Source Job

Europe 6w PTO

  • Manage, tune, and continuously improve EDR and SIEM platforms to enhance detection quality.
  • Develop dashboards, reports, alerts, and security use cases to monitor threats.
  • Collaborate with infrastructure and IT teams to onboard new systems and improve visibility.

SIEM EDR Endpoint Security Python PowerShell

20 jobs similar to Security Platform Engineer

Jobs ranked by similarity.

$70,000–$100,000/yr
US Unlimited PTO

  • Monitor SIEM, EDR/XDR, and other security platforms for threats and respond to incidents.
  • Engineer and maintain SIEM integrations, detection rules, and security automation.
  • Collaborate with IT, Engineering, and Product teams to embed security into systems.

$172,279–$249,640/yr
US Canada

  • Build and maintain SIEM for log collection and detection rules across corporate and production environments.
  • Design and deploy canary tokens and early warning mechanisms to detect threats before they reach critical assets.
  • Investigate security incidents end-to-end, including malware analysis, exfiltration assessment, and timeline reconstruction.

Quora operates two platforms: a global knowledge sharing platform with over 300M monthly unique visitors, and Poe, a platform for chatting and building with AI language models. The company is privately held, remote-first, and fosters a culture of transparency, collaboration, and experimentation.

Global

  • Monitor, triage, and investigate security incidents across Kraken's infrastructure and client instances.
  • Develop and automate detection capabilities and incident response processes.
  • Collaborate with engineering and product teams to improve security posture and respond to incidents.

We power some of the most innovative global developments in energy by creating technology that redefines utilities. We are a growing global team committed to improving the lives of one billion humans within the decade.

US Unlimited PTO

  • Design, implement, and manage endpoint platforms using Microsoft Intune, Kandji (Iru), and Fleet across mixed macOS and Windows fleets.
  • Own EDR/XDR platform administration across CrowdStrike Falcon, SentinelOne, and Microsoft Defender for Endpoint.
  • Lead alert triage and investigation workflows across EDR platforms, partnering with security team on escalations and response.

EverOps is an AI-native platform operations company focused on delivering outcomes - not tickets. Their TechPods embed directly with customers to operate, scale, and modernize platforms across cloud, security, and IT.

Argentina

  • Own end-to-end security incident response, from triage to recovery, and drive post-incident learnings.
  • Build and improve detection coverage across cloud, endpoint, identity, and SaaS systems.
  • Develop security automation and workflows to reduce manual toil and improve response speed.

Front is the customer operations platform for B2B complexity, keeping teams, tools, and conversations in sync. Over 9,000 companies rely on Front, and it's backed by Sequoia Capital and Salesforce Ventures, with a highly recognized workplace culture.

$122,500–$175,000/yr
USA

  • Perform investigations into detected threats and leverage security products to analyze, contain, and remediate threats in customer environments.
  • Provide customers with thorough reports of actions taken to ensure clarity on environment cleanup and protection strategies.
  • Collaborate with Detection Engineering, Threat Hunting, Intel, and Product teams to develop innovative methods for timely threat remediation.

Zscaler accelerates digital transformation by providing cloud-based security solutions using its Zero Trust Exchange platform. The company fosters a culture of execution, collaboration, and ownership, with a focus on high-impact work.

Global Unlimited PTO

  • Design, implement, and operate security controls across corporate environments, including endpoints, SaaS applications, identities, and network infrastructure.
  • Drive vulnerability management activities, including patch management, risk prioritization, and remediation processes.
  • Build security automation, integrations, and internal tooling to improve security operations and reduce manual processes.

Jobgether is a platform that uses AI-powered matching to connect candidates with job opportunities. It operates as a remote-first company with a focus on high-trust, asynchronous work culture across global teams.

Portugal 4w PTO

  • Lead and mentor the Detection Engineering & Automation team, driving delivery and professional growth.
  • Own the full detection lifecycle, from use-case design to implementation, optimization, and retirement.
  • Develop SIEM/EDR rules, detection-as-code pipelines, and SOAR automation playbooks to reduce alert fatigue.

This role is listed on behalf of a partner company, which manages all applications and next steps. The company is a remote-first organization focused on building advanced cyber defense capabilities, with a collaborative culture and a proactive security program.

$125,560–$173,010/yr
Canada Unlimited PTO

  • Lead and develop a team of security engineers to defend infrastructure, SaaS, and endpoints against real-world adversaries.
  • Own detection and response, including incident command, tuning CrowdStrike, and conducting cybersecurity risk assessments.
  • Drive AI security strategy and partner with cross-functional teams to build robust detection controls.

Forward Financing is a financial technology company that unlocks capital to fuel small businesses across America. Since 2012, they have provided over $4.8 billion in funding to more than 92,000 small businesses and are recognized as a Best Place to Work with a culture focused on empowerment and collaboration.

$113,800–$139,000/yr
US

  • Monitor, investigate, and respond to security alerts from SIEM, EDR/XDR, IDS/IPS, firewall, cloud, identity, and endpoint security platforms.
  • Perform incident response and threat hunting activities, including alert triage, root cause analysis, containment, and documentation.
  • Analyze endpoint, authentication, firewall, VPN, cloud, and network activity to identify indicators of compromise and suspicious behavior.

Clear Capital is a national real estate analytics, data solutions, and valuation technology company that builds confidence in real estate decisions. The company values integrity, kindness, grit, empathy, attention to detail, and raising the bar.

Canada

  • Monitor and triage alerts across endpoint, network, cloud, runtime, and identity data sources.
  • Perform structured investigations on escalated or ambiguous alerts to build coherent timelines.
  • Participate in incident response, including evidence collection and containment actions.

AlphaSense provides AI-driven market intelligence and search to help enterprises make informed decisions. The company has over 2,000 employees globally and fosters a culture of innovation and collaboration.

$190,000–$220,000/yr
US Unlimited PTO 12w maternity 12w paternity

  • Write, tune, and maintain detections in a modern SIEM across cloud, container, and SaaS log sources.
  • Run cloud security operations in AWS, triage alerts, and help execute incident-response playbooks.
  • Build and extend security-automation tooling with code fluency in Python or TypeScript.

SmarterDx uses clinical AI to help health systems capture the full value of patient care. They are a remote-first team with a mission to make healthcare more accurate and sustainable.

$159,800–$235,000/yr
US Unlimited PTO 16w maternity 16w paternity

  • Conduct hands-on detection engineering for custom alerting, integrating threat intelligence and building agentic tooling.
  • Work with structured and unstructured telemetry to produce meaningful security signals across cloud, endpoints, and marketplace.
  • Collaborate with cross-functional teams and mentor engineers to improve detection capabilities and maintain standards.

DoorDash is a technology and logistics company that enables door-to-door delivery, empowering local economies. We grow rapidly and constantly change, with a diverse and inclusive team committed to supporting employees' happiness and well-being.

$205,000–$215,000/yr
US Unlimited PTO

  • Architect the SOC strategy and roadmap, defining threat intelligence operations, detection frameworks, and defensive maturity metrics.
  • Build and tune detection logic across cloud stacks, identity layers, and endpoints, rejecting noise to accelerate incident response velocity.
  • Own incident command, leading containment and recovery operations while driving engineering change through rigorous post-mortems.

Second Front Systems is a public-benefit software company that accelerates secure software development and deployment for government and regulated networks. Founded by national security veterans, the company is a high-growth startup backed by top-tier venture capital with a culture of accountability and technical craft.

Costa Rica

  • Analyze EDR telemetry, alerts, and log sources across Endpoint, Identity, Network, and Cloud/SaaS domains.
  • Publish and review threats for customers using concisely written communication to convey key indicators and remediation context.
  • Improve and innovate Detection Operations workflows through orchestration and automation to manage high volumes of telemetry.

Zscaler accelerates digital transformation to make customers more agile, efficient, resilient, and secure. They are an AI-forward enterprise using the world's largest security data lake, with a culture of execution centered on customer obsession, collaboration, and accountability.

$80,000–$85,000/yr
US

  • Monitor, analyze, and respond to complex security incidents, guiding Level 1 engineers and contributing to the organization's security posture.
  • Conduct in-depth forensic analysis, manage vulnerabilities, and optimize security tools such as SIEM, IDS/IPS, and endpoint protection.
  • Collaborate with IT and security teams, participate in on-call support, and stay updated on the latest cybersecurity threats and best practices.

CTS delivers comprehensive IT solutions for mission-driven organizations, with deep expertise in nonprofits and education. The company is headquartered in Brooklyn, NY with 90+ employees across the US and several other countries, fostering a culture of growth and innovation.

United States Unlimited PTO

  • Provide technical guidance and recommendations to clients to enhance their overall security posture within managed products.
  • Handle daily proactive maintenance and reactive troubleshooting/repair functions for security tools and systems.
  • Utilize SIEM and other tools to assist in network investigations, including firewalls, IDS/IPS and monitoring tools.

Avertium is a cyber fusion and MXDR leader, delivering comprehensive security and compliance services to mid-market and enterprise customers. The company provides a stimulating work environment with cutting-edge security technologies and opportunities for professional growth.

US Unlimited PTO

  • Design, develop, and maintain secure cloud environments for distributed LogRhythm deployments.
  • Act as a technical escalation point for SIEM engineers, solving complex security and infrastructure issues.
  • Build automation and operational tooling using PowerShell, SQL, Bash, or Python.

The company specializes in cybersecurity and managed SIEM services, focusing on protecting and scaling distributed LogRhythm environments. They offer a remote work environment with a collaborative culture and opportunities for professional growth.

Global 7w PTO

  • Design, implement, and maintain Cloudflare Zero Trust architecture including Access, Gateway, Tunnel, and One Client.
  • Harden endpoints, run vulnerability management, and build security monitoring with SIEM detections.
  • Enforce network segmentation, coordinate penetration tests, and lead incident response for infrastructure security incidents.

Social Discovery Group (SDG) is a group of social discovery companies that solve problems of loneliness and isolation by transforming virtual intimacy into the new normal. They have an international remote team and are a two-time 'Great Place to Work' winner (USA & Japan, 2024-2025).

$128,130–$235,287/yr
US 12w maternity 12w paternity

  • Lead DLP incident response, including investigation, containment, and remediation.
  • Deploy and tune DLP controls across endpoints, network, and cloud.
  • Develop DLP policies and automated playbooks.

Included Health is a healthcare company that delivers integrated virtual care and navigation. They have a remote-first culture and offer comprehensive benefits.