Job opportunities


Senior Security Engineer - Detection and Response



This job is no longer accepting applications

See open jobs at Robinhood.
Menlo Park, CA, USA · New York, NY, USA · Seattle, WA, USA
Posted on Wednesday, May 17, 2023

Join a leading fintech company that’s democratizing finance for all.

Robinhood was founded on a simple idea: that our financial markets should be accessible to all. With customers at the heart of our decisions, Robinhood is lowering barriers and providing greater access to financial information. Together, we are building products and services that help create a financial system everyone can participate in.

As we continue to build...

We’re seeking curious thinkers looking to co-author the next chapters of our story. Joining now means helping shape our vision, structures and systems; playing a key-role as we launch into our ambitious future.

This role can be seated in Menlo Park, CA, New York, New York, Seattle, WA, or Washington, DC

About the team:

The Detection and Response Team (D&R) at Robinhood exemplifies our Safety First value by building and operating services that protect our customers' security and privacy. D&R consists of the Detection Platform and Incident Response teams, who work together to detect and assess threats, collect and analyze data, and respond to events. Together, we ensure the effectiveness of our safeguards and the continuous protection of our customer's data.

We are searching for an inquisitive and innovative Security Engineer with a passion for building detection strategies, conducting threat-hunting exercises, automating the mundane, and leading responses to security incidents against the full breadth of Robinhood's technology stack.

We want to talk to you if you're interested in being part of an impactful and inclusive team built on teamwork that encourages your diverse ideas and perspectives.

What you'll do day-to-day:

  • Research attacker tactics, techniques, and procedures (TTPs) and craft detections to quickly identify and contain potential security threats
  • Work with our Threat Intel and Offensive Security teams to stay ahead of emerging threats and understand where our risks and gaps exist
  • Respond to security events, triage, perform investigations, incident analysis, and communicate clearly and efficiently to partners
  • Participate in an on-call rotation responsible for incident command

About you:

  • 5+ years of experience in security operations, threat detection, incident response, or related domains
  • Innately curious and skilled at finding hidden signals in a sea of data
  • Excellent communicator and are comfortable discussing complex technical concepts with engineers and partners at any level
  • Strong analytical and problem-solving skills, with an ability to think critically and objectively assess security risks
  • Deep expertise in security monitoring, log analysis, and detection building using diverse datasets

Bonus points:

  • Experience detecting or responding to threats in Kubernetes (K8s), AWS, and Linux environments
  • Proficiency in using Splunk or similar tools to build sophisticated detections
  • Experience threat hunting to proactively and iteratively investigate potential risks to discover suspicious behavior
  • Comfortable scripting in Python, Go, Bash, etc.

Technologies we use:

  • Amazon Web Services (AWS), Kubernetes
  • Splunk, Tines, Falco, Databricks, EDR, Osquery

The expected salary range for this role is based on the location where the work will be performed and is aligned to one of 3 compensation zones. This role is also eligible to participate in a Robinhood bonus plan and Robinhood’s equity plan.

US Zone 1: $187000 - $220000
US Zone 2: $165000 - $194000
US Zone 3: $146000 - $172000

Base pay for the successful applicant will depend on a variety of job-related factors, which may include education, training, experience, location, business needs, or market demands. You can view comp zones for our US office locations in the table below. For other locations not listed, compensation can be discussed with your recruiter during the interview process.

Office locations (by comp zone)
US Zone 1: Menlo Park, NYC, Seattle, Washington DC
US Zone 2: Denver, Westlake (Dallas), Chicago
US Zone 3: Lake Mary

We’re looking for more growth-minded and collaborative people to be a part of our journey in democratizing finance for all. If you’re ready to give 100% in helping us achieve our mission—we’d love to have you apply even if you feel unsure about whether you meet every single requirement in this posting. At Robinhood, we're looking for people invigorated by our mission, values, and drive to change the world, not just those who simply check off all the boxes.

Robinhood promotes diversity and provides equal opportunity for all applicants and employees. We are dedicated to building a company that represents a variety of backgrounds, perspectives, and skills. We believe that the more inclusive we are, the better our work (and work environment) will be for everyone. Additionally, Robinhood provides reasonable accommodations for candidates on request and respects applicants' privacy rights. To review Robinhood's Privacy Policy please visit Robinhood - US Applicant Privacy Policy. If you are an applicant located in the UK or EEA, please visit the Robinhood UK/EEA Applicant Privacy Policy.

Click here to learn more about Robinhood’s Benefits.

This job is no longer accepting applications

See open jobs at Robinhood.