Senior Security Engineer - Detection & Response
Job Description
<div class="content-intro"><p><em>At Klaviyo, we value the unique backgrounds, experiences and perspectives each Klaviyo (we call ourselves Klaviyos) brings to our workplace each and every day. We believe everyone deserves a fair shot at success and appreciate the experiences each person brings beyond the traditional job requirements. If you’re a close but not exact match with the description, we hope you’ll still consider applying. Want to learn more about life at Klaviyo? Visit <a class="_ymio1r31 _ypr0glyw _zcxs1o36 _mizu194a _1ah3dkaa _ra3xnqa1 _128mdkaa _1cvmnqa1 _4davt94y _4bfu18uv _1hms8stv _ajmmnqa1 _vchhusvi _kqswh2mm _ect4ttxp _syaz13af _1a3b18uv _4fpr8stv _5goinqa1 _f8pj13af _9oik18uv _1bnxglyw _jf4cnqa1 _30l313af _1nrm18uv _c2waglyw _1iohnqa1 _9h8h12zz _10531ra0 _1ien1ra0 _n0fx1ra0 _1vhv17z1" href="http://klaviyo.com/careers" data-renderer-mark="true">klaviyo.com/careers</a> to see how we empower creators to own their own destiny.</em></p></div><p>Klaviyo is looking for a <strong>Senior Security Engineer</strong> to add to our growing Detection & Response Team. This is an engineering role that spans the full detection and response lifecycle - leveraging software development practices to build detections, triaging alerts, lead investigations, respond to incidents, perform threat hunting, and build the tooling that keeps us from doing the same work twice. As a member of the team, you will have the opportunity to work on complex large-scale security challenges across Klaviyo’s enterprise, cloud, and product environments, and shape how an engineering-first D&R function uses automation and AI in production, at scale, alongside talented and ambitious colleagues spanning multiple regions and timezones.</p> <p> </p> <p>How you will make a difference:</p> <p> </p> <ul> <li>Leverage engineering practices to develop, test, and deploy high-fidelity rule-based and anomaly-based detections-as-code </li> <li>Detect and respond to cyber threats using security data lake, SIEM, and cloud platforms</li> <li>Respond to alerts, cyber threats, and drive end-to-end incident response investigations</li> <li>Perform digital forensic investigations to include collection and analysis of evidence </li> <li>Automate and codify detection and response workflows and processes</li> <li>Build security tooling to drive automation across D&R lifecycle </li> <li>Improve and maintain detection and response pipelines and underlying systems</li> <li>Work with our Threat Intelligence team to identify and respond to sophisticated threats</li> <li>Develop AI-first security systems to automate detection and response operations </li> <li>Conduct threat hunts across corporate, cloud and product environments</li> <li>Support data engineering workflows for core security data lake and SIEM platforms </li> <li>Be an active member of D&R on-call rotations</li> <li>Coach and mentor security engineers within the detection & response team</li> </ul> <p> </p> <p>We’d love to hear from you if you have:</p> <p> </p> <ul> <li>5+ years of hands-on security experience in modern cloud environments</li> <li>Experience in triaging and responding to cyber threats</li> <li>Experience in large-scale log analysis, incident response and/or digital forensics</li> <li>Experience with centralized security data lakes and SIEM solutions</li> <li>Hands-on experience in writing detections-as-code</li> <li>Solid data querying skills (e.g. SQL, Splunk) </li> <li>Familiarity with large-scale data pipelines and data en