Senior Security Engineer I, Security Operations

Remote, NY

Etsy

Find the perfect handmade gift, vintage & on-trend clothes, unique jewelry, and more… lots more.

View all jobs at Etsy

Apply now Apply later

Company Description
Etsy is the global marketplace for unique and creative goods. We build, power, and evolve the tools and technologies that connect millions of entrepreneurs with millions of buyers around the world. As an Etsy Inc. employee, whether a team member of Etsy, Reverb, or Depop, you will tackle unique, meaningful, and large-scale problems alongside passionate coworkers, all the while making a rewarding impact and Keeping Commerce Human.

Salary Range:

$159,000.00 - $187,000.00

What’s the role?

Etsy is seeking a Senior Security Engineer to join our Security Operations team. As part of the larger Security and Privacy Engineering org, this group of teams plays a pivotal role in protecting and responding to threats to our data, applications, systems, and infrastructure. Security Operations is responsible for managing our strategy, technologies, and execution of threat detection, incident response, threat intelligence, and more.  

As a member of the Security Operations team, you will be a hands-on security engineer, automating day-to-day DART tasks, writing new detection logic, and participating in incident response. You will collaborate with members of the broader security and engineering organizations to support our security efforts. 

This is a full-time position reporting to the Engineering Manager - SecOps. In addition to salary, you will also be eligible for an equity package, an annual performance bonus, and our competitive benefits that support you and your family as part of your total rewards package at Etsy.

For this role, we are considering candidates based in the United States. Candidates living within commutable distance of Etsy’s Brooklyn Office Hub or in the San Francisco Bay Area may be the first to be considered. For candidates within commutable distance, Etsy requires in-office attendance once or twice per week depending on your proximity to the office. Etsy offers different work modes to meet the variety of needs and preferences of our team. Learn more details about our work modes and workplace safetypolicies here.

What’s this team like at Etsy?

At Etsy, we believe that code is craft, and that the work we do is part of a larger creative culture represented by the artists and designers who make Etsy such a unique marketplace. We believe that small, empowered, self-motivated teams can do big things. We measure and test our work, take advantage of our pioneering continuous deployment system, and cultivate a blameless culture based on trust and a commitment to learning. Learn more about our engineering philosophies, tools, and some of the challenges we’ve been solving on our Engineering blog: http://codeascraft.com/

What does the day-to-day look like?

  • Develop and run tools to gather security telemetry data 

  • Automate workflows and improve our detection and response time for security events

  • Build detection rules 

  • When not doing IR, this role builds and improves upon our detection framework

  • Contribute to response to security events including triage, investigations, incident command, and external reporting 

  • Help improve processes, procedures, technologies, and runbooks for detection and response

  • Contribute to threat hunting practices with Security Operations team

  • Of course, this is just a sample of the kinds of work this role will require! You should assume that your role will encompass other tasks, too, and that your job duties and responsibilities may change from time to time at Etsy's discretion, or otherwise applicable with local law

Qualities that will help you thrive in this role are:

  • Experience as a security engineer on an incident response team 

  • Strong foundational knowledge of information security and common attacks, tactics, techniques, and procedures 

  • Familiarity with operating systems internals, malware functionality, and persistence mechanisms 

  • Hands on experience with SIEM and SOAR platforms 

  • Experience developing tools and automation in common programming languages

  • Exposure to database technologies

  • Nice to haves: 

    • Experience with major cloud service provider 

    • Container technology experience

    • Scripting in Yara/YaraL

Additional Information

What's Next
If you're interested in joining the team at Etsy, please share your resume with us and feel free to include a cover letter if you'd like. As we hope you've seen already, Etsy is a place that values individuality and variety. We don't want you to be like everyone else -- we want you to be like you! So tell us what you're all about.

Our Promise
At Etsy, we believe that a diverse, equitable and inclusive workplace furthers relevance, resilience, and longevity. We encourage people from all backgrounds, ages, abilities, and experiences to apply. Etsy is proud to be an equal opportunity workplace. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. If, due to a disability, you need an accommodation during any part of the interview process, please let your recruiter know. While Etsy supports visa sponsorship, sponsorship opportunities may be limited to certain roles and skills.

Apply now Apply later
Job stats:  45  1  1

Tags: Automation Cloud DART Incident response Malware Privacy Scripting SecOps SIEM SOAR Strategy Threat detection Threat intelligence

Perks/benefits: Career development Competitive pay Equity / stock options Salary bonus Team events

Regions: Remote/Anywhere North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.