×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

Senior Detection and Response Engineer

Job in San Francisco, San Francisco County, California, 94199, USA
Listing for: Faire
Full Time position
Listed on 2026-09-04
Job specializations:
  • IT/Tech
    Cybersecurity
Salary/Wage Range or Industry Benchmark: 175000 - 240000 USD Yearly USD 175000.00 240000.00 YEAR
Job Description & How to Apply Below

About Faire

Faire is a technology wholesale platform built on the belief that the future is local. Independent retailers around the globe collectively represent a multi-hundred-billion-dollar wholesale market that has historically been fragmented and offline. At Faire, we're using the power of tech, data, and machine learning to connect this thriving community of entrepreneurs across the globe. Picture your favorite boutique in town — we help them discover the best products from around the world to sell in their stores.

With the right tools and insights, we believe that we can level the playing field so businesses can grow and local communities can thrive.

About Faire

Faire is a technology wholesale platform built on the belief that the future is local. Independent retailers around the globe collectively represent a multi-hundred-billion-dollar wholesale market that has historically been fragmented and offline. At Faire, we're using the power of tech, data, and machine learning to connect this thriving community of entrepreneurs across the globe. Picture your favorite boutique in town — we help them discover the best products from around the world to sell in their stores.

With the right tools and insights, we believe that we can level the playing field so businesses can grow and local communities can thrive.

We’re looking for smart, resourceful and passionate people to join us as we power the shop local movement. If you believe in community, come join ours.

About This Role

As our first Detection & Response engineer, you'll build that capability from the ground up focused on our enterprise environment. Looking for and monitoring threats within identity systems our employees authenticate through, the laptops they work on, the SaaS applications that run the business, our enterprise network, and the internal infrastructure behind it. You'll decide what we monitor, build the pipelines and detections that monitor it, and write the playbooks we run when something fires.

This is a zero-to-one role and it will suit someone who enjoys building with a lot of autonomy.

What You'll Do
  • Shape the technical direction for detection and response ine what good looks like, build the roadmap that gets us there, and make the case for the tooling and support it needs.
  • Build detection engineering for Faire's enterprise environment end to end. Telemetry pipelines, detection content, alert routing, and enrichment.
  • Bring a threat-informed point of view. Track how adversaries operate against companies like ours and translate that into detections, hunts, and tabletop exercises that test whether we'd catch it.
  • Own detections and data pipelines written as IaaC.
  • Automate triage, enrichment, and response so alert volume can grow without a proportional increase in analyst time.
  • Work with IAM, CPE, Net Eng, and IT Infrastructure Engineering to get the telemetry you need.
  • Partner with Enterprise Security to translate detection findings into control improvements, and hand root causes to the teams that own them with enough context that they actually get fixed.
Qualifications
  • Deep hands‑on experience in detection engineering, incident response, or security operations, with a track record of building capability
  • Depth in corporate attack surfaces such as identity providers and SSO, endpoint and EDR telemetry, email security, SaaS logs, device management signals, and corporate network access.
  • Strong proficiency in Python and query language such as SQL.
  • The ability to build and maintain detection‑as‑code pipelines yourself rather than specify them for someone else to build.
  • Practical experience with SIEM, EDR, and security analytics platforms
  • Investigative depth on endpoints and in cloud and SaaS environments, so you can reconstruct what happened across an IdP, a laptop, and a SaaS admin console, and say what you know versus what you're inferring.
  • Excellent written communication and a collaborative approach to influence. You'll explain to engineers why a detection matters and to leadership what an incident actually means.
  • Bonus points for experience as a founding security hire, insider threat or data loss detection, an offensive security background…
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary