Senior Security Engineer - Detection & Response
Listed on 2026-09-26
-
IT/Tech
Cybersecurity, Information Security & Data Protection
At Klaviyo, we value the unique backgrounds, experiences and perspectives each Klaviyo (we call ourselves Klaviyos) brings to our workplace each and every day. We believe everyone deserves a fair shot at success and appreciate the experiences each person brings beyond the traditional job requirements. If you're a close but not exact match with the description, we hope you'll still consider applying.
Klaviyo is looking for a Senior Security Engineer to add to our growing Detection & Response Team. This is an engineering role that spans the full detection and response lifecycle - leveraging software development practices to build detections, triage alerts, lead investigations, respond to incidents, perform threat hunting, and build the tooling that keeps us from doing the same work twice.
As a member of the team, you will have the opportunity to work on complex large-scale security challenges across Klaviyo's enterprise, cloud, and product environments, and shape how an engineering‑first D&R function uses automation and AI in production, at scale, alongside talented and ambitious colleagues spanning multiple regions and timezones.
- Leverage engineering practices to develop, test, and deploy high-fidelity rule-based and anomaly-based detections-as-code
- Detect and respond to cyber threats using security data lake, SIEM, and cloud platforms
- Respond to alerts, cyber threats, and drive end-to-end incident response investigations
- Perform digital forensic investigations to include collection and analysis of evidence
- Automate and codify detection and response workflows and processes
- Build security tooling to drive automation across D&R lifecycle
- Improve and maintain detection and response pipelines and underlying systems
- Work with our Threat Intelligence team to identify and respond to sophisticated threats
- Develop AI-first security systems to automate detection and response operations
- Conduct threat hunts across corporate, cloud and product environments
- Support data engineering workflows for core security data lake and SIEM platforms
- Be an active member of D&R on-call rotations
- Coach and mentor security engineers within the detection & response team
- 5+ years of hands-on security experience in modern cloud environments
- Experience in triaging and responding to cyber threats
- Experience in large-scale log analysis, incident response and/or digital forensics
- Experience with centralized security data lakes and SIEM solutions
- Hands‑on experience in writing detections-as-code
- Solid data querying skills (e.g. SQL, Splunk)
- Familiarity with large-scale data pipelines and data engineering techniques
- Proficient in programming languages to automate / build (e.g., Python, Go or similar)
- Proven experience with git/Git Hub and CI/CD automations
- Familiarity with tactics, techniques, and procedures used by threat actors
- Experience being part of detection and response or incident response on-call
- Engineering-first and AI-first approach for all work performed
- Strong passion for continuous learning and staying updated on evolving technology
- Strong oral and written communication skills
- Team player with a strong, self-managing work ethic
Our salary range reflects the cost of labour in the country where the job post is advertised. The base salary offered for this position is determined by several factors, including the applicant's job-related skills, relevant experience, education or training, and work location.
In addition to base salary, our total compensation package may include participation in the company's annual cash bonus plan, variable compensation (OTE) for sales and customer success roles, equity, sign‑on payments, and a comprehensive range of health, welfare, and…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).