Senior Security Engineer, Detection & Response
$180k - $220kAircall.io, Inc.
Job Description
Job Description
Aircall is a unicorn, AI-powered customer communications platform used by 22,000+ companies worldwide to drive revenue, resolve issues faster, and scale customer-facing teams. We're redefining customer communications by bringing voice, SMS, WhatsApp, and AI together into one seamless workspace.
Our momentum comes from a simple idea: help teams work smarter, not harder. Aircall's AI Voice Agent automates routine calls, AI Assist streamlines post-call work, and AI Assist Pro delivers real-time guidance so people can do their best work. The result is higher revenue, faster resolutions, and teams that scale with confidence.
Aircall is headquartered in Paris, our European HQ, with a strong North American presence anchored in Seattle, our North American HQ, and teams across Madrid, London, Berlin, San Francisco, New York City, Sydney, and Mexico City. We've built a product customers love and a business that's scaling quickly, backed by world-class investors and driven by rapid AI innovation across multiple product lines.
At Aircall, you'll join a company in motion. We're ambitious, product-driven, and execution-focused, with visible impact, fast decisions, and real growth.
How we work at Aircall : We're customer-obsessed, data-driven, and focused on delivering meaningful outcomes. We value ownership, continuous learning, and thoughtful speed. If you thrive in a collaborative, fast-moving environment where trust and impact matter, you'll feel at home here.
About the Role
As a Senior Security Engineer, Detection and Response you will develop, scale, and evolve Aircall's threat detection and response capabilities. You will take ownership of building detections from scratch, leading investigations, and driving the maturity of our detection program.
This is an owner-operator role. You will not be solely responding to alerts or consuming a detection platform that someone else runs, you will build and run it: the ingestion pipelines, the Terraform that defines them across sandbox, staging and production AWS accounts, the retention and cost posture, and the automation layered on top. Roughly two-thirds of the work is software and platform engineering; the remaining third is investigation, incident response and threat hunting. Expect to write production Python and Terraform every week, working alongside a product security, cloud and infrastructure security team you will partner with closely.
Our team builds the best solutions to our biggest problems, over the past year we've built our own AI SOC & IR agent, and we're applying those lessons to how we protect customer-facing AI products.
Responsibilities
- Leading direction and strategy of the DART program at Aircall
- Lead end-to-end development of detection logic: from threat modeling and hypothesis to writing, testing, simulation, tuning, and deploying detection rules and alerts across logs, telemetry, host, network, and cloud.
- Own the security data platform end to end. Operate and extend the SIEM and its ingestion pipelines, parsers, enrichment and normalization, defined as infrastructure-as-code and promoted from sandbox to production. Own its cost and capacity envelope and make the retention-versus-spend calls.
- Experiment and build unique tools at the front of the security space that solve significant security challenges.
- Expand and ship new security AI- and agent-based tooling for alert triage, investigation and detection building, including its authorization model, guardrails, evaluation harness and tracing.
- Conduct threat hunts proactively in company wide and production environments, discovering anomalies and attacker behaviors before they escalate.
- Lead incident response: investigate, contain, remediate, and perform root cause analysis. Drive post-incident reviews and feed lessons learned back into detection strategy.
- Assess security around new product features, including AI- and LLM-backed services and opportunities for detections or protections
- Author and maintain detection documentation, runbooks, alert definitions, tuning guidelines, and metrics.
- Collaborate cross-functionally with Engineering, Product, Fraud, Privacy and Legal
- Participate in on-call and threat-response rotations; escalate, coordinate, and remove blockers during high-severity events.
- Stay current on attacker techniques (MITRE ATT&CK, red team reports, threat intel) and propose new detection patterns or responses accordingly.
- Participate in hiring and interview evaluation of Security and Infrastructure engineering candidates, and in team growth.
Should have
- 5+ years of hands-on experience in security operations, detection engineering, incident response, threat hunting, or similar fields, or an equivalent combination.
- Production-grade Python and Terraform. A meaningful majority of this role's output is building detections managed in code, logging pipelines and custom security tools to scale sec ops. You should be able to point to services or Lambdas you built and Terraform modules you own and have maintained in production.
- Deep knowledge of adversarial tactics, techniques, and procedures, threat actor behavior, ATT&CK framework.
- Proven experience building detections from scratch rather than only tuning commercial alerts into a production-quality detection with a low false positive rate.
- Hands-on experience with SIEM or log analytics platforms and data lake technologies (OpenSearch, Elasticsearch, Clickhouse, Sentinel, Splunk, Datadog, AWS Athena, Azure synapse, Databricks or equivalent) and alerting/monitoring tooling.
- Cloud-first Azure, GCP, AWS experience. Beyond instrumenting detections across cloud workloads, this role provisions and owns production security infrastructure in AWS: VPCs, IAM, networking, private service endpoints.
- Experience in digital forensics, host-based detection, endpoint telemetry, process and network visibility, and cloud observability.
- Experience responding to incidents in production environments: investigating logs, building timelines, establishing root cause, and containing.
- Familiarity with security automation and orchestration, playbooks, response automation, and alert triage workflows.
- Comfort as the primary owner of a domain. You will lead detection and response engineering, set your own priorities and move confidently where documentation is thin or stale.
- Strong communication skills; the ability to translate complex detection logic, trade-offs and risk to engineers and to leadership.
- A high degree of autonomy, initiative, and ownership, with the ability to drive entire initiatives with minimal oversight.
Bonus / Nice-to-have
- Experience building on or securing LLM and agent systems — Azure foundry, Bedrock/AgentCore, LangGraph, guardrails, policy-based authorization, prompt-injection defense, and agent evaluation.
- Purple/Red team, App Sec or Production security experience. To develop proof of concepts against systems and simulate attacks, test controls and protections effectiveness. This position is not a full time red team position.
- Vulnerability management program ownership (Wiz or comparable CSPM, bug bounty triage, SLA enforcement).
- Fraud and abuse investigation in a multi-tenant SaaS product — account takeover, credential stuffing, trial and promo abuse, toll fraud.
- Open source detection tooling contributions or public speaking at security conferences
Base salary range:
$180,000—$220,000 USD
Why join us?
???? Key moment to join Aircall in terms of growth and opportunities
????️♀️ Our people matter, work-life balance is important at Aircall
???? Fast-learning environment, entrepreneurial and strong team spirit
???? 45+ Nationalities: cosmopolite & multi-cultural mindset
???? Competitive salary package & benefits
DE&I Statement:
At Aircall, we believe diversity, equity and inclusion – irrespective of origins, identity, background and orientations – are core to our journey.
We pride ourselves on promoting active inclusion within our business to foster a strong sense of belonging for all. We're working to create a place filled with diverse people who can enrich and learn from one another. We're committed to ensuring that everyone not only has a seat at the table but is valued and respected at it by providing equal opportunities to develop and thrive.
We will constantly challenge ourselves to make sure that we live up to our ambitions around diversity, equity and inclusion, and keep this conversation open. Above all else, we understand and acknowledge that we have work to do and much to learn.
Want to know more about candidate privacy? Find our Candidate Privacy Notice here.
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
$10 per hour
...What you'll do There is no MSSP and no tier-1 queue here. Detection & Response engineers own their detections end to end: you write them, you tune them, and your team is paged when they fire. The security team is spread across the globe with a follow-the-sun pager rotation...SeniorWork at officeLocal areaImmediate startRelocationRelocation packageFlexible hours$176k - $253k
...future of how work gets done.We are hiring a Senior Security Engineer, dedicated to Product Security Incident Response. In this role, you will lead and architect Snowflake... ...our AI abuse response strategy - defining detection, containment, and remediation playbooks for...Senior$122.5k - $165k
...everyone is a stakeholder.What you’ll be responsible for:The Circle Security Team works to protect Circle; our... ...visibility through logging and detection.Respond to incidents and collaborate... ...detection, response, or security engineering.Experience working security incidents...SuggestedWork experience placementFlexible hoursShift workNight shift- ...committed to the highest standards of data security and privacy protection. Plaud is... .... You will own both the detection & response layer and the cloud infrastructure security... ...via JIT/CIEM. SIEM Build & Detection Engineering — Deploy the SIEM platform and author...SeniorWorldwide
- ...Senior Security Engineer The Security Engineering team is responsible for protecting Sift's products, infrastructure, and data while enabling our engineering organization... ...(scripts, services, integrations) to detect misconfigurations, anomalous activity, or policy...Senior
- ...Senior Security Engineer Bellevue Office, Sunset Corporate Campus Armada is the hyperscaler... ...hands-on role: you'll set direction for detection engineering, application security... ...office. What You'll Do (Key Responsibilities) Cloud and Infrastructure Security...SeniorWork at officeFlexible hours
$166k - $220k
...Security Engineer Anduril Industries is a defense technology company with a mission to transform... ...automation, visibility, and threat detection for efforts across various information... ...participated in or supported incident response events Eligible to obtain and...SeniorFull timeWork experience placementImmediate start$145k - $175k
...they deliver results. Learn more at later.com . Senior Security Engineer Remote, United States About this position: We'... ...remediation. Strengthen security observability and response readiness through logging, alerting, detection engineering, incident response improvements,...SeniorPermanent employmentLocal areaRemote work$2,000 per month
...Senior Security Research EngineerElastic, the Search AI Company, enables... ...a Senior Security Research Engineer to help lead our efforts to... ...zones, and work with the detection engineers, malware researchers... ...with a track record of responsible disclosure to platform vendors...SeniorLocal areaFlexible hours$108k - $232k
...OverviewThis role mitigates security threats by continuously identifying... ...& Blind Spots: Proactively detect abandoned servers, test pages... ...of experience in Security Engineering or CybersecurityPreferred Qualifications... ...threat identification, response, assessment, and management (...SeniorTemporary work$132k - $198k
...Security Engineer III _ Incident Response F5 Office of the CISO | Application Delivery, Security, and AI Resilience Position Summary We are... ...communication, and the ability to support complex incidents from detection through post-incident review. This role contributes to...Work at officeLocal area- ...About the Role Lambda Security protects some of the world... ...AI models. We're responsible for securing every byte... ...CISO, you'll lead the Detection & Response team that acts... ...threat management engine, dedicating the majority... ...programs where senior engineers thrive solving...SeniorWork at officeLocal areaWork from homeFlexible hours
$118.3k - $188.6k
...Senior Information Security EngineerThe Senior Information Security Engineer will be responsible for the ongoing development, implementation, and support of security strategies... ...solutions, including firewalls, intrusion detection systems, endpoint monitoring, and...Senior$139k - $204k
...and threat actors know it. The Advanced Response Team exists to fight back. You'll lead our... ...to stay left of boom Work alongside security partners who hold a high bar and expect... ...Serving as a clear, credible voice to senior leadership during active incidents — translating...SeniorPermanent employmentFull timeTemporary workCasual workWork at officeFlexible hours$320k - $405k
...Senior Software Security Engineer San Francisco, CA | New York City, NY | Seattle, WA About Anthropic... ...and the team's priorities. Responsibilities: Build and maintain identity... ...-code scanning, misconfiguration detection, and automated remediation You...SeniorWork at officeVisa sponsorshipFlexible hours$127.35k
...cloud-based systems with a strong focus on security. You will respond to and investigate... ...implement sophisticated monitoring and detection techniques. We need a high-energy security... ...draft incident reports for leadership. Engineer solutions to address current security...SeniorWork experience placementWork from home- ...Senior Offensive Security Engineer - Pentester Denver, Colorado;Washington, District of Columbia; Seattle, Washington; Charlotte, North Carolina... ...the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities...SeniorWork at officeRemote workShift workDay shift
$82.2k - $187k
...Description Creates testing tools to help engineering teams identify security-related weaknesses. Recognizes and... ...complex security violations to senior team members. Contributes to... ...integrity of sensitive information. Responsibilities Key Responsibilities Security...SeniorTemporary workFlexible hoursShift work$159.3k - $202.4k
Amazon is seeking qualified Security Engineers to join our innovative, high energy Information... ...work within the Amazon Security Incident Response Team (SIRT). SIRT Security Engineers... ...sensitive data. They work hands-on with detection systems and vulnerability analysis...InternshipFlexible hours$217k - $288k
...The Opportunity This is a Senior or Staff level role owning detection and incident response at Grow. The core of the job is:... ...early through strong detection engineering, moving fast on unfamiliar systems... ...What You'll Be Doing Share security judgment and standards with...SeniorFull timeImmediate startRemote work3 days per week$178.4k - $226.7k
The Senior Security Engineer is a senior individual contributor responsible for independently driving security initiatives across multiple services and teams. This role... ...review workflows, enhance vulnerability detection, and reduce manual toilBuilder Engagement: Partner...SeniorInternshipFlexible hours$129k - $177k
Description The Senior Cyber Security Engineer protects the company's systems and information by designing... ...managing of security standards. Responsibilities Work with BC employees to... ...security solutions and tooling to detect, prevent, and manage threats across...SeniorTemporary work$178.4k - $226.7k
The Ads Security organization at Amazon is dedicated to creating... ...technical solutions that detect, assess, and mitigate security... ...We are seeking a talented Senior Security Engineer to join our team, where you... ...analysis, incident response, and defensive architecture...SeniorFlexible hours$95.86k - $208.27k
...capabilities, then consider a career in Advisory. KPMG is currently seeking a Senior Associate, SailPoint Identity Security Cloud Engineer to join our Advisory Technology Organization. Responsibilities: Support SailPoint Identity Security Cloud (ISC) implementations...SeniorFull timeH1bLocal area$162k - $260k
...are looking forWe're searching for a Senior Security Engineer to join our Enterprise Security... ...close oversightExposure to SIEM and detection pipelines (log queries, basic detection... ...seeks candidates who take an active responsibility, can contribute to building an atmosphere...SeniorWork at officeLocal area3 days per week- ...across the globe to create, secure, and run applications that... ...thrive.Principal Security Engineer - Incident Response & Crisis ManagementOrganization... ...of the CISO. In this senior role, you will orchestrate... ...product security incidents from detection through post-incident...Full timeWork at officeLocal area
$173.4k - $234.6k
Senior Product Security Engineer Company: The Boeing Company The Boeing Company is looking for a Senior Product Security Engineer to join... ...Commercial Aircraft. The successful candidate will be responsible for driving the development, implementation, and...SeniorPermanent employmentWork experience placementRelocationVisa sponsorshipWork visaFlexible hoursShift work$184.5k
...travelers everywhere. Senior Product Security Architect Our... ...team partners with product, engineering, and platform teams to ensure... ...enabled code analysis, anomaly detection, or security automation;... ...posture, detection, and response. Demonstrated experience...Senior$112k - $209k
...The global law firm of K&L Gates LLP is seeking a Senior Security Engineer to join the firm. The Senior Security Engineer... ...expertise in security engineering, cloud security, detection engineering, automation, incident response, and technical leadership. It utilizes AI-driven...SeniorFull timeTemporary workWork experience placementLocal areaRemote work$165k - $242k
...Senior Security Engineer II, Cloud Security Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA CoreWeave is The Essential Cloud... ...public cloud environments, including primitives such as IAM, detection and monitoring, configuration management, and data...SeniorPermanent employmentFull timeTemporary workCasual workWork at officeFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Security Engineer, Detection & Response. Be the first to apply!
- security engineer Seattle, WA
- principal security engineer Seattle, WA
- sr information security engineer Seattle, WA
- information technology security engineer Seattle, WA
- senior cloud security engineer Seattle, WA
- cloud security engineer Seattle, WA
- senior application security engineer Seattle, WA
- application security engineer Seattle, WA
- aws cloud security engineer Seattle, WA
- network security engineer Seattle, WA




