Summary
Join Gemini's Threat Detection & Response (TDR) team as a Staff Security Engineer. This hybrid role blends incident response, alert triage, and infrastructure development. You will participate in on-call rotations, handling security incidents while improving TDR systems using tools like Crowdstrike, Splunk, and AWS. As a systems reliability expert, you'll lead projects enhancing observability, automation, and infrastructure. The ideal candidate possesses strong security operations and systems engineering experience, proficiency in Python, and experience with cloud-native environments. This role offers a competitive salary, bonus, equity grant, comprehensive health plans, 401k matching, paid parental leave, and flexible time off.
Requirements
- Significant professional experience in both security operations (e.g., detection engineering, incident response, alert triage) and systems engineering or SRE roles
- Proficiency with infrastructure as code and cloud-native environments, especially AWS and Kubernetes
- Strong coding skills in Python or similar languages used for automation and system tooling
- Experience with tools such as Splunk, Crowdstrike, osquery, and SOAR platforms
- Comfortable participating in on-call rotations and rapidly responding to security incidents
- Excellent problem-solving skills and ability to work independently in a fast-paced environment
Responsibilities
- Participate in the TDR on-call rotation and contribute to detection, triage, and incident response workflows
- Design, implement, and maintain the systems and platforms used in threat detection and response, such as Crowdstrike, Splunk, osquery, and XSOAR
- Improve reliability, scalability, and performance of TDR tooling and data pipelines across AWS, Kubernetes, and other cloud-native environments
- Automate repetitive processes and enhance alerting, logging, and monitoring for TDR infrastructure
- Collaborate with other teams to improve integrations between security tools and the broader Gemini ecosystem
Preferred Qualifications
- Experience designing and maintaining CI/CD pipelines for security tooling
- Familiarity with workflow orchestration tools like Airflow or Argo
- Deep understanding of logging, metrics, and monitoring systems, including data pipelines
- Contributions to open source security or infrastructure tools
- Prior experience in fraud detection or insider threat programs
- Ability to mentor and up-skill teammates in systems and platform engineering practices
Benefits
- Competitive starting salary
- A discretionary annual bonus
- Long-term incentive in the form of a new hire equity grant
- Comprehensive health plans
- 401K with company matching
- Paid Parental Leave
- Flexible time off