SlipstreamJobsFresh Startup & VC-Backed Jobs

Senior Security Engineer

Guardant Health - Remote - Remote

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Guardant Health, a leading precision oncology company, is seeking a Senior Security Engineer to design, implement, operate, and continuously improve core security capabilities across the organization. Reporting to the Associate Director of Security Engineering, this is a broad, hands-on role spanning Security Tooling, Logging and Monitoring, Threat Detection, Incident Response, Vulnerability Management, Cloud Security, Endpoint Security, Identity, and Security Automation. Key responsibilities include designing and operating enterprise security tools across Endpoint, Cloud, Identity, Network, SaaS, and Vulnerability Management platforms. You will oversee Managed Detection and Response (MDR) and Security Orchestration, Automation, and Response (SOAR) capabilities, serve as technical owner for SIEM operations including log source onboarding and detection support, and develop high-value threat detection content such as SIEM rules, behavioral analytics, and endpoint detections. The role requires supporting incident response activities including triage, investigation, containment, and post-incident reviews. You will analyze security events and threat intelligence to improve detection coverage, provide expertise on EDR tooling configuration and integrations, and support vulnerability management activities including scanner operations and remediation tracking. Cloud security experience is essential, with responsibilities including monitoring AWS CloudTrail, VPC Flow Logs, IAM activity, and container environments. You will build dashboards and metrics to measure security tool health, detection coverage, and incident response effectiveness. The position includes evaluating AI-assisted security capabilities for detection and response, developing operational runbooks and incident response playbooks, and providing technical leadership and mentorship to junior engineers and cross-functional partners. Required qualifications include 5+ years in Security Engineering, Security Operations, Incident Response, or related roles, with broad hands-on experience administering enterprise security tools. Strong SIEM platform experience is essential, along with hands-on EDR and Vulnerability Management platform expertise. AWS or cloud environment security experience required. This role suits someone comfortable wearing many hats, moving fluidly between engineering, operations, and incident response work in a fast-paced environment.

Similar roles