Staff Security Engineer
Job description
About the role
Join 6sense's Security team to safeguard our operations by preventing, identifying, and responding to security threats. This role involves proactive threat research, incident management, and developing automation to enhance security capabilities. You will partner closely with executive leadership to ensure security initiatives align with business objectives and risk appetite. The position requires a proactive mindset to identify gaps before they are exploited and to drive security improvements across the organization. You will act as a subject matter expert, influencing architectural decisions and ensuring security is baked into the development lifecycle. This role provides the opportunity to build and mature a critical security function in a growing technology company. You will leverage deep technical expertise to protect the organization from a constantly evolving threat landscape. Success in this role will be measured by the reduction in incident response times, the effectiveness of implemented controls, and the resilience of the infrastructure.
Key facts
What you'll do
- Advance security operations and threat management initiatives according to the security strategy by designing and implementing robust control frameworks.
- Investigate and resolve complex security incidents, including system breaches and denial-of-service attacks, through continuous monitoring and forensic analysis.
- Collaborate with internal teams and external partners to confirm alerts, ensure incident resolution, and determine root causes using structured methodologies.
- Research new threats and vulnerabilities, and implement controls to protect our products and services based on current threat intelligence and risk assessments.
- Develop and build security tools and automated processes to improve team efficiency, scalability, and the accuracy of security operations.
- Plan and lead threat simulation exercises based on current security trends, adversary tactics, and research to validate detection and response capabilities.
- Guide other security engineers in implementing security controls, responding to incidents, and managing risks through mentorship and technical leadership.
- Communicate security risks and mitigation strategies to diverse audiences, including technical teams, executive leadership, and business stakeholders.
- Maintain and optimize Security Information and Event Management (SIEM) rules to ensure relevant threats are detected promptly and accurately.
- Configure and manage Security Orchestration, Automation, and Response (SOAR) playbooks to streamline incident response workflows and reduce manual effort.
- Perform vulnerability scanning and prioritize remediation efforts based on the criticality of assets and the potential impact of exploitation.
- Conduct adversary emulation exercises to test the effectiveness of security controls and the readiness of the incident response team.
- Apply the MITRE ATT&CK framework to analyze adversary behavior and identify gaps in detection and mitigation strategies.
- Ensure compliance with industry frameworks and regulations including STRIDE, PASTA, ISO 27001, SOC 2, GDPR, PCI, SOX, and NIST across the technology stack.
- Collaborate with engineering and product teams to ensure security best practices are integrated into cloud architectures, particularly within AWS environments.
Requirements
- Hold a minimum of 5 years of experience in a Security Operations or similar function protecting enterprise environments.
- Demonstrate at least 3 years of experience in developing automation solutions using scripting or programming to solve security problems.
- Possess a minimum of 2 years of experience conducting adversary emulation exercises and red team operations.
- Show familiarity with security tools and cloud environments, including vulnerability scanners, SIEM platforms, SOAR solutions, and Amazon Web Services (AWS).
- Provide evidence of experience with industry frameworks and regulations, including MITRE ATT&CK, STRIDE, PASTA, ISO 27001, SOC 2, GDPR, PCI, SOX, and NIST.
- Exhibit a proven track record of working effectively in high-pressure situations where security incidents require immediate attention and resolution.
- Demonstrate strong analytical and problem-solving skills to dissect complex security issues and derive actionable conclusions.
- Communicate effectively in written and verbal formats to convey technical concepts to both technical and non-technical stakeholders.
Nice to have
- Hold a Bachelor's degree in a relevant field such as Cybersecurity, Computer Science, or Information Technology.
- Obtain professional certifications such as CISSP, CISM, or GIAC that validate your expertise in information security.
Practical notes
Base Salary Range: $231,089.25 - $265,930.90. Total compensation may include bonus programs, commission plans, and stock options. Benefits include health insurance, life and disability insurance, 401K matching, paid holidays, self-care days, and paid time off. 6sense is an Equal Employment Opportunity employer. All communications will come from the @6sense.com domain.