Senior Security Engineer, Detection and Response

Posted:
9/13/2024, 1:57:41 PM

Location(s):
California, United States

Experience Level(s):
Senior

Field(s):
IT & Security

Workplace Type:
Hybrid

Every day, tens of millions of people come to Roblox to explore, create, play, learn, and connect with friends in 3D immersive digital experiences– all created by our global community of developers and creators. 

At Roblox, we’re building the tools and platform that empower our community to bring any experience that they can imagine to life. Our vision is to reimagine the way people come together, from anywhere in the world, and on any device. We’re on a mission to connect a billion people with optimism and civility, and looking for amazing talent to help us get there. 

A career at Roblox means you’ll be working to shape the future of human interaction, solving unique technical challenges at scale, and helping to create safer, more civil shared experiences for everyone.

As a Senior Security Engineer on the Detection and Response (DART) team at Roblox, you'll play a key role developing and implementing effective detection strategies, triage and investigation techniques, along with automations for response workflows to defend our critical assets from threat actors. You will actively investigate events, lead real-time incident response and analyze threat actor techniques to prioritize emerging threats to ensure Roblox is equipped to mitigate and react to critical challenges. We play a vital part to ensure the safety of our community and enterprise by proactively fostering an impactful, respectful, and inclusive security culture. This is a hybrid in-office role.

You will:

  • Be a detection and response authority! Set strategy and build threat detection systems (keeping false positives low) while also automating processes with scripts, playbooks, and orchestration tooling. With autonomy and end-to-end responsibility, you’ll deliver robust detection & response capabilities.
  • Conduct security operations: Actively monitor security events, participate in on-call rotations to lead real-time incident response to contain and mitigate potential security issues.
  • Build strong relationships: Collaborate with internal teams like InfoSec, Engineering, Product, Trust and Safety to design scalable solutions.
  • Help grow the DART team: Guide and support junior engineer careers and contribute to hiring.

You have:

  • 4+ years of experience in Detection and Response: with a passion for security engineering, threat detection, threat hunting, and incident management.
  • Engineering experience with SIEM, EDR, NDR, and SOAR technologies: You have on-boarded logs in your sleep and built custom detections/automations for complex environments.
  • Conducted incident response: Structured, mature incident response processes are your vocabulary to swiftly resolve security incidents. Afterwards, you use evidence and data to tell the story and ensure action items are meticulous and complete.
  • Scripting and automation skills: Proficiency in languages like Python, Bash, or similar as well as SOAR tools.
  • Familiarity across multiple domains: Deep understanding of network protocols, operating systems, cloud environments, virtualized hosts, containers, in order to identify potential threats to each.
  • Core security skills: Analytical thinking, crisis management, root cause analysis, and problem-solving, with a meticulous approach to identifying, investigating, and responding to incidents.

You are:

  • Emotionally intelligent: You relish working with teammates and partners as you provide calm leadership during crisis situations and solve sophisticated security challenges.
  • Team-oriented and communicative: Skilled at influencing and working across teams to deliver solutions that align with business goals while driving the security mission forward.
  • Adaptable and creative: Comfortable with ambiguity, you can quickly gather data to make informed decisions, and you approach sophisticated problems with creativity and speed.
  • Pragmatic: Adept at balancing open-source and commercial tools to find the right fit for security challenges.

For roles that are based at our headquarters in San Mateo, CA: The starting base pay for this position is as shown below. The actual base pay is dependent upon a variety of job-related factors such as professional background, training, work experience, location, business needs and market demand. Therefore, in some circumstances, the actual salary could fall outside of this expected range. This pay range is subject to change and may be modified in the future. All full-time employees are also eligible for equity compensation and for benefits.

Annual Salary Range
$233,840$283,780 USD

Roles that are based in our San Mateo, CA Headquarters are in-office Tuesday, Wednesday, and Thursday, with optional in-office on Monday and Friday (unless otherwise noted).

You’ll Love: 

  • Industry-leading compensation package
  • Excellent medical, dental, and vision coverage
  • A rewarding 401k program
  • Flexible vacation policy
  • Roflex - Flexible and supportive work policy 
  • Roblox Admin badge for your avatar
  • At Roblox HQ: 
    • Free catered lunches five times a week and several fully stocked kitchens with unlimited snacks
    • Onsite fitness center and fitness program credit
    • Annual CalTrain Go Pass

Roblox provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. Roblox also provides reasonable accommodations for all candidates during the interview process.