detection engineering and incident response, understanding of developer concepts like Github, CI/CD, and infrastructure as code, scripting or automation skills, knowledge of the threat landscape in SaaS environments, and cloud experience in GCP, AWS, or Azure.

What is the salary or compensation for this position?

This information is not specified in the job description.

What is the company culture like at Spotify?

Spotify emphasizes inclusivity, equal opportunity, and welcoming diverse voices and backgrounds to thrive and innovate together.

What makes a strong candidate for this Security Engineer position?

A strong candidate has hands-on experience in threat detection, incident response, automation scripting, cloud environments, and excitement about using AI for security tooling, along with the ability to build scalable detection infrastructure.

Spotify

Digital music streaming service with podcasts

About Spotify

Spotify provides a digital music streaming service that allows users to access millions of songs and podcasts from various artists and creators. Users can choose between a free plan, which includes advertisements, and a premium subscription that offers an ad-free experience along with features like offline listening and higher sound quality. This tiered model caters to different user preferences and budgets. Spotify generates revenue through subscription fees from premium users and advertising from the free tier. Unlike its competitors, Spotify stands out with its extensive music library, user-friendly interface, and personalized playlists. The company's goal is to connect listeners with a wide range of audio content while supporting artists and advertisers.

Stockholms kommun, SwedenHeadquarters
2006Year Founded
$2,004.2MTotal Funding
IPOCompany Stage
Consumer Software, EntertainmentIndustries
10,001+Employees

Benefits

Extensive learning opportunities, through our dedicated team, GreenHouse
Global parental leave, six months off - fully paid - for all new parents
Flexible public holidays, swap days off according to your values and beliefs
Flexible share incentives letting you choose how you share in our success
All The Feels, our employee assistance program and self-care hub
Spotify On Tour, join your colleagues on trips to industry festivals and events

Risks

Accidental display of adult content may harm Spotify's reputation.
Creating its own music to avoid royalties could lead to legal issues.
Layoffs may affect Spotify's operational efficiency and employee morale.

Differentiation

Spotify offers a vast library of music and podcasts globally.
The platform's user-friendly interface enhances user experience and engagement.
Spotify's personalized playlists cater to individual user preferences.

Upsides

Spotify's AI-powered Wrapped feature enhances user engagement and personalization.
Expansion into political podcasting taps into new audience segments.
Growing podcast popularity in Africa presents expansion opportunities for Spotify.

Land your dream remote job 3x faster with AI