Beyond Finance
Detection & Response Engineering Manager
Chicago, IL (Hybrid) · Full-time
Sponsorship not specified$150k-$180kDetected 4 days ago
Code ReviewAWSDatadogLLMsAI OrchestrationCybersecuritySIEMSOARSOC OperationsDetection EngineeringIncident ResponseComplianceLeadershipMentoringCISSP
About the role
- You'll stay hands-on, coaching and growing the team while working in the detections, pipelines, and investigations yourself.
- Security operations: monitoring, triage, and incident response across our SaaS applications, user workstations, and AWS, including signals from insider risk.
- Logging pipeline: ingest, normalize, enrich, and route security telemetry through APIs and connectors.
Responsibilities
- You're inheriting an established function with room to mature, and a mandate to build: as we bring automation and AI into security operations, you'll take new capabilities from idea to production.
- You'll own detection and response for our environment: monitoring, triage, and incident response across our SaaS applications, user workstations, and AWS.
Requirements
- 7+ years in security operations, detection, or incident response.
- You can take a broad roadmap and prioritize independently, breaking the big picture into concrete, sequenced work for you and the team.
- Experience mentoring or leading engineers or analysts
- formal management tenure is not required.
- You write your own scripts and build detection logic as code.
- A track record of taking projects from prototype to production, including the architecture and the hands-on build.
- Depth in SIEM, EDR, and SOAR
- we use Datadog Cloud SIEM, ingesting logs from across our platforms, including AWS.
- You can identify which KPIs apply where and set acceptable thresholds for each, across measures such as detection coverage, false-positive rate, MTTR, and automation rate.
Nice to have
- Certifications such as CISSP, the GIAC detection/IR family, or OSCP.
- Experience applying AI or LLMs to security work.
- Awareness of AI-specific risks such as prompt injection and agent trust boundaries.
- Hands-on threat hunting experience.
- Fintech or other regulated-industry experience, and familiarity with PCI DSS, SOC 2, or GLBA.
- Experience securing cloud-native and containerized environments.
Compensation
- $150,000 - $180,000 USD
Benefits
- Considerable employer contributions for health, dental, and vision programs
- Generous PTO, paid holidays, and paid parental leave
- own the detection lifecycle, write, tune, and retire detections, map coverage to MITRE ATT&CK, and reduce false positives.
- While you make a difference for others, we'll work to make a difference for you, providing an uplifting, collaborative work environment and benefits that reflect your value to us.
Company info
- At Beyond Finance, we've made it our mission to help everyday Americans escape the endless cycle of crippling debt and step into a brighter financial future.
- Through compassionate, individualized care, a culture focused on compliance and ethics, supportive user-centric technology, and customized financial solutions, we've helped over 1 million clients on their path to a brighter future.
- While we're proud of what we've already accomplished, we're searching for new collaborators to help us get to the next level!
- If you're looking to join a forward-thinking, rapidly growing organization with helping people as its number one goal, we want to hear from you.
Apply directly at Beyond Finance →Create a free account for alerts like thisView Beyond Finance immigration profile
This listing is sourced directly from Beyond Finance's careers page and normalized into a canonical job model.