Talent.com
Security Engineer - Detection & Response

Security Engineer - Detection & Response

NERDYSan Jose, CA, United States
3 days ago
Job type
  • Full-time
Job description

Overview : You are an AI-powered Security Engineer responsible for identifying and responding to malicious or suspicious activity across our environment with speed and confidence. This role leads the engineering work behind these capabilities-designing scalable systems to detect threats and trigger automated responses. You will integrate AI into detection and response workflows to accelerate rule development, streamline enrichment, and reduce investigation time, with human validation ensuring precision and alignment.

As a cloud-first SaaS company relying on a broad portfolio of SaaS tools, we generate large volumes of event data across identity, endpoint, infrastructure, and collaboration systems. The scale and complexity of this telemetry demand improved detection engineering and automation.

This is a platform engineering role focused on building and operating a modern detection pipeline integrated with security automation workflows. You will use Python, structured data, and widely adopted frameworks for mapping adversary behaviors and response logic to drive faster, more effective security outcomes. This role is not a support or triage position but a strategic contributor to our security infrastructure.

About Nerdy :

At Nerdy (NYSE : NRDY) - the company behind Varsity Tutors - we're redrawing the blueprint of learning. Our Live + AI™ platform fuses real-time human expertise with proprietary generative-AI systems, setting a new bar for measurable academic impact at global scale. We recruit the kind of technologists and operators you'd bet on as solo founders - people who turn ambiguous problems into shipping code, iterate faster than markets move, and compound their advantage with every data point. In an era where great employees can deliver 10-times the leverage of the merely good, we back those who play to win.

Fortune favors the bold. Join us.

How we compete :

  • AI-Native at every level From the CEO to day-one hires, everyone builds and ships with generative AI. If you're not wielding AI, you're not done.
  • Entrepreneurial velocity Move at founder speed, prototype in hours, and measure in real user outcomes. Slow teams die.
  • Free-market rigor Ideas rise or fall on merit and results - no committees, no politics, no cap on upside.
  • Full-stack ownership You design, build, and run what you ship; accountability is a feature, not a bug.
  • Reward for contribution Pay rises with impact, not years. Outstanding results earn outsized rewards. We evaluate both what you achieve and how you achieve it : living our leadership principles and using AI effectively are formally measured and rewarded.
  • Relentless exploration Push the frontier of generative AI in live learning and - because only the paranoid survive - questioning every legacy assumption along the way.
  • Is Apolitical You stay focused on mission-aligned outcomes, not distractions or unrelated causes.

If you're a technically minded builder who thrives on open competition, personal responsibility, and the chance to redefine how the world learns - while continually stretching the limits of what generative AI can do - come do the most ambitious and rewarding work of your career here. Learn more at nerdy.com. Nerdy's shareholder letters below explain our latest products and strategy :

  • Q2-2025 Shareholder Letter
  • Q1-2025 Shareholder Letter
  • Q4-2024 Shareholder Letter
  • Qualifications : Required :

  • 5+ years in security engineering, detection engineering, or threat-focused automation roles.
  • Strong knowledge of MITRE ATT&CK framework, detection logic, and IOC / IOA patterns.
  • Familiarity with MITRE D3FEND for defense-in-depth and response playbook design.
  • Hands-on experience designing, deploying, or managing SIEM platforms (vendor-neutral mindset preferred).
  • Strong Python scripting skills for integrations, enrichment logic, and playbook development.
  • Experience working with structured data formats such as JSON, YAML, logs, and metrics.
  • Familiarity with SaaS logging constraints and cloud-native telemetry, preferably AWS.
  • Understanding of event-driven architecture and API-driven integrations.
  • Demonstrated ability to use AI tools to accelerate scripting, generate or translate detection rules, or assist with enrichment workflows, always with human validation for accuracy.
  • Comfortable working autonomously and cross-functionally to deliver reliable detection outcomes.
  • Preferred :

  • Experience building or maintaining detection pipelines using Elastic, Panther, or similar platforms.
  • Experience with detection-as-code practices, managing detection logic as version-controlled code with testing and CI / CD.
  • Experience writing detection rules in formats such as Sigma, including contributing to open-source or internal detection libraries. E
  • Experience with MITRE frameworks : ATT&CK (adversary techniques), D3FEND (defensive techniques), and ATLAS (AI-related attacks).
  • Experience with OWASP guidance on application telemetry and detection (e.g., AppSensor, Logging Cheat Sheet). U
  • Responsibilities :

  • Implement and operate detection systems, including a scalable cloud-native SIEM platform supporting ingestion from identity, endpoint, SaaS, and infrastructure sources.
  • Develop and maintain detection coverage maps aligned to MITRE ATT&CK techniques, threat modeling, and incident history.
  • Leverage AI to accelerate detection rule creation, enrichment, and triage insights, and conduct AI-assisted threat hunting to surface novel behaviors and codify them as deterministic detections.
  • Build detection observability tools and dashboards to monitor rule effectiveness, alert volumes, and system performance.
  • Design and implement SOAR workflows and automated response playbooks with built-in observability, rollback, and reliability controls.
  • Leverage AI within SOAR for adaptive enrichment, workflow generation, and documentation, while continuously tuning automation based on incident outcomes.
  • Lead incident response activities as part of the incident commander rotation, and drive continuous improvement of runbooks and playbooks using lessons learned and AI support for timelines and summaries.
  • Collaborate cross-functionally with engineering and business stakeholders to embed detection and response into system design, operational processes, and organizational priorities.
  • Unlock Your Full Potential at Nerdy :

    Join our worldwide team-work from home, get great pay, and help shape the future of learning. Here's what you get :

  • Competitive USD Compensation : Enjoy a market-leading rate paid in U.S. dollars.
  • 100% Remote (Home Country Only) : Work from anywhere in your home country-no relocation required, no borders crossed.
  • Flexible Time Off : Our flexible PTO lets you recharge on your own terms and when you need it the most.
  • Local Holiday Pay : We honor your nation's official holidays with paid time off-celebrate what matters to you.
  • Continuous Learning : Get a free, all-inclusive learning membership for you and your household-including 1-on-1 tutoring hours, unlimited on-demand classes, and access to our full suite of learning products and services.
  • Supercharge with AI : Gain exclusive access to cutting-edge AI tools that boost your productivity, making you feel almost super-human (cape not included).
  • Feedback-Rich, Collaborative Culture : Tap into regular training, peer reviews, and a team that treats every team member as a vital collaborator and owner in our success.
  • Make a Global Impact : Your expertise fuels an innovative platform used by learners around the world-be part of something transformative.
  • The Bottom Line :

    If you're driven by impact, energized by ownership, and excited to help shape what's next, you'll thrive here. We move fast, think big, and reward those who deliver. This isn't a traditional corporate environment - it's a place to do the most meaningful work of your career.

    Create a job alert for this search

    Security Engineer • San Jose, CA, United States

    Related jobs
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    VirtualVocationsSanta Clara, California, United States
    Full-time
    A company is looking for a Senior Platform Security Engineer.Key Responsibilities Design and enforce security controls aligned to HIPAA, HITRUST, SOC 2, and NIST Implement IAM best practices, en...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer, Detection and Response

    Security Engineer, Detection and Response

    OpenAISan Francisco, CA, United States
    Full-time
    Security is at the foundation of OpenAI's mission to ensure that artificial general intelligence benefits all of humanity. The Security team protects OpenAI's technology, people, and products.We are...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer, Detection & Response

    Senior Security Engineer, Detection & Response

    DecagonSan Francisco, CA, United States
    Full-time
    Decagon is the leading conversational AI platform empowering every brand to deliver concierge customer experience.Our AI agents provide intelligent, human-like responses across chat, email, and voi...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer, Detection & Incident Response

    Security Engineer, Detection & Incident Response

    Scale AI, Inc.San Francisco, CA, United States
    Full-time
    Security Engineer with a specialty in Detection and Incident Response to join our Security Engineering team.This role is crucial in ensuring the rapid and effective response to digital security inc...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Infrastructure Security Engineer

    Senior Infrastructure Security Engineer

    VirtualVocationsHayward, California, United States
    Full-time
    A company is looking for a Senior Infrastructure Security Engineer - DGX Cloud.Key Responsibilities Implement, manage, and troubleshoot firewalls within on-premise and cloud network infrastructur...Show moreLast updated: 1 day ago
    • Promoted
    Security Engineer, Detection & Incident Response

    Security Engineer, Detection & Incident Response

    Scale AISan Francisco, CA, United States
    Full-time
    We are seeking aSecurity Engineer with a specialty in Detection and Incident Response to join our Security Engineering team. This role is crucial in ensuring the rapid and effective response to digi...Show moreLast updated: 3 days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    VirtualVocationsHayward, California, United States
    Full-time
    A company is looking for a Cyber Security Engineer to support and improve camera infrastructure across multiple store locations. Key Responsibilities Provide hands-on support for the configuration...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer - Detection

    Security Engineer - Detection

    VirtualVocationsSan Jose, California, United States
    Full-time
    A company is looking for a Security Engineer - Detection & Response.Key Responsibilities Implement and operate detection systems, including a scalable cloud-native SIEM platform Leverage AI to a...Show moreLast updated: 1 day ago
    • Promoted
    Principal Cyber Security Engineer

    Principal Cyber Security Engineer

    Cloud Software Group, Inc.San Ramon, CA, United States
    Full-time
    Architectural Leadership : Design, develop, and maintain the comprehensive security architecture for Cloud Software Group's products and corporate infrastructure. Cloud Security Expertise : Lead the s...Show moreLast updated: 23 days ago
    • Promoted
    Principal Security Engineer

    Principal Security Engineer

    VirtualVocationsFremont, California, United States
    Full-time
    A company is looking for a Principal Security Applied Field Engineer.Key Responsibilities Support the design and architecture of secure, scalable customer workflow solutions tailored to financial...Show moreLast updated: 30+ days ago
    • Promoted
    Azure Security Customer Engineer

    Azure Security Customer Engineer

    VirtualVocationsHayward, California, United States
    Full-time
    A company is looking for an Azure Security Customer Engineer - SaaS.Key Responsibilities Act as a security advisor, guiding customers through Microsoft's cloud security solutions Drive technical...Show moreLast updated: 1 day ago
    • Promoted
    Security Engineer - Detection & Response

    Security Engineer - Detection & Response

    LambdaSan Francisco, CA, United States
    Full-time
    Lambda, The Superintelligence Cloud, builds Gigawatt-scale AI Factories for Training and Inference.Lambda's mission is to make compute as ubiquitous as electricity and give every person access to a...Show moreLast updated: 3 days ago
    • Promoted
    Security Engineer

    Security Engineer

    VirtualVocationsSan Jose, California, United States
    Full-time
    A company is looking for a Security Engineer - Detection & Response.Key Responsibilities Implement and operate detection systems, including a scalable cloud-native SIEM platform Leverage AI to a...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Cyber Security Engineer

    Senior Cyber Security Engineer

    Cloud Software Group, Inc.San Ramon, CA, United States
    Full-time
    Analyze and investigate activity on company devices and infrastructure (Public Cloud & on-premise) that could represent a security threat. Work cross-functionally with the Security teams to develop ...Show moreLast updated: 23 days ago
    • Promoted
    Security Engineer : Detection and Response

    Security Engineer : Detection and Response

    AnthropicSan Francisco, CA, United States
    Full-time
    Anthropic's mission is to create reliable, interpretable, and steerable AI systems.We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group ...Show moreLast updated: 30+ days ago
    • Promoted
    SaaS Security Customer Engineer

    SaaS Security Customer Engineer

    VirtualVocationsFremont, California, United States
    Full-time
    A company is looking for a Customer Engineer specializing in SaaS security and compliance.Key Responsibilities Guide customers through the implementation of Microsoft Purview solutions for data g...Show moreLast updated: 1 day ago
    • Promoted
    Cloud Security Engineer

    Cloud Security Engineer

    VirtualVocationsFremont, California, United States
    Full-time
    A company is looking for a Cloud Security Engineer to manage cybersecurity threats and develop security solutions.Key Responsibilities Design solutions to remediate and automate recurring cyberse...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    WaymoMountain View, CA, United States
    Full-time
    Waymo is an autonomous driving technology company with the mission to be the world's most trusted driver.Since its start as the Google Self-Driving Car Project in 2009, Waymo has focused on buildin...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Product Security Engineer

    Senior Product Security Engineer

    VirtualVocationsHayward, California, United States
    Full-time
    A company is looking for a Senior Product Security Engineer to enhance their anti-ransomware solutions.Key Responsibilities Design and implement security test harnesses to simulate ransomware beh...Show moreLast updated: 30+ days ago
    • Promoted
    Security engineer, detection and response

    Security engineer, detection and response

    writer.comSan Francisco, CA, United States
    Full-time
    Detection and Response Engineer.AI / AGI platforms, training data, and deployed models against sophisticated and evolving threats. At WRITER, protecting the integrity of our AI systems is as critical ...Show moreLast updated: 30+ days ago