SlipstreamJobsFresh Startup & VC-Backed Jobs

Senior Detection and Response Engineer

Altruist - San Francisco, CA, USA - Hybrid - posted 2026-09-09

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Salary: USD 200,000 - 0 / annual

Altruist is transforming the wealth management industry with an AI platform for financial advisors. The company is hiring a Senior Detection and Response Engineer to join its growing Security team, building detection and response capabilities across cloud, endpoints, and identity providers. In this role, you will build, tune, and maintain high-fidelity detections as code across SIEM, cloud, endpoint, and identity telemetry. You'll triage and investigate alerts, lead response on security incidents, and proactively threat-hunt for low-and-slow and insider activity. You'll operationalize threat intelligence and IOC ingestion into detections and edge/WAF rules, develop response playbooks and automation (SOAR) to reduce toil and speed containment, and partner with MDR and IR partners while running purple-team exercises with red team security engineers. You'll continuously improve logging coverage and detection efficacy, measured against MITRE ATT&CK. You bring 4+ years of experience in detection engineering, incident response, or threat hunting, with hands-on authoring of detections in a modern SIEM, investigations across cloud (AWS), endpoint, and identity data sources, and comfort scripting and automating (e.g., Python). You hold a B.A./B.S. in Computer Science, Computer Engineering, Information Security, or equivalent experience. You're technologically savvy and can easily get up to speed on modern tech stacks (AWS, Kubernetes, Datadog/Splunk, SentinelOne, CrowdStrike, Terraform). You demonstrate strong ownership, superb communication, resilience, and creative problem-solving. Bonus experience includes working in regulated environments (fintech/financial services) and cyber threat intelligence or insider-threat detection. The role follows a hybrid schedule with three days per week onsite in the San Francisco FiDi or Culver City office.

Similar roles