Senior Security Engineer, Detection & Response - Bellevue at Aircall

Seattle, Washington, United States

Aircall Logo
Not SpecifiedCompensation
Senior (5 to 8 years)Experience Level
Full TimeJob Type
UnknownVisa
Technology, SaaSIndustries

Requirements

  • 5+ years of hands-on experience in security operations, detection engineering, incident response, threat hunting, or similar fields (or equivalent combination)
  • Deep knowledge of adversarial tactics, techniques, and procedures (TTPs), threat actor behavior, kill-chain or MITRE ATT&CK framework
  • Proven experience building detections from scratch (versus just tuning commercial alerts)—i.e. you can turn a hypothesis or a threat intel indicator into a production-quality detection with low false positive rate
  • Hands-on experience with SIEM or log analytics platforms (e.g. Elasticsearch, Splunk, Datadog, AWS Athena, OpenSearch or equivalent), and alerting/monitoring tooling
  • Proficiency with a programming or scripting language (e.g. Python, Go, or similar along with IaC - Terraform, Ansible) to build detections

Responsibilities

  • Lead end-to-end development of detection logic: from threat modeling and hypothesis to writing, testing, tuning, and deploying detection rules and alerts (across logs, telemetry, host, network, cloud)
  • Build detection pipelines, orchestration, triage logic, and automation for alert handling and response (e.g. SOAR, playbooks)
  • Conduct threat hunts proactively in corporate and production environments, discovering anomalies and attacker behaviors before they escalate
  • Lead incident response: investigate, contain, remediate, and perform root cause analysis. Drive post-incident reviews and feed lessons learned back into detection strategy
  • Assess and fill gaps in visibility—work with engineering teams to ensure logging, instrumentation, and context are sufficient to detect relevant threats
  • Evolve detection maturity: turn simple signature-based alerts into more advanced behavioral, statistical, ML-driven, and adversary-informed detections, in line with detection engineering maturity models
  • Author and maintain detection documentation, runbooks, alert definitions, tuning guidelines, and metrics
  • Collaborate cross-functionally (Engineering, Product, Fraud, Privacy and Legal) to align detection and response work with product lifecycles and system architecture
  • Be part of on-call rotations or threat-response rotations; escalate, coordinate, and remove blockers during high-severity events
  • Stay up to date on attacker techniques (MITRE ATT&CK, red team reports, threat intel) and propose new detection patterns or responses accordingly
  • Participate in hiring, interview evaluation of Security and Infrastructure engineering candidates, and team growth

Skills

Threat Modeling
Detection Rules
Threat Hunting
Incident Response
SOAR
Playbooks
Logs Analysis
Telemetry
Cloud Security
Network Security
Host Forensics

Aircall

Cloud-based phone system for businesses

About Aircall

Aircall provides a cloud-based phone system that helps businesses manage their voice communications effectively. The platform includes features such as call monitoring, call routing, and the ability to sync data with other business tools like Customer Relationship Management (CRM) systems and helpdesks. It is designed for small to medium-sized businesses (SMBs) and enterprises that need a scalable solution for handling a high volume of calls. Aircall operates on a subscription-based model, where clients pay a recurring fee based on the number of users and features they need. This model allows for continuous updates and support. Additionally, Aircall has an app marketplace where third-party developers can create integrations, enhancing the platform's functionality and providing extra revenue opportunities. The goal of Aircall is to streamline communication for businesses and improve their operational efficiency.

New York City, New YorkHeadquarters
2014Year Founded
$219.4MTotal Funding
SERIES_DCompany Stage
Consumer Software, Enterprise SoftwareIndustries
501-1,000Employees

Benefits

Food Allowance
Snacks & Drinks
Medical Insurance
Competitive Salary
Flexible remote policy
Retirement Savings Plan
Outings & Events
Fitness Fund
Commuter Benefits
Referral Bonus

Risks

Emerging AI-driven platforms may surpass Aircall's current feature set, threatening market share.
Economic downturns could reduce SMB spending on communication tools, impacting revenue.
Privacy regulations in the EU may increase compliance costs for Aircall.

Differentiation

Aircall offers seamless integration with CRM and helpdesk tools for efficient communication.
The platform supports multilingual capabilities, enhancing global reach and customer service.
Aircall's subscription model provides steady revenue and continuous updates for users.

Upsides

Growing demand for AI-driven customer service solutions aligns with Aircall's offerings.
The rise of remote work increases the need for cloud-based communication tools like Aircall.
Projected growth in cloud telephony services presents expansion opportunities for Aircall.

Land your dream remote job 3x faster with AI