Member of Technical Staff, SecOps & Threat Detection Engineer

Envoy
San Francisco
Workplace: OnsiteFull timeUSD 265,000 - 310,000 annuallyFunction: Administration & Executive AssistanceExperience: 6+ yearsSkills: ["Cross-functional communication","Mentorship","Outcome orientation","Root cause analysis","Problem-solving"]

Own and evolve security operations and threat detection by defining how Envoy detects, monitors, and responds across infrastructure, applications, and endpoints. Lead the shift from reactive security to engineered, measurable detection, improving SIEM/monitoring architecture, detection-as-code practices, alerting models, investigations, and automation. Partner with engineering to improve instrumentation, track MTTD/MTTR, and mentor engineers while integrating tools like SentinelOne.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Envoy
Envoy
2 months ago

Member of Technical Staff, SecOps & Threat Detection Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 13 hours agoStatus: Live

Job Summary

Own and evolve security operations and threat detection by defining how Envoy detects, monitors, and responds across infrastructure, applications, and endpoints. Lead the shift from reactive security to engineered, measurable detection, improving SIEM/monitoring architecture, detection-as-code practices, alerting models, investigations, and automation. Partner with engineering to improve instrumentation, track MTTD/MTTR, and mentor engineers while integrating tools like SentinelOne.
Location: San Francisco
Workplace: Onsite
Employment Type: Full time
Job Function: Administration & Executive Assistance
Seniority: Sr. Manager level

Key Responsibilities

  • •Own the design and evolution of threat detection and security operations across infrastructure, applications, and endpoints.
  • •Define detection strategy and establish/improve SIEM and monitoring architecture, including signal quality, coverage, and scalability.
  • •Design and implement detection-as-code practices and drive visibility across endpoints, services, and identities.
  • •Take ownership of endpoint security monitoring (e.g., SentinelOne) and integrate it into centralized detection workflows.
  • •Define alerting strategy, lead complex security investigations, track MTTD/MTTR, and mentor other engineers.

Pay and Benefits

Salary: USD 265,000 - 310,000 annually
Equity and Bonus:Equity
Schedule:4-Day Week

Key Requirements

  • •6+ years of experience in Security Engineering, SRE, or Infrastructure Engineering with a strong security focus.
  • •Proven experience designing or significantly improving security monitoring, detection, or SIEM systems.
  • •Strong understanding of cloud environments (ideally AWS), including IAM, networking, and logging at scale.
  • •Experience with endpoint detection and response tools such as SentinelOne (or similar).
  • •Strong programming or scripting skills (Python, Go, or similar) focused on automation and system design.
Experience:6+ yearsSecurity engineeringSREInfrastructure engineering
Skills:Cross-functional communicationMentorshipOutcome orientationRoot cause analysisProblem-solving
Tech Stack:AWSIAMSIEMMonitoringSentinelOnePythonGoLenelS2BrivoGenetecHoneywellCisco MerakiOktaMicrosoft AzureMicrosoft TeamsSlackServiceNowDocuSignAvigilon AltaDescartes Visual Compliance

Company Brief

Envoy
Provides workplace management software including visitor registration, desk and room booking, deliveries, and workplace safety tools to help companies manage modern office operations and hybrid work.
Industry: Facility Management
Company Size: Large (251 to 1,000 employees)
Growth: Scaleup
Funding: Series D
Headquarters: San Francisco, United States
Founded: 2013
Glassdoor
Glassdoor: 4.1
WebsiteLinkedInGlassdoor