CrawlJobs Logo

Security Operations Engineer, Detection and Response Team

Notion

Location Icon

Location:
Ireland , Dublin

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

Notion is looking for a talented Security Engineer with solid communication and analytical skills to help us improve and optimize our security monitoring program. We are seeking someone with a mixture of technical ability, attention to detail, and who can function comfortably in a variety of cyber security disciplines. In addition to technical acumen and enthusiasm, we need a self-motivator to stay on top of emerging threats and vulnerabilities to Notion; providing a continuous proactive monitoring approach.

Job Responsibility:

  • Design and implement advanced detections, automate security workflows, lead incident investigations, and conduct proactive threat hunts to identify and mitigate risks before they impact Notion
  • Lead detection engineering efforts, designing scalable, high-fidelity security detections across cloud, endpoint, and application environments
  • Develop automation & orchestration solutions to improve response and containment times and enhance security workflows
  • Own and drive incident response and command, leading major security incidents, containment, and remediation efforts
  • Conduct proactive threat hunting, leveraging threat intelligence and hypothesis-driven methodologies to detect hidden adversary activity
  • Reverse-engineer attacks, analyzing adversary behavior and developing robust detection strategies
  • Continuously improve security defenses, applying lessons learned from incidents, hunting exercises, and emerging threat trends

Requirements:

  • 5+ years of experience in security detection, response, or related fields
  • Strong ability to write, tune, and optimize detections across various platforms (e.g., EDR, SIEM, network monitoring)
  • Proficiency in scripting and automation (Python, Go, or similar) to enhance detection and response capabilities
  • Experience with detection rule development (Sigma, YARA, Splunk SPL, KQL) and security event correlation
  • Deep expertise in the incident response lifecycle, including investigation, containment, remediation, and recovery
  • Lead security incidents and command response efforts, ensuring rapid containment and mitigation—even in unfamiliar environments and across team boundaries
  • Lead post-incident learning, conducting blameless postmortems and driving follow-up actions that address systemic issues and prevent recurrence
  • Experience securing cloud-native environments (AWS, GCP, or Azure), including detection and response strategies for cloud workloads
  • Practical knowledge of detecting malicious activity in application and infrastructure architectures in a SaaS environment
  • Ability to assess security gaps and propose detection & response improvements across cloud and endpoint platforms
  • Pragmatic and business-oriented: You focus on high-impact security efforts, balancing security investments with real-world risk
  • Not ideological about technology: You see technologies and programming languages as tools with tradeoffs—you’re opinionated but adaptable, always willing to learn new technologies
  • Empathetic communication: You clearly articulate complex security issues, whether in technical discussions or executive briefings. You engage thoughtfully in disagreements and find common ground when needed
  • Team player: You thrive in a team environment, collaborating cross-functionally to accomplish shared security goals. You care about mentorship, learning, and continuous improvement

Nice to have:

  • Experience leading large-scale security initiatives or driving security automation programs
  • Background in red teaming, adversary emulation, or offensive security
  • Familiarity with application-level detections, such as database security monitoring, detecting malicious queries, or abnormal application behavior
  • Familiarity with security compliance standards (SOC 2, ISO 27001), though not a primary focus
  • Involvement in the security community, such as conference presentations or open-source contributions

Additional Information:

Job Posted:
February 21, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Security Operations Engineer, Detection and Response Team

Security Operation Engineer

The Security Operation Engineer is responsible for ensuring the security and int...
Location
Location
Malaysia , Kuala Lumpur
Salary
Salary:
Not provided
https://www.allianz.com Logo
Allianz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in computer science, information technology, cybersecurity, or a related field
  • Proven experience in information security, network security, or a related role
  • Strong understanding of security principles, practices, and technologies
  • Experience with security monitoring and incident response tools and technologies
  • Proficiency in scripting or programming languages (e.g., Python, PowerShell) for automation tasks
  • Familiarity with cloud security and security frameworks (e.g., NIST, ISO 27001)
  • Strong analytical and problem-solving skills
  • Excellent communication and interpersonal skills
  • Ability to work independently and as part of a team
  • Certifications in security or related areas (e.g., Certified Information Systems Security Professional - CISSP, Certified Ethical Hacker - CEH) are a plus
Job Responsibility
Job Responsibility
  • Monitor security systems and alerts to detect and respond to potential security incidents and threats
  • Investigate and respond to security incidents, conducting root cause analysis and implementing corrective actions
  • Conduct regular vulnerability assessments and penetration tests to identify and remediate security weaknesses
  • Deploy, configure, and maintain security tools and technologies, such as firewalls, intrusion detection/prevention systems, endpoint security, and SIEM solutions
  • Assist in the development and enforcement of security policies, procedures, and standards to ensure compliance with industry regulations and best practices
  • Maintain accurate documentation of security incidents, processes, and configurations
  • Work closely with IT, network, and application teams to ensure security is integrated into all aspects of the organization's technology environment
  • Stay up-to-date with emerging security threats and trends, and recommend enhancements to improve the organization's security posture
  • Completing projects on various issues when needed.
What we offer
What we offer
  • Diverse and inclusive workforce
  • Equal opportunity employer
  • Support for employees and their ambitions.
  • Fulltime
Read More
Arrow Right

Security Operation Engineer

The Security Operation Engineer is responsible for ensuring the security and int...
Location
Location
Malaysia , Kuala Lumpur
Salary
Salary:
Not provided
https://www.allianz.com Logo
Allianz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in computer science, information technology, cybersecurity, or a related field
  • Proven experience in information security, network security, or a related role
  • Strong understanding of security principles, practices, and technologies
  • Experience with security monitoring and incident response tools and technologies
  • Proficiency in scripting or programming languages (e.g., Python, PowerShell) for automation tasks
  • Familiarity with cloud security and security frameworks (e.g., NIST, ISO 27001)
  • Strong analytical and problem-solving skills
  • Excellent communication and interpersonal skills
  • Ability to work independently and as part of a team
  • Certifications in security or related areas (e.g., Certified Information Systems Security Professional - CISSP, Certified Ethical Hacker - CEH) are a plus
Job Responsibility
Job Responsibility
  • Monitor security systems and alerts to detect and respond to potential security incidents and threats
  • Investigate and respond to security incidents, conducting root cause analysis and implementing corrective actions
  • Conduct regular vulnerability assessments and penetration tests to identify and remediate security weaknesses
  • Deploy, configure, and maintain security tools and technologies, such as firewalls, intrusion detection/prevention systems, endpoint security and SIEM solutions
  • Assist in the development and enforcement of security policies, procedures, and standards to ensure compliance with industry regulations and best practices
  • Maintain accurate documentation of security incidents, processes, and configurations
  • Work closely with IT, network, and application teams to ensure security is integrated into all aspects of the organization's technology environment
  • Stay up-to-date with emerging security threats and trends, and recommend enhancements to improve the organization's security posture
  • Any other duties when deemed necessary
  • Completing projects on various issues when needed
  • Fulltime
Read More
Arrow Right

Security Operation Engineer

The Security Operation Engineer is responsible for ensuring the security and int...
Location
Location
Malaysia , Kuala Lumpur
Salary
Salary:
Not provided
https://www.allianz.com Logo
Allianz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in computer science, information technology, cybersecurity, or a related field
  • Proven experience in information security, network security, or a related role
  • Strong understanding of security principles, practices, and technologies
  • Experience with security monitoring and incident response tools and technologies
  • Proficiency in scripting or programming languages (e.g., Python, PowerShell) for automation tasks
  • Familiarity with cloud security and security frameworks (e.g., NIST, ISO 27001)
  • Strong analytical and problem-solving skills
  • Excellent communication and interpersonal skills
  • Ability to work independently and as part of a team
  • Certifications in security or related areas (e.g., Certified Information Systems Security Professional - CISSP, Certified Ethical Hacker - CEH) are a plus
Job Responsibility
Job Responsibility
  • Monitor security systems and alerts to detect and respond to potential security incidents and threats
  • Investigate and respond to security incidents, conducting root cause analysis and implementing corrective actions
  • Conduct regular vulnerability assessments and penetration tests to identify and remediate security weaknesses
  • Deploy, configure, and maintain security tools and technologies, such as firewalls, intrusion detection/prevention systems, endpoint security and SIEM solutions
  • Assist in the development and enforcement of security policies, procedures, and standards to ensure compliance with industry regulations and best practices
  • Maintain accurate documentation of security incidents, processes, and configurations
  • Work closely with IT, network, and application teams to ensure security is integrated into all aspects of the organization's technology environment
  • Stay up-to-date with emerging security threats and trends, and recommend enhancements to improve the organization's security posture
  • Any other duties when deemed necessary
  • Completing projects on various issues when needed
  • Fulltime
Read More
Arrow Right

Incident Response Security Engineer

The Security Team is responsible for providing key security capabilities coverin...
Location
Location
United States
Salary
Salary:
169150.00 - 225000.00 USD / Year
clickhouse.com Logo
ClickHouse
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Background in product security / red teaming / penetration testing / threat modeling, combined with incident detection and response experience
  • Strong knowledge of and experience with one or more cloud service providers (e.g. AWS, GCP, Azure)
  • Excellent written and verbal communication skills
  • Experience securing large-scale customer-facing cloud infrastructures
  • Significant development and automation experience
  • preference for Golang and Python
Job Responsibility
Job Responsibility
  • Develop processes, tooling and automation to scale incident management response and mitigate risks to the business
  • Collaborate with other security functions, engineering, product, support, business operations to identify appropriate detection use cases and automation
  • Apply a threat modeling centric approach to incident detection and response
  • Maintain security logging platform
  • Stay up to date with the latest threats, attack vectors to improve our detection mechanisms and attack surface management
  • Handle information security events and incidents across the ClickHouse products and services
What we offer
What we offer
  • Flexible work environment - ClickHouse is a globally distributed company and remote-friendly. We currently operate in 20 countries
  • Healthcare - Employer contributions towards your healthcare
  • Equity in the company - Every new team member who joins our company receives stock options
  • Time off - Flexible time off in the US, generous entitlement in other countries
  • A $500 Home office setup if you’re a remote employee
  • Global Gatherings – We believe in the power of in-person connection and offer opportunities to engage with colleagues at company-wide offsites
  • Fulltime
Read More
Arrow Right

Incident Response Security Engineer

The Security Team is responsible for providing key security capabilities coverin...
Location
Location
Canada
Salary
Salary:
Not provided
clickhouse.com Logo
ClickHouse
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Background in product security / red teaming / penetration testing / threat modeling, combined with incident detection and response experience
  • Strong knowledge of and experience with one or more cloud service providers (e.g. AWS, GCP, Azure)
  • Excellent written and verbal communication skills
  • Experience securing large-scale customer-facing cloud infrastructures
  • Significant development and automation experience
  • preference for Golang and Python
Job Responsibility
Job Responsibility
  • Develop processes, tooling and automation to scale incident management response and mitigate risks to the business
  • Collaborate with other security functions, engineering, product, support, business operations to identify appropriate detection use cases and automation
  • Apply a threat modeling centric approach to incident detection and response
  • Maintain security logging platform
  • Stay up to date with the latest threats, attack vectors to improve our detection mechanisms and attack surface management
  • Handle information security events and incidents across the ClickHouse products and services
What we offer
What we offer
  • Flexible work environment - ClickHouse is a globally distributed company and remote-friendly. We currently operate in 20 countries
  • Healthcare - Employer contributions towards your healthcare
  • Equity in the company - Every new team member who joins our company receives stock options
  • Time off - Flexible time off in the US, generous entitlement in other countries
  • A $500 Home office setup if you’re a remote employee
  • Global Gatherings – We believe in the power of in-person connection and offer opportunities to engage with colleagues at company-wide offsites
Read More
Arrow Right

Incident Response Security Engineer

The Security Team is responsible for providing key security capabilities coverin...
Location
Location
Netherlands
Salary
Salary:
Not provided
clickhouse.com Logo
ClickHouse
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Background in product security / red teaming / penetration testing / threat modeling, combined with incident detection and response experience
  • Strong knowledge of and experience with one or more cloud service providers (e.g. AWS, GCP, Azure)
  • Excellent written and verbal communication skills
  • Experience securing large-scale customer-facing cloud infrastructures
  • Significant development and automation experience
  • preference for Golang and Python
Job Responsibility
Job Responsibility
  • Develop processes, tooling and automation to scale incident management response and mitigate risks to the business
  • Collaborate with other security functions, engineering, product, support, business operations to identify appropriate detection use cases and automation
  • Apply a threat modeling centric approach to incident detection and response
  • Maintain security logging platform
  • Stay up to date with the latest threats, attack vectors to improve our detection mechanisms and attack surface management
  • Handle information security events and incidents across the ClickHouse products and services
What we offer
What we offer
  • Flexible work environment - ClickHouse is a globally distributed company and remote-friendly. We currently operate in 20 countries
  • Healthcare - Employer contributions towards your healthcare
  • Equity in the company - Every new team member who joins our company receives stock options
  • Time off - Flexible time off in the US, generous entitlement in other countries
  • A $500 Home office setup if you’re a remote employee
  • Global Gatherings – We believe in the power of in-person connection and offer opportunities to engage with colleagues at company-wide offsites
Read More
Arrow Right

Incident Response Security Engineer

The Security Team is responsible for providing key security capabilities coverin...
Location
Location
United Kingdom
Salary
Salary:
Not provided
clickhouse.com Logo
ClickHouse
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Background in product security / red teaming / penetration testing / threat modeling, combined with incident detection and response experience
  • Strong knowledge of and experience with one or more cloud service providers (e.g. AWS, GCP, Azure)
  • Excellent written and verbal communication skills
  • Experience securing large-scale customer-facing cloud infrastructures
  • Significant development and automation experience
  • preference for Golang and Python
Job Responsibility
Job Responsibility
  • Develop processes, tooling and automation to scale incident management response and mitigate risks to the business
  • Collaborate with other security functions, engineering, product, support, business operations to identify appropriate detection use cases and automation
  • Apply a threat modeling centric approach to incident detection and response
  • Maintain security logging platform
  • Stay up to date with the latest threats, attack vectors to improve our detection mechanisms and attack surface management
  • Handle information security events and incidents across the ClickHouse products and services
What we offer
What we offer
  • Flexible work environment - ClickHouse is a globally distributed company and remote-friendly. We currently operate in 20 countries
  • Healthcare - Employer contributions towards your healthcare
  • Equity in the company - Every new team member who joins our company receives stock options
  • Time off - Flexible time off in the US, generous entitlement in other countries
  • A $500 Home office setup if you’re a remote employee
  • Global Gatherings – We believe in the power of in-person connection and offer opportunities to engage with colleagues at company-wide offsites
Read More
Arrow Right

Senior Security Operations Engineer II

As a Senior Security Operations Engineer, you’ll play a key role in ensuring the...
Location
Location
United States , Scottsdale
Salary
Salary:
Not provided
axon.com Logo
Axon
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years of experience in operations, site reliability, or infrastructure engineering roles
  • Strong experience securing and managing cloud environments (e.g., AWS, Azure) and containerized workloads
  • Deep understanding of Linux systems, networking, distributed systems, and their associated security controls
  • Proficiency in automation, scripting, and security tooling integration to streamline operations and enforcement
  • Experience with security monitoring, alerting, SIEM platforms, and observability tools
  • Solid grasp of CI/CD practices with integrated security testing and compliance checks
  • Experience managing Kubernetes clusters and running containerized workloads in production
  • Experience with deploying and administrating any of the following: scalable cloud native secrets solutions such as AWS KMS, Azure KeyVault
  • PKI solutions such as EJBCA, Smallstep, Venafi
  • or vaulting solutions such as Hashicorp Vault
Job Responsibility
Job Responsibility
  • Implementing and improving automated security checks in CI/CD pipelines to prevent vulnerabilities from reaching production
  • Writing, reviewing, and maintaining security-focused infrastructure-as-code for scalable and compliant deployments
  • Investigating security incidents, performing root cause analysis, and implementing long-term mitigation strategies
  • Collaborating with developers to develop new features, services, and infrastructure requirements
  • Enhancing security observability through improved log collection, metrics, and alerting configurations
  • Maintaining and improving security runbooks, incident response playbooks, and internal security tooling for operational efficiency
  • Resolve security/infrastructure incidents by participating in high impact/high visibility incidents as a participant and ideally as an incident commander
  • Maintain and secure critical infrastructure components such as PKI (Public Key Infrastructure) and IAM ( Identity & Access Management) systems, ensuring reliability, scalability, and compliance with organizational and industry security standards
  • Build and maintain secure, reliable, and scalable infrastructure that protects core services and sensitive data
  • Troubleshoot and resolve complex operational and system-level issues across environments
What we offer
What we offer
  • Competitive salary and 401k with employer match
  • Discretionary paid time off
  • Paid parental leave for all
  • Medical, Dental, Vision plans
  • Fitness Programs
  • Emotional & Mental Wellness support
  • Learning & Development programs
  • Snacks in our offices
  • Fulltime
Read More
Arrow Right