- Company Name
- CoreWeave
- Job Title
- Director, Security Engineering, Detection and Response
- Job Description
-
Job title: Director, Security Engineering – Detection & Response
Role Summary:
Lead the design, deployment, and continual improvement of detection, incident response, and offensive security programs for a large, cloud‑native infrastructure. Own strategy, architecture, and execution across SIEM, SOAR, endpoint, and cloud‑native security tools. Drive a proactive, intelligence‑driven culture while ensuring alignment with business objectives.
Expactations:
* Manage a multidisciplinary team of security engineers, analysts, and red‑team specialists.
* Deliver measurable security outcomes using defined KPIs and metrics.
* Foster collaboration with engineering, operations, compliance, and executive stakeholders.
* Maintain high maturity of detection, response, and offensive security capabilities in a fast‑paced, growth‑oriented environment.
Key Responsibilities:
- Design, build, and fine‑tune detection systems for cloud, infrastructure, and endpoint environments.
- Develop automation and orchestration for alert triage, investigation, and containment.
- Refine detections through threat intelligence, behavioral analytics, and adversary emulation.
- Create and keep up‑to‑date incident response playbooks, escalation flows, and tooling.
- Lead investigations of high‑severity incidents and coordinate remediation with technical and executive teams.
- Conduct post‑incident reviews to identify and close gaps.
- Direct offensive security program: red teaming, penetration testing, and adversary simulation.
- Collaborate with product and engineering teams to remediate vulnerabilities and embed security by design.
- Define and report on security metrics to senior leadership.
- Partner with CISO and executives to align security priorities with business goals.
Required Skills:
- 10+ years in cybersecurity with 5+ years in senior leadership.
- Proven expertise in Detection & Response Engineering, Incident Response, and Offensive Security in cloud‑native or large‑scale infrastructure.
- Deep knowledge of SIEM/SOAR platforms, endpoint detection, and cloud‑native security tools.
- Strong grasp of adversary TTPs, MITRE ATT&CK framework, and threat‑hunting methodologies.
- Experience leading cross‑functional security programs in high‑growth environments.
- Excellent communication and stakeholder‑influence skills.
- Ability to mentor and build high‑performance teams.
Required Education & Certifications:
- Bachelor’s (or Master’s) degree in Computer Science, Information Security, or related field.
- Relevant certifications such as CISSP, CISM, GCIH, GCIA, CRED, or equivalent.
- Additional credentials in cloud security (e.g., CCSP, Azure Security Engineer Associate, AWS Security Specialty) preferred.
Livingston, United states
On site
06-11-2025