Confluent
Posted 1w ago

Confluent - Staff Security Engineer I - Detection & Response

Confluent
Poughkeepsie or Lowell or Rochester or Tucson or Research Triangle Park or Armonk or Boston or Bellevue or Atlanta or San Jose or Dallas or Austin or San Francisco or Seattle
$161k-$299k/yrRemoteFull Time
Responsibilities
  • architecting solutions
  • building pipelines
  • mentoring engineers
Requirements
  • Requires a bachelor's degree and 8+ years in detection and response or security engineering
  • With expertise in cloud security
  • Detection engineering
  • Incident response
  • Python or Golang, and SIEM solutions
Technical tools mentioned
PythonGolangKubernetesAWSGCPAzureSIEMSOARETLIBM Cloud

Job description

Your role and responsibilities

We are looking for an experienced security engineer to join our infrastructure security engineering team with a focus on Detection and Response. You will have a unique opportunity to leverage your threat detection and response experience and build some of the foundational systems and services to keep our infrastructure free from malicious actors and threats.

As an expert in your domain, you will be identifying high-leverage problems and driving open-ended projects. You will partner closely with engineering teams and compliance analysts to ensure that we maintain sufficient visibility into our environments and develop effective programs and practices to ensure that our environments are always secure. Tooling and automation will be key to success as we scale our environments to meet customer demand. In addition to being a highly productive engineer, you will serve as a technical compass and mentor the next generation of security engineers.

We intend to be the world's best, fastest, and most complete stream processing service built by an excellent team, all while having fun - come join us on the journey!

What You Will Do
  • Architect, build and maintain scalable cloud-based security monitoring solutions, across logging pipelines, ETL jobs, and SIEM ingestion.
  • Drive the long-term roadmap for threat hunting by translating modern adversary tradecraft (TTPs) and threat models into high-signal detection strategies to ensure our critical infrastructure operates safely.
  • Build processes and workflows to triage security alerts and drive incidents to closure, including participating in a shared on-call rotation for incident response.
  • Research new threat attack vectors and ensure that our detection and response program is in line with the current threat landscape.
  • Proactively improve the quality of our detection rules by defining and tracking key metrics (e.g., coverage, precision, MTTD), working directly with engineering teams to eliminate classes of issues.
  • Collaborate with engineering teams in building logging pipelines needed to gather relevant security telemetry, ensuring new infrastructure ships with secure-by-default visibility.
  • Contribute to strategy, risk management and prioritization for all efforts around detection and response.
  • Provide technical guidance, mentorship, and leadership to other engineers, raising the bar for security operations across the organization.

ABOUT BUSINESS UNIT

IBM Software infuses core business operations with intelligence—from machine learning to generative AI—to help make organizations more responsive, productive, and resilient. IBM Software helps clients put AI into action now to create real value with trust, speed, and confidence across digital labor, IT automation, application modernization, security, and sustainability. Critical to this is the ability to make use of all data, because AI is only as good as the data that fuels it. In most organizations data is spread across multiple clouds, on premises, in private datacenters, and at the edge. IBM’s AI and data platform scales and accelerates the impact of AI with trusted data, and provides leading capabilities to train, tune and deploy AI across business. IBM’s hybrid cloud platform is one of the most comprehensive and consistent approach to development, security, and operations across hybrid environments—a flexible foundation for leveraging data, wherever it resides, to extend AI deep into a business.

YOUR LIFE @ IBM

In a world where technology never stands still, we understand that, dedication to our clients success, innovation that matters, and trust and personal responsibility in all our relationships, lives in what we do as IBMers as we strive to be the catalyst that makes the world work better.

Being an IBMer means you’ll be able to learn and develop yourself and your career, you’ll be encouraged to be courageous and experiment everyday, all whilst having continuous trust and support in an environment where everyone can thrive whatever their personal or professional background.


Our IBMers are growth minded, always staying curious, open to feedback and learning new information and skills to constantly transform themselves and our company. They are trusted to provide on-going feedback to help other IBMers grow, as well as collaborate with colleagues keeping in mind a team focused approach to include different perspectives to drive exceptional outcomes for our customers. The courage our IBMers have to make critical decisions everyday is essential to IBM becoming the catalyst for progress, always embracing challenges with resources they have to hand, a can-do attitude and always striving for an outcome focused approach within everything that they do.


Are you ready to be an IBMer?

ABOUT IBM

IBM’s greatest invention is the IBMer. We believe that through the application of intelligence, reason and science, we can improve business, society and the human condition, bringing the power of an open hybrid cloud and AI strategy to life for our clients and partners around the world.


Restlessly reinventing since 1911, we are not only one of the largest corporate organizations in the world, we’re also one of the biggest technology and consulting employers, with many of the Fortune 500 companies relying on the IBM Cloud to run their business.


At IBM, we pride ourselves on being an early adopter of artificial intelligence, quantum computing and blockchain. Now it’s time for you to join us on our journey to being a responsible technology innovator and a force for good in the world.

ABOUT IBM

IBM is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, genetics, pregnancy, disability, neurodivergence, age, or other characteristics protected by the applicable law. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status.

OTHER RELEVANT JOB DETAILS

IBM offers a competitive and comprehensive benefits program. Eligible employees may have access to:


- Healthcare benefits including medical & prescription drug coverage, dental, vision, and mental health & well being

- Financial programs such as 401(k), cash balance pension plan, the IBM Employee Stock Purchase Plan, financial counseling, life insurance, short & long- term disability coverage, and opportunities for performance based salary incentive programs

- Generous paid time off including 12 holidays, minimum 56 hours sick time, 120 hours vacation, 12 weeks parental bonding leave in accordance with IBM Policy, and other Paid Care Leave programs. IBM also offers paid family leave benefits to eligible employees where required by applicable law

- Training and educational resources on our personalized, AI-driven learning platform where IBMers can grow skills and obtain industry-recognized certifications to achieve their career goals

- Diverse and inclusive employee resource groups, giving & volunteer opportunities, and discounts on retail products, services & experiences


We consider qualified applicants with criminal histories, consistent with applicable law.


This position was posted on the date cited in the key job details section and is anticipated to remain posted for 21 days from this date or less if not needed to fill the role.


OTHER RELEVANT JOB DETAILS

The compensation range and benefits for this position are based on a full-time schedule for a full calendar year. The salary will vary depending on your job-related skills, experience and location. Pay increment and frequency of pay will be in accordance with employment classification and applicable laws. For part time roles, your compensation and benefits will be adjusted to reflect your hours. Benefits may be pro-rated for those who start working during the calendar year.

About Confluent

A data streaming platform designed to be the intelligent connective tissue enabling real-time data to stream across organizations.

Similar jobs

Security Engineer roles near Poughkeepsie, New York
1mo
Save
Mark Applied
Hide
Senior Security Engineer
White Plains, New York, United States
$130k-$140k/yr HybridFull Time
OnMed
OnMed: U.S. healthcare technology providing employers, communities, schools, and patients hybrid care through clinician-led CareStations.
7+ YOE7+ years information security experience with hands-on engineering across cloud, network, application, and endpoint security; Azure/M365/Entra expertise; incident response, XDR/SIEM, scripting, and compliance experience.
Microsoft Azure, M365, Entra ID, PowerShell, Python, KQL, OWASP, SAST, DAST, XDR, MDR, SIEM, SOC, Elastic, Palo Alto NGFW, Azure Firewall, Cloudflare
1mo
Save
Mark Applied
Hide
Sr. Security Engineer (Hybrid in Irvington, NY)
Irvington, New York, United States
$120k-$135k/yr HybridFull Time
EILEEN FISHER
EILEEN FISHER: Employee-owned US-based women’s apparel designing and selling sustainable clothing through stores, wholesale, and e-commerce.
7+ YOE3+ Mgmt7+ years IT security experience with 3+ years senior/lead role; PCI-DSS ownership, WAF and e-commerce security, cloud (AWS/Azure) security, IAM/SSO/MFA, SIEM/IDS/EDR, scripting in Python/Bash/PowerShell; strong communication.
PCI-DSS, NIST CSF, CIS Controls, ISO 27001, OWASP Top 10, Cloudflare, Imperva, Akamai, AWS WAF, AWS, Azure, Microsoft Defender, Azure Defender, Okta, Azure AD, Entra ID, SIEM, IDS/IPS, EDR, PKI, TLS/SSL, Python, Bash, PowerShell
3mo
Save
Mark Applied
Hide
Global Security Engineer Offensive Operations (Remote or Onsite)
Stamford, Connecticut, United States
HybridFull Time
Crane Company
Crane CompanyNYSE: CR: Diversified manufacturer of highly engineered industrial products.
5+ YOE5+ years in penetration testing and application security; Linux/Windows admin; offensive security tools; scripting; communication; degree or 5+ years experience.
Metasploit, Nmap, Burp Suite, Impacket, PowerShell, Python, Perl, Ruby, Go, Rust, Java, Linux, Windows
1w
Save
Mark Applied
Hide
AI Security Engineer
White Plains, New York, United States
$120k-$150k/yr OnsiteFull Time
Veterinary Emergency Group
Veterinary Emergency Group: Helping people and their pets when they need it most.
2+ YOERequires 2+ years of security engineering experience, hands-on AI/LLM systems experience, knowledge of prompt injection and data exfiltration, AI platform and API familiarity, and strong threat-modeling skills.
Anthropic, OpenAI, Okta
1w
Save
Mark Applied
Hide
Cyber Security Engineer
Camden or Buchanan or Covert or Philadelphia
$105k-$125k/yr OnsiteFull Time
Holtec International
Holtec International: Nuclear energy technology, engineering, and decommissioning services provider.
0+ YOEBachelor's degree in a technical discipline and internship, academic, project-based, or up to 2 years of related experience. Requires cybersecurity principles, networking, systems, standards, technical documentation, and Microsoft Office knowledge.
Microsoft Office, NIST, ISA/IEC 62443, Industrial Control Systems (ICS), Operational Technology (OT)
2mo
Save
Mark Applied
Hide
Offensive Security Engineer
Poughkeepsie, New York, United States
$73k-$171k/yr OnsiteFull Time
Central Hudson Gas & Electric
Central Hudson Gas & Electric: Central Hudson is a private regulated utility delivering electricity and natural gas to residential and business customers in New York’s Mid-Hudson Valley.
Bachelor's in cybersecurity/IT/CS (or equivalent experience), strong offensive security skills, experience with Metasploit/Cobalt Strike/Burp Suite/Nmap/BloodHound/CrackMapExec, scripting (Python, PowerShell, Bash, C#), SIEM/EDR familiarity, ability to work on-call and during incidents.
Metasploit, Cobalt Strike, Burp Suite, Nmap, BloodHound, CrackMapExec, Python, PowerShell, Bash, C#, SIEM, EDR, IDS/IPS, MITRE ATT&CK, NIST 800-61, SANS, CIS Critical Security Controls
3mo
Save
Mark Applied
Hide
Network Security Engineer
West Point, New York, United States
$105k-$120k/yr OnsiteFull Time
Oneida Technical Solutions
Oneida Technical Solutions: Tribal-owned IT and cybersecurity contractor serving government and commercial customers in secure, regulated environments.
CCNA and DoD8140 certification standards required; expertise in IPv6 and Zero Trust Architecture; network security experience, problem-solving, communication, and teamwork skills; familiarity with NIST/DoD security controls.
SolarWinds, Wireshark, Nagios, AWS, Azure, Python, PowerShell
9y
Save
Mark Applied
Hide
Information Security | Governance Risk and Compliance, Audits , Workflow
Stamford, Connecticut, United States
$55/hr OnsiteContract
TestingXperts
TestingXperts: Global provider of quality engineering and digital assurance services.
8+ YOEMinimum 8+ years of experience in Information Security, with strong understanding of security systems and compliance.
SIEM, Splunk, Carbon Black, McAfee Vulnerability Management, EnCase, Access Data, FTK