Principal Security Engineer, Detection & Response
Circle
Circle (NYSE: CRCL) is one of the world’s leading internet financial platform companies, building the foundation of a more open, global economy through digital assets, payment applications, and programmable blockchain infrastructure. Circle’s platform includes the world’s largest regulated stablecoin network anchored by USDC, Circle Payments Network for global money movement, and Arc, an enterprise-grade blockchain designed to become the Economic OS for the internet. Enterprises, financial institutions, and developers use Circle to power trusted, internet-scale financial innovation. Learn more at circle.com.What you’ll be part of:Circle is committed to visibility and stability in everything we do. As we grow as an organization, we're expanding into some of the world's strongest jurisdictions. Speed and efficiency are motivators for our success and our employees live by our company values: High Integrity, Future Forward, Multistakeholder, Mindful, and Driven by Excellence. We have built a flexible work environment where new ideas are encouraged and everyone is a stakeholder.What you'll be responsible for:The Circle Security Team works to protect Circle; our customers, clients, and partners; and the financial markets upon which we rely.As a member of this team, you'll lead projects and be responsible for key deliverables of the security program while collaborating across Circle teams. You will continue to learn and stay current in a fun and rapidly changing environment.This role sits at the intersection of three of Circle's highest-stakes threat surfaces: our blockchain and custody environments (USDC issuance, Arc, on-chain monitoring), our cloud-native infrastructure (AWS + EKS), and the AI tooling Circle adopts internally and ships in product. You'll build detection coverage and response capability across all three; not as a generalist, but as a Principal who can go deep on each.Also note that this position will require you to perform on-call duties mainly during working hours to support security operations, and you will assist the team with the occasional night time and weekend incident. We would also like someone with a strong response background and some exposure to insider risk.What you'll work on:Proactively identify and respond to emerging security threats across cloud, endpoint, blockchain, and AI surfaces.Build detection and response capability for blockchain and crypto-native threats: on-chain anomalies, custody-vault interactions, wallet abuse, smart contract exploitation, and protocol-level attackers targeting USDC and Circle's blockchain products.Develop detection coverage for cloud-native attacks across AWS + EKS: IAM compromise, identity federation abuse, lateral movement in containerized workloads, runtime exploitation, and misconfiguration drift.Extend detection for AI-specific risks: shadow AI adoption, unauthorized AI integrations, agentic workflows and MCP/tool abuse, and AI-driven credential exposure.Advance deployment of AI to the SOC function including detection triage, enrichment, and analyst-acceleration workflows.Develop plans to manage and maintain core tooling, such as SIEM and Orchestration platforms.Identify gaps in our infrastructure, and work with business partners to gain visibility through logging and detection.Lead and respond to incidents and collaborate across teams to investigate and resolve.Develop detection techniques to identify anomalous behaviors and attacks across the environment.Provide security guidance to various organizations throughout the company.Support broader security team projects such as threat modeling, vulnerability scanning, audits, and custom tool building.Take on-call shifts (every 3rd week and occasional weekend).What you'll bring to Circle:Strong ability to work collaboratively across teams during high-stress situations, which sometimes involves after hours work.Ability to manage multiple competing priorities and use good judgment to establish order of priorities on the fly.Self-motivated and creative problem-solver able to work independently with minimal guidance.Experience/familiarity with Slack, Apple macOS, and GSuite.We're looking for strong, impactful work experience, which typically includes:10+ years of experience in detection, response, or security engineering.3+ years of experience commanding security incidents, especially those involving engineering.Deep cloud security knowledge in AWS environments: IAM, identity federation, KMS, EKS/container attack patterns, runtime exploitation, and CSPM tooling (e.g., Wiz). Some exposure to GCP or OCI is preferred.Working knowledge of blockchain and crypto-native threats: wallet and custody attack patterns, on-chain monitoring, protocol-level risks, and smart contract abuse. Direct experience defending blockchain, custody, or DeFi infrastructure is strongly preferred.Hands-on experience using AI tooling both to accelerate work and to address threats, coupled with a strong understanding of the organizational risks AI introduces shadow AI, agentic workflows, MCP/tool integrations, and strategies to defend against them.Extensive knowledge of SIEM, Case Management, and SOAR solutions (e.g., Panther, Tines).Knowledge of operating systems, file systems, and memory on macOS.Programming experience in Python, Golang, or similar programming languages.Experience with building Detections As Code.You are the right person if you:View Security Detection & Response as a data and engineering problem.Exude positivity.Aren't afraid to share your ideas.Meet problems head-on and view them as opportunities.Are self-reliant and motivated.Communicate fearlessly.Circle is on a mission to create an inclusive financial future, with transparency at our core. We consider a wide variety of elements when crafting our compensation ranges and total compensation packages.Starting pay is determined by various factors, including but not limited to: relevant experience, skill set, qualifications, and other business and organizational needs. Please note that compensation ranges may differ for candidates in other locations.Base Pay Range: 110,000.00 - 170,000.00We are an equal opportunity employer. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status, or any other protected status required by the laws in the locations where we hire. Additionally, Circle participates in the E-Verify Program in certain locations, as required by law.Should you require accommodations or assistance in our interview process because of a disability, please reach out to View email address on click.appcast.io for support. We respect your privacy and will connect with you separately from our interview process to accommodate your needs.#LI-RemoteJob SummaryJob number: JR101051Profession: Security
$230k - $260k
...we build.We’re looking for a hands-on Detection Engineer to build and operate the systems and workflows... ...powers them, participate in incident response, and help shape how detection and... ...closely with Engineering, Corporate Security, and Infrastructure, with broad latitude...SuggestedLocal area- ...team.Our ValuesIf this sounds like you, you’ll fit right in.Who You AreJustworks is looking for an experienced security engineer skilled in detection and response, who can help enhance and mature Justworks’ Security. As a Senior Detection Engineer, you’ll design, build,...SuggestedCasual workLocal area
$237.6k - $297k
We are seeking a Senior Security Engineer with a specialty in Detection and Incident Response to join our Security Engineering team. This role sits at the intersection of security operations and software engineering — you won't just investigate incidents, you'll build the...SuggestedFull time$112.3k - $151.5k
...enabled business, our approach to security operations must evolve and... ...are looking for a Security Engineer with a diverse set of skills... ...expect to help us improve our detections as well as create additional... ...build out new detections and response workflowsProvide triage support...SuggestedLocal areaFlexible hours- ...love to have you on board! Position Overview As our IT/OT Security Engineer & Incident Response Lead, you'll be a hands-on security engineer who also... ...EDR (CrowdStrike Falcon), investigate and tune detections, and drive risk-based vulnerability remediation with Infrastructure...SuggestedRemote work
$192.6k - $260.5k
Amazon's Specialized Businesses Security team is seeking a Security Engineer Manager to lead our Specialized Detections team. This is a forward-driving leadership role: you... ...exposure across Amazon's estate.Key job responsibilities- Work backwards from our Business...Remote workFlexible hours$139k - $204k
...demanding AI infrastructure — and threat actors know it. The Advanced Response Team exists to fight back. You'll lead our most critical... ...and build the capabilities to stay left of boomWork alongside security partners who hold a high bar and expect you to raise itShape how...Permanent employmentFull timeTemporary workCasual workWork at officeFlexible hours- ...where we have a legal entity. Responsibilities In this role, you’ll lead high-impact... ...shape how Atlassian responds to security events at scale. You’ll lead or... ...under pressure. You’ll partner with Detection, Security Engineering, Product Security, Legal, Crisis Communications...Work at officeLocal area
$192k - $240k
As Engineering Manager for Threat Detection, you will lead a high-performing team that powers Datadog's detection... ...Detection is the organization responsible for keeping Datadog ahead of an evolving... ...You will partner closely with our Security Incident & Response Team (SIRT),...Work at officeShift work$159.3k - $212.8k
...understanding of proactive security, have past experience leading... ...ability to work with product and engineering teams in designing secure... ...tooling for designing new detections within Amazon’s various security... .... Our organization is responsible for creating and maintaining...InternshipFlexible hours$165k - $242k
...at .What You’ll Do:The Enterprise Security team at CoreWeave is responsible for securing how our people work every... ...the Role:As a Senior Security Engineer, Enterprise Security, you’ll design... ..., SaaS posture).Partner on detection, response, and governanceWork with...Permanent employmentFull timeTemporary workFor contractorsCasual workWork at officeRemote workFlexible hours$195k - $240k
...at Datadog, we think about offensive security a little bit differently. We embrace automation... ..., and we expect our offensive engineers to build the tooling that makes that possible... ...reporting workflowsPartner with the Detection & Response team on purple team exercises to...Work at office- ...Description About AppGate AppGate secures and protects an organization's... ...We're looking for an OT Security Engineer (Senior / Staff / Principal) who will design, build, and evolve... ...to 5–7 engineers). Key Responsibilities Your engineering work will directly...For contractorsRemote workWorldwide
- A travel and technology company seeks a Senior Security Operations Engineer to enhance security operations and incident response processes. This role requires deep expertise in AWS, GCP, and SIEM tools, along with a proactive mindset for continuous improvement. The candidate...Flexible hours
$165k - $242k
...lead and scale CoreWeave's Platform Security engineering function, owning how security is designed... ...integrity controls. This role is responsible for running, evolving, and operating... ...Collaborate with Security Operations on detection, investigation, and response for...Permanent employmentFull timeTemporary workCasual workWork at officeFlexible hours- Others build the systems that detect the attacks everyone else... ...looking for a senior Detection Engineering leader to build and evolve detection... ...Threat Detection or Incident Response capabilities at AWS,... ...leveraged, and AI is adopted securely across a highly technical environment...3 days per week
- Palo Alto Networks is seeking a Principal Technical Marketing Engineer for Prisma AIRS to join the team responsible for driving AI security. You will work with cutting-edge technology and influence the go-to-market strategy for next-generation solutions. You will support...
$204k - $255k
...way. The Community You Will Join: The Threat Detection and Response team (TDR) at Airbnb is focused on automating security detection, responding to security incidents,... ...threats and malicious activity. We are seeking an Engineering Manager to lead our Investigations & Incident...Work experience placementCasual workLive inWork at officeRemote work- 1440 Foods is seeking an IT/OT Security Engineer & Incident Response Lead to join our manufacturing security team in New York. You will be the hands-on security engineer during business hours, leading incident response across corporate, cloud, and OT environments and coordinating...
- S&P Global is seeking a Cyber Incident Response Analyst to join the Cyber Defence team. You will detect, analyze, and respond to security incidents, enrich investigations with intelligence, and drive proactive defences across endpoints, networks, cloud, and SaaS. Your...
$75k - $100k
...The Incident Response Analyst is responsible for monitoring, investigating, and responding to security alerts and incidents across the organization. This role partners with... ...Trojan malware. Experience with Endpoint Detection and Response tools such as Carbon Black, SentinelOne...Full time- ...the B2B commerce and payments market and is seeking a lead security engineer to stand up security across the product and... ...and product security, work across cloud infrastructure, detection and response, and compliance as needed, helping the team move fast while...
- ...are we?Cohere is the leading security-first enterprise AI company.... ...we build. Each one of us is responsible for contributing to... ...Cohere is a team of researchers, engineers, designers, and more, who are... ...vulnerability management, SAST, DAST, detection engineering, and incident...Work at officeLocal areaRemote workHome officeFlexible hours
$240k - $270k
...core values - Collaborative, Responsible, Entrepreneurial, Self-Aware... ...to: Cybersecurity Engineering ManagerDirect Reports: NonePOSITION... ...an experienced Application Security Engineer to build, mature, and... ...container/IaC scanning, and secret detection tools into pipelines for...Full timeTemporary workWork experience placementFlexible hours$175k - $220k
...the RoleWe are looking for a highly technical Senior Security Engineer who thrives on building security capabilities from... ...streamline Cloud vulnerability management, Network Security, Detection engineering, Incident response, access governance, and security operations.Use...Full timeWork at office$153k - $376k
...design and collaboration, join us!As a Security Engineer you will identify and drive impactful... ...also participate in operational security responsibilities like security reviews, consulting,... ...infrastructure.Build platforms and tooling to detect and respond to infrastructure and...Minimum wageFull timeLocal areaRemote workFlexible hours$100k - $150k
...compliance, technology, and engineering consulting solutions. Professional... ..., including electronic security, audiovisual, IT/tele/data... ...systems, life safety, fire detection/protection, and low voltage... ..., and bid meetings.Complete responsibility and providing construction administration...Full timeFor contractorsWork at officeLocal areaRemote workFlexible hoursNight shift$165k - $242k
...7, CoreWeave became a publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at .Senior Security Engineer, SOARWhat You’ll Do:CoreWeave’s Detection and Response team is responsible for empowering and deploying decisive action across the enterprise to react to...Permanent employmentFull timeTemporary workCasual workWork at officeFlexible hours$163.94k - $215.18k
...Identity and Access Manager to join our Security Team.Oscar is the first health... ....As an Identity and Access Management Engineer, you will build Oscar's identity and access... ...architectures, and build identity threat detection and response capabilities that protect workforce,...Full timeWork at officeFlexible hours$174k - $252k
...investigations on a wide variety of security and privacy events from... ...of experience with security engineering, computer and network... ...digital forensics and incident response tools such as GRR, Plaso (log... ...might be for you! Google’s “Detection and Response” team finds and...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Security Engineer, Detection & Response. Be the first to apply!
- principal network engineer New York, NY
- principal application developer New York, NY
- director sales engineering New York, NY
- civil engineer project manager New York, NY
- principal security engineer New York, NY
- principal engineer New York, NY
- principal battery engineer New York, NY
- principal infrastructure engineer New York, NY
- director quality engineering New York, NY
- senior civil engineer project manager New York, NY


