Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Detection Engineer (SIEM / Security Observability)

Keeper Security

Description

Keeper Security is seeking a Senior Detection Engineer to advance detection engineering, SIEM operations, and security telemetry across a globally distributed, cloud-native environment. This is a 100% remote position, with an opportunity to work a hybrid schedule for candidates based in the El Dorado Hills, CA or Chicago, IL metro areas.

Keeper's cybersecurity software is trusted by millions of people and thousands of organizations globally. Keeper is published in 23 languages and sold in over 150 countries. Join one of the fastest-growing cybersecurity companies and help advance Keeper's security visibility, detection maturity, and operational readiness.

About Keeper

Keeper Security is one of the fastest-growing cybersecurity software companies that protects thousands of organizations and millions of people in over 150 countries. Keeper is a pioneer of zero-knowledge and zero-trust security built for any IT environment. Its core offering, KeeperPAM®, is an AI-enabled, cloud-native platform that protects all users, devices and infrastructure from cyber attacks. Recognized for its innovation in the Gartner Magic Quadrant for Privileged Access Management (PAM), Keeper secures passwords and passkeys, infrastructure secrets, remote connections and endpoints with role-based enforcement policies, least privilege and just-in-time access. Learn why Keeper is trusted by leading organizations to defend against modern adversaries at KeeperSecurity.com.

About the Job

As a Senior Detection Engineer, you will build and operate the detection and telemetry capabilities that power security visibility across Keeper's production and corporate environments. This role is focused on SIEM engineering, detection logic, alert tuning, telemetry quality, and security observability. You will partner closely with Security Operations, Infrastructure, SRE, and Engineering teams to ensure logs, metrics, traces, and endpoint signals are actionable, scalable, and aligned to real-world threat scenarios. This is a hands-on engineering role for someone who can improve signal quality, reduce noise, and turn security data into operational value.

Responsibilities
  • Design, build, and maintain detection and telemetry capabilities across Datadog, SentinelOne, and Wiz
  • Develop, test, and tune high-fidelity detection rules aligned to real-world attack scenarios and adversary behaviors
  • Continuously improve alert quality by reducing false positives, eliminating noise, and increasing detection accuracy
  • Implement and mature detection-as-code practices for scalable, version-controlled, and testable rule management
  • Define and enforce logging, telemetry, and instrumentation standards across cloud infrastructure, applications, endpoints, and identity systems
  • Build and optimize log ingestion, parsing, normalization, enrichment, and retention pipelines
  • Automate onboarding of new data sources and improve telemetry coverage across production and corporate environments
  • Correlate signals across SIEM, EDR, cloud, identity, and security tooling to improve detection depth and investigation quality
  • Partner with Security Operations to improve triage workflows, incident response readiness, and escalation quality
  • Build dashboards, analytics, and reporting that support operational decision-making across Security, SRE, and Engineering
  • Map and maintain detection coverage against MITRE ATT&CK and help identify visibility gaps
  • Perform detection gap assessments and evolve use cases based on threat intelligence, threat hunting, and emerging risks
  • Collaborate with cloud, infrastructure, product, and compliance teams to strengthen secure logging and observability patterns throughout the software development lifecycle
Requirements
  • 5-8+ years of experience in detection engineering, SIEM engineering, security engineering, or security observability
  • Hands-on experience with SIEM, security analytics, or observability platforms, such as Datadog, SentinelOne, Splunk, Microsoft Sentinel, Elastic, or similar tools
  • Experience building, tuning, and maintaining detection rules, correlation logic, and alerting workflows
  • Strong understanding of security telemetry across cloud, endpoint, identity, and application environments
  • Experience with log parsing, normalization, enrichment, and pipeline management
  • Strong knowledge of cloud environments, with AWS preferred
  • Proficiency in scripting or automation using Python, PowerShell, or similar
  • Solid understanding of modern detection strategies, attacker behaviors, and the MITRE ATT&CK framework
  • Ability to work cross-functionally with Security Operations, Engineering, Infrastructure, and SRE teams
Preferred Qualifications
  • Experience with Datadog Cloud SIEM, SentinelOne, Wiz, or similar modern security platforms
  • Experience with observability concepts including logs, metrics, traces, and instrumentation
  • Experience with SOAR, workflow automation, or response orchestration
  • Familiarity with Sigma or other detection-as-code frameworks
  • Experience in high-scale SaaS, cloud-native, or security product environments
  • Familiarity with zero-trust architectures, identity-centric security, and privileged access management
Benefits
  • Medical, Dental & Vision (inclusive of domestic partnerships)
  • Employer Paid Life Insurance & Employee/Spouse/Child Supplemental life
  • Voluntary Short/Long Term Disability Insurance
  • 401K (Roth/Traditional)
  • A generous PTO plan that celebrates your commitment and seniority (including paid Bereavement/Jury Duty, etc)
  • Above market annual bonuses
Keeper Security, Inc. is an equal opportunity employer and participant in the U.S. Federal E-Verify program. We celebrate diversity and are committed to creating an inclusive environment for all employees.

Classification: Exempt

Keeper Candidate Privacy Notice

This notice explains how Keeper Security processes your personal data during recruitment. Depending on the role and location, the Controller of personal data (the organization responsible for determining why and how personal data is processed) will be Keeper Security Inc. (US), Keeper Security EMEA Ltd. (Ireland), or Keeper Security APAC K.K (Japan).

1. Data We Collect

Information You provide:
  • Contact details, CV/resume, cover letter
  • Employment history, qualifications, work eligibility
  • Application responses and uploaded documents
Information We generate:
  • Interview notes, assessments, communications
  • Scheduling information
Information From Others:
  • Recruiter/referral information who submit your profile
  • References (with your consent, before final offer)
  • Public professional profiles
  • Background verification (post offer)
Voluntary Diversity and Equal Opportunity Information
  • We may ask you to voluntarily provide diversity information including race/ethnicity, gender, disability status and veteran status (US). Providing this information is optional and Keeper collects this data in order to comply with EEOC and similar requirements
2. How We Use Your Data
  • Assess your application and suitability
  • Manage interviews and recruitment workflow
  • Consider you for other/future roles (we may seek your consent to keep your information on our systems beyond the retention period specified)
  • Comply with employment law obligations
3. Legal Basis
  • Legitimate Interests (recruitment management, security and integrity of the hiring process)
  • Contracting steps (for progressed candidates)
  • Legal and regulatory compliance obligations; explicit consent where required
4. Who We Share Information With

Internal:
  • HR, hiring managers, interviewers*, IT support for system administration
*Note - diversity and equal opportunity data is not shared with hiring managers.

Third Parties:

Service providers who assist with:
  • Applicant tracking, recruitment systems and assessment providers
  • Background verification vendors (post offer)
  • Recruitment agencies (where applicable)
  • Tools to support communication, collaboration and to securely store your data
Keeper ensures that all our third parties are contractually bound to protect your personal data with adequate safeguards in place.

5. International Transfers

Your data may be accessed by Keeper entities globally as needed for the purposes of hiring and decision making. We protect any such data transfer between Keeper entities using appropriate safeguards under applicable data protection laws.


6. Security

We implement appropriate technical and organizational measures to protect your data, consistent with our industry leading security standards.

7. Retention

We keep your data for 24 months from your last application activity, then delete or anonymize it.


Exceptions:
  • You opt into our talent database for further retention by providing consent (extended retention)
  • You're hired (transfers to employee records)
8. Your Rights

You have the following rights and can contact us at the email below to exercise them:
  • Access, correct, or delete your data, subject to applicable law and retention requirements
  • Object to or restrict processing
  • Withdraw consent (where applicable)
  • Request data portability
  • Lodge a complaint with your data protection authority

If you become an employee, your rights regarding your employee record are governed by our internal Employee Privacy Notice and certain data will be retained as required under relevant laws such as employment or tax law.


When you request access to your personal data, some information may be redacted if it includes the personal data of other individuals or information that we must protect in order to preserve their privacy rights.

9. Automated Decisions

Keeper does not make hiring decisions using solely automated processing.

10. Contact - Candidates can send privacy questions to: View email address on click.appcast.io
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Senior Detection Engineer (SIEM / Security Observability) in United States vacancy
  •  ...Senior Detection Engineer (SIEM / Security Observability) Remote, US Description Keeper Security is seeking a Senior Detection Engineer to advance detection engineering, SIEM operations, and security telemetry across a globally distributed, cloud‑native environment. This... 
    Senior
    Remote work

    Keeper Security

    New York, NY
    4 days ago
  •  ...Zscaler is looking for a Senior Detection Engineer to join their team in Costa Rica, reporting to the Senior Manager of Threat Hunting. The role...  ...Candidates should have experience developing detection rules in SIEM tools and familiarity with the MITRE ATT&CK framework. The... 
    Senior

    Zscaler

    New York, NY
    4 days ago
  •  ...Responsibilities The Senior SIEM Engineer plays a key role in advancing Norton Healthcare's security monitoring and detection capabilities. This role leads the technical design, implementation and optimization of SIEM ingestion pipelines, analytics, enrichment and... 
    Senior
    Remote work

    Norton Healthcare

    United States
    2 days ago
  •  ...A cybersecurity software company is looking for a Senior Detection Engineer to enhance detection engineering and operations in a fully remote...  ...of relevant experience, including hands-on work with SIEM and security analytics tools. A solid understanding of cloud environments... 
    Senior
    Remote work

    Keeper Security

    United States
    4 days ago
  •  ...Walgreens' Threat Detection and Response...  ...and responding to security incidents across...  ...enterprise. As a senior-level individual...  ..., telemetry, and observability Conducting proactive...  ...using SIEM platforms such as...  ...inform detection engineering and response operations... 
    Senior
    Work at office
    Remote work

    Walgreens Boots Alliance

    Deerfield, IL
    1 day ago
  • $123k - $180k

     ...and lives depend on, we've built the industry's only all-in-one solution. We're looking for a Senior Security Engineer to lead our Elastic SIEM and Detection Engineering program. This is an engineering-first role focused on building scalable detection pipelines... 
    Senior
    Worldwide
    Flexible hours

    Acronis

    Burlington, MA
    2 days ago
  • $120k - $150k

     ...Ahead is seeking a Sr SIEM Detection Engineer to lead the design and maintenance of high-fidelity detection content within our cloud-based SIEM...  ..., strong analytical skills, and proficiency in multiple security technologies. The position offers a salary range of $120,00... 
    Senior

    AHEAD USA

    New York, NY
    4 days ago
  • $126k - $154k

    A leading marketing platform is seeking a Senior Detection Engineer to advance security operations. You will design advanced detection logic and build automated workflows to enhance security. The ideal candidate has at least 5 years of experience in security operations,... 
    Senior

    ActiveCampaign

    Chicago, IL
    11 days ago
  • $195k - $240k

     ...about offensive security a little bit differently...  ...our offensive engineers to build the...  ...re looking for a Senior Security Engineer...  ...defensive controls (EDR, SIEM, network...  ...Partner with the Detection & Response team on...  ...Datadog is the leading observability and security... 
    Senior
    Work at office

    Datadog

    New York, NY
    2 days ago
  • $141.6k - $212.4k

     ...Senior Security Engineer – Detection and Response Klaviyo is looking for a Senior Security Engineer to...  ...response systems to enhance our security observability capabilities. This role will also...  ...logging, data lakes, and SIEM solutions ~ Familiarity with large... 
    Senior

    Venturefizz Product Management Community

    United States
    8 days ago
  • $98k - $176k

     ...that Target operates smoothly, securely and reliably from the inside out. As a Senior SIEM Engineer, you will: Own and...  ...Management Engineering, Threat Detection & Operations, Cyber Threat Intelligence...  ...preventative fixes via observability, runbooks, and automation.... 
    Senior
    Temporary work
    Work experience placement
    Flexible hours
    Shift work

    Target Brands, Inc.

    Minneapolis, MN
    12 days ago
  • $141.6k - $212.4k

     ...destiny. Klaviyo is looking for a Senior Security Engineer to add to our growing Detection and Response (D&R) Team. This is...  ...systems to enhance our security observability capabilities. This role will...  ...logging, data lakes, and SIEM solutions ~ Familiarity with large... 
    Senior

    Klaviyo

    Boston, MA
    3 days ago
  •  ...SUMMARY Serve as a senior member of the Cybersecurity Engineering team responsible for designing...  ...optimizing enterprise security monitoring and...  ...maturity of the organization's SIEM platform with a focus on...  ...to improve threat detection, incident response, and... 
    Senior
    Work at office

    Red Lobster

    Orlando, FL
    1 day ago
  •  ...Security Engineer Due to continuing growth, we are seeking a Security Engineer focused on securing...  .... This role is responsible for detecting and responding to threats across Entra...  ...thresholds, and signal-to-noise ratios within SIEM and Microsoft security tools Perform... 
    Work at office
    Remote work

    Platform Accounting Group

    United States
    3 days ago
  •  ...Developer Experience Security Engineer Motorway is rapidly growing its technology team and...  ..., and are currently enhancing our observability, reliability, and developer-focused tooling...  ...-wide security use cases (e.g. SIEM detections, alerts, and signals) that scale across... 
    Senior
    Remote work
    Shift work

    Motorway

    United States
    2 days ago
  • $139.2k - $218.4k

     ...operational efficiency, reduce security and compliance risk, and...  ...of this role As a Senior Security Engineer on GitLab's Security Incident...  ...continuous improvements in defense, detection and response capabilities,...  ...capabilities, including SIEM use cases, alerting... 
    Senior
    Full time
    Remote work
    Flexible hours

    GitLab

    United States
    2 days ago
  •  ...automation with Moveworks' Reasoning Engine and natural language...  ...for everyone. The Moveworks Security team at ServiceNow is not...  ...autonomous workflows that handle detection, triage, and remediation at...  ...high-fidelity detections in our SIEM, EDR, and AI SOC platforms... 
    Senior
    Work at office
    Immediate start
    Remote work
    Flexible hours

    ServiceNow

    Mountain View, CA
    2 days ago
  •  ...Position: Senior NDR & Platform Observability Engineer Location : Remote Senior NDR...  ...of the enterprise Network Detection & Response (NDR)...  ...pipelines. This role combines security operations expertise with...  ...exporters. • Experience with SIEM platforms and log... 
    Senior
    For contractors
    Remote work

    Futran Tech Solutions Pvt. Ltd.

    United States
    2 days ago
  • $196k - $220.5k

     ...We are looking for an experienced Senior Enterprise Security Engineer reporting to the Engineering Manager...  ...misuse. Partner closely with the Detection & Response team to maintain full visibility...  ...Experience working with SIEMs (we use Panther) Hands on experience... 
    Senior
    Full time
    Work at office
    Relocation
    Relocation package
    2 days per week
    1 day per week

    Discord

    San Francisco, CA
    4 days ago
  • $165k - $242k

     ...Senior Security Engineer, Enterprise Security The Enterprise Security team at CoreWeave is responsible...  ...everything you can Partner on detection, response, and governance Minimum...  ...and access decisions. ~ Exposure to SIEM/detection ecosystems (e.g., Elastic) and... 
    Senior
    Permanent employment
    Temporary work
    For contractors
    Casual work
    Work at office
    Remote work
    Flexible hours

    CoreWeave

    United States
    5 days ago
  • $140k - $175k

     ...to Arcadia Arcadia is seeking a Senior Engineer - Security (Application Security) to play a key hands...  ...while actively contributing to detection, incident response, and threat mitigation...  ...Experience with security tools such as SIEM, SAST/DAST, EDR, vulnerability scanners... 
    Senior
    Remote work

    Arcadia

    United States
    2 days ago
  •  ...Detection Engineer / SIEM Analyst Remote At Ardent, we hire people who want more than a job — they want to serve a mission that matters...  ...teams support the federal government's most critical national security and defense priorities, helping protect the nation,... 
    Local area
    Remote work
    Flexible hours

    Ardent Services

    United States
    2 days ago
  •  ...What You'll Do Platform Engineering & Development: Design, develop, and maintain security-focused platforms using scripting languages...  ...implement advanced monitoring, detection, and response solutions....  ..., ISO, SOC2). Familiarity with SIEM, SOAR, EDR, and other SecOps platforms... 
    Senior
    Local area

    General Motors

    New York, NY
    2 days ago
  •  ...Senior Engineer, Information Security At Carvana, we're changing the way people buy and sell cars. With an...  ...team is responsible for monitoring, detecting, and reporting cyber threats, your role...  ...integrating various security tools (SIEM, EDR, Firewalls, etc.). ~... 
    Senior
    Full time

    Carvana

    Tempe, AZ
    4 days ago
  •  ...Role: Senior NDR & Platform Observability Engineer / Architect Location: Remote...  ...of the enterprise Network Detection & Response (NDR) environment...  ...pipelines. This role combines security operations expertise with...  .... • Integrate with SIEM, and packet broker APIs... 
    Senior
    Contract work
    For contractors
    Remote work

    AceStack LLC

    United States
    4 days ago
  •  ...Job Description: Role: Senior DSPM Engineer (Individual Contributor) Function...  ...Cybersecurity / Information Security Reports To: Leader, Data...  ...data, classify it, detect risk, and drive remediation...  ...between Cortex, Dig, 1touch.io, SIEM/SOAR, ticketing (Jira/ServiceNow... 
    Senior
    For contractors
    Live in
    Work at office
    Immediate start

    Navtech

    Phoenix, AZ
    4 days ago
  • $140.9k - $253.6k

     ...empathy and respect for each other. Senior Engineer, IT Security for Nintendo Technology Development...  ...post-incident hardening. Observability, Detection & Response Build and...  ...across Win/macOS/Linux. ~ Logging/SIEM: Splunk or equivalent (search, dashboards... 
    Senior
    Local area
    Worldwide

    Nintendo

    Redmond, WA
    4 days ago
  •  ...Senior Operations Engineer If you are looking for a career at a dynamic company...  ...for the overall security posture of ACV Auctions Threat...  ...environments Develop and refine detection logic, correlation rules,...  ...behavioral analytics within SIEM and EDR platforms Map adversary... 
    Senior
    Temporary work
    Local area
    Remote work
    Visa sponsorship
    Work visa

    ACV Auctions

    United States
    4 days ago
  • $101k - $194k

     ...doing… The GN&T Network Security team is looking for a highly...  ...motivated and experienced Senior Network Security Engineer to join the Security...  ...and roadmap, develop threat detections, safeguard through proactive...  ...Information and Event Management (SIEM) tools, specifically... 
    Senior
    Full time
    Temporary work
    Part time
    Work experience placement
    Work at office
    Work from home
    Shift work
    3 days per week

    Verizon

    Cary, NC
    3 days ago
  •  ...Services (KGS) company, is hiring a Senior Network Engineer (Security). Position requires an active Top Secret...  ...logs, events, and packet data to detect and respond to threats. Support zero...  ...Supporting enterprise security toolsets, SIEM, and intrusion-detection platforms.... 
    Senior
    Local area
    Remote work
    Flexible hours

    Koniag

    Washington DC
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Detection Engineer (SIEM / Security Observability). Be the first to apply!