Senior Security Engineer
Job description
About the role
Mixpanel is on the lookout for a seasoned professional to join our Information Security team based in London. In this pivotal role, you will play a key part in sustaining a robust security program that effectively balances proactive measures with operational efficiency across our global analytics platform. Your expertise will be vital in ensuring the security of our systems and data, contributing to the overall integrity of our services.
Key facts
What you'll do
- Take ownership of the Detection and Response domain by integrating telemetry from various sources, including product, cloud, corporate infrastructure, and identity systems.
- Create and implement detection logic as code within Google Security Operations, focusing on SIEM and SOAR functionalities.
- Serve as the lead technical authority for security incidents during business hours in the EMEA region.
- Develop comprehensive playbooks aimed at mitigating threats at the application layer, addressing issues like account takeovers and social engineering attacks.
- Oversee the operational performance of security tools such as SentinelOne, GCP Security Command Center, and Mimecast Incydr, ensuring they function optimally.
- Convert complex technical requirements into clear, actionable project milestones that can be easily understood and executed.
- Establish threat intelligence programs that transform adversary data into automated defensive strategies.
- Collaborate with cross-functional teams to enhance security posture and ensure compliance with industry standards.
- Conduct regular security assessments and audits to identify vulnerabilities and recommend improvements.
- Stay updated on the latest security trends and threats to proactively adjust security measures.
- Mentor junior security team members and contribute to a culture of security awareness within the organization.
- Participate in incident response drills and tabletop exercises to prepare the team for real-world scenarios.
Requirements
- Proven experience working across various security domains, including product, cloud, and corporate security.
- Strong knowledge of the detection-as-code lifecycle and experience defending large-scale SaaS environments.
- Capability to manage daily security operations, including vulnerability assessments and incident investigations.
- In-depth technical expertise in the Google Cloud Platform ecosystem, particularly with tools like BigQuery, Cloud Logging, and Pub/Sub.
- Advanced proficiency in Python for developing automated security workflows and API integrations.
- Experience in creating autonomous security processes utilizing AI and large language models for enhancing alerts and summarizing incidents.
Nice to have
- Familiarity with integrating external threat intelligence sources, including dark web monitoring and brand protection strategies.
- Experience in leading security mentorship initiatives or Security Champions programs within organizations.
- Knowledge of deception techniques such as honeytokens or canary credentials to enhance security measures.
- Previous experience with endpoint detection and response (EDR) solutions, email security gateways, and cloud-native security command centers.
- Background in defending environments characterized by high data ingestion and complex user access patterns.
- Exposure to offensive security practices, including participation in bug bounty programs or automated external scanning initiatives.
Skills & tools
- Proficient in Python programming
- Experienced with Google Cloud Platform, specifically BigQuery, Cloud Logging, and Pub/Sub
- Knowledgeable in Google Security Operations (SIEM/SOAR)
- Familiar with security tools such as SentinelOne and Mimecast Incydr
- Competent in utilizing GCP Security Command Center
Practical notes
- The compensation package includes a base salary along with variable pay options such as bonuses or commissions.
- This position is eligible for equity options and comprehensive medical, vision, and dental insurance coverage.
- Additional benefits encompass mental wellness support, generous vacation allowances, enhanced parental leave policies, and volunteer time off to encourage community engagement.
At Mixpanel, we are committed to fostering a diverse and inclusive work environment. We welcome applicants from all backgrounds and experiences to apply for this exciting opportunity to contribute to our security initiatives. If you are passionate about security and eager to make a significant impact, we encourage you to join us in our mission to empower organizations through data-driven insights.