Senior Security Engineer
Immutable
Job Summary
Immutable is seeking a Senior Security Engineer to join their growing security team. The role will focus on detection engineering, response automation, and adversary simulation within a fast-paced web3 company. Responsibilities include owning and operating Security Operations (SecOps) and SOAR platforms, designing and implementing detection pipelines, hardening endpoints and SaaS controls, and deploying security agents. The engineer will leverage AI, scripting (Python, Golang), and automation to improve security functions and collaborate with other teams to integrate security into the SDLC and product architecture. The ideal candidate will have proven experience in detection and response engineering, security automation, or security operations, and a passion for threat modeling and attack simulation.
Must Have
- Detection and response engineering experience
- Security automation or SecOps experience
- Aligning technical actions with strategic security outcomes
- Building data ingestion and routing pipelines
- Threat modeling and attack simulation curiosity
- Pragmatic mindset
- Cloud-native services (AWS/GCP) knowledge
- SOAR tools and detection platforms knowledge
- Endpoint agents (Kolide, Santa, Crowdstrike) knowledge
- Identity protocols (OIDC, SAML), RBAC/least privilege knowledge
Good to Have
- Web3, blockchain, or crypto threat environments experience
Perks & Benefits
- Globally competitive salaries and contributions
- Employee Stock Options
- US Employees: Medical and 401K Insurance
- Flexible working model
- USD $500 WFH allowance
- USD $600 per annum for internet and phone usage
- Up to USD $1,350 per annum for professional development
- Free online courses via Udemy
- USD $800 per year for health and wellbeing
- 24/7 access to unlimited counselling
- Monthly subsidy and discounted rate with ClassPass
- 1-year free membership to Breethe
- 12 weeks paid parental leave
- Additional six weeks leave for birthing parent
- Miscarriage Leave and IVF treatment leave
- 2 additional paid annual leave days
- Paid day off for birthday
Job Description
You’ll Be Empowered To 🎮
- Own and operate our Security Operations (SecOps) and SOAR platforms, building playbooks and automation to reduce response time and improve signal fidelity.
- Design and implement detection pipelines that surface high-fidelity alerts and enable effective incident triage.
- Lead initiatives to harden our endpoints, SaaS controls, and workforce identity systems.
- Deploy and manage security agents (EDR, device assurance, secrets managers) across our environment.
- Collaborate cross-functionally to integrate security deeply into our SDLC and product architecture.
- Leverage AI, scripting (Python, Golang), and automation to reduce toil and scale our small but mighty security function.
- Operate with a “crown jewels” strategy—prioritising what matters most and moving fast where it counts.
We'd Love You To Bring 🤝
- Proven experience in detection and response engineering, security automation, or security operations in a product or platform company.
- Demonstrated ability to align technical actions with strategic security outcomes.
- Experience building pipelines that ingest, enrich and route data to security platforms.
- Curiosity and passion for threat modelling, attack simulation, and adversary behaviour.
- A pragmatic mindset: no cargo culting, just what works—incremental wins over theoretical perfection.
- Cloud-native services (AWS/GCP)
- SOAR tools and detection platforms
- Endpoint agents like Kolide, Santa, or Crowdstrike
- Identity protocols (OIDC, SAML), RBAC/least privilege
Why You’ll Love It Here 💫
- Shape the future of security in a frontier industry (crypto/web3)
- Work alongside a high-performance team with agency, autonomy, and impact
- Focus on deep work, tooling, and effectiveness—not firefighting
- Partner with passionate engineers and leaders who value security
- Move fast: deliver results in days, not quarters