Logo
Varsity Tutors, a Nerdy Company

Security Engineer - Detection & Response

Varsity Tutors, a Nerdy Company, Birmingham, Alabama, United States, 35275

Save Job

Security Engineer - Detection & Response

You are an AI-powered Security Engineer responsible for identifying and responding to malicious or suspicious activity across our environment with speed and confidence. This role leads the engineering work behind these capabilities—designing scalable systems to detect threats and trigger automated responses. You will integrate AI into detection and response workflows to accelerate rule development, streamline enrichment, and reduce investigation time, with human validation ensuring precision and alignment. As a cloud-first SaaS company relying on a broad portfolio of SaaS tools, we generate large volumes of event data across identity, endpoint, infrastructure, and collaboration systems. This is a platform engineering role focused on building and operating a modern detection pipeline integrated with security automation workflows. You will use Python, structured data, and widely adopted frameworks for mapping adversary behaviors and response logic to drive faster, more effective security outcomes. Overview of Nerdy

How we compete

AI-Native at every level Entrepreneurial velocity Free-market rigor Full-stack ownership Reward for contribution Relentless exploration Is Apolitical Responsibilities

Implement and operate detection systems, including a scalable cloud-native SIEM platform supporting ingestion from identity, endpoint, SaaS, and infrastructure sources. Develop and maintain detection coverage maps aligned to MITRE ATT&CK techniques, threat modeling, and incident history. Leverage AI to accelerate detection rule creation, enrichment, and triage insights, and conduct AI-assisted threat hunting to surface novel behaviors and codify them as deterministic detections. Build detection observability tools and dashboards to monitor rule effectiveness, alert volumes, and system performance. Design and implement SOAR workflows and automated response playbooks with built-in observability, rollback, and reliability controls. Leverage AI within SOAR for adaptive enrichment, workflow generation, and documentation, while continuously tuning automation based on incident outcomes. Lead incident response activities as part of the incident commander rotation, and drive continuous improvement of runbooks and playbooks using lessons learned and AI support for timelines and summaries. Collaborate cross-functionally with engineering and business stakeholders to embed detection and response into system design, operational processes, and organizational priorities. Qualifications

5+ years in security engineering, detection engineering, or threat-focused automation roles. Strong knowledge of MITRE ATT&CK framework, detection logic, and IOC/IOA patterns. Familiarity with MITRE D3FEND for defense-in-depth and response playbook design. Hands-on experience designing, deploying, or managing SIEM platforms (vendor-neutral mindset preferred). Strong Python scripting skills for integrations, enrichment logic, and playbook development. Experience working with structured data formats such as JSON, YAML, logs, and metrics. Familiarity with SaaS logging constraints and cloud-native telemetry, preferably AWS. Understanding of event-driven architecture and API-driven integrations. Demonstrated ability to use AI tools to accelerate scripting, generate or translate detection rules, or assist with enrichment workflows, always with human validation for accuracy. Comfortable working autonomously and cross-functionally to deliver reliable detection outcomes. Unlock Your Full Potential at Nerdy

Competitive Compensation: Market-leading salary paired with clear promotion pathways - become an owner in our success. Retirement Made Simple: 401(k) plan with company match and immediate vesting. A Remote-First Culture: We embrace flexibility across time zones and working styles to attract top talent and meet learners where they are. Flexible Time Off: Recharge on your terms, ensuring maximum productivity. Continuous Learning: Access an all-inclusive learning membership for you and your household, including 1:1 tutoring hours, unlimited on-demand classes, and our full suite of learning products and services. Supercharge with AI: Leverage cutting-edge AI tools to accelerate your workflow. You're Covered: Medical, dental, vision, life, STD & LTD plans plus strong maternity, paternity, and adoption leaves - numerous options for you and your family.

#J-18808-Ljbffr