cybersecurity engineer lead, detection engineer (Remote, US)

About the position From the beginning, arenaflex set out to be a different kind of company. One that not only celebrated coffee and the rich tradition, but that also brought a feeling of connection. We are known for developing extraordinary leaders who share this passion and are guided by their service to others. Are you passionate about advancing cutting-edge detection engineering initiatives to safeguard our partners, customers, and brand? As a Lead Detection Engineer you'll design and build the detections that power our ability to identify and stop real-world threats. You'll turn real attacker behaviors into reliable alerts, automate how detections are built and deployed, making sure our visibility keeps pace with evolving threats. This is a hands-on role for someone who loves diving into data, thinking like an attacker, and improving how we detect and respond every day. This role will work closely with our SOC, Incident Response, Threat Intelligence, and Security Engineering teams. The ideal candidate combines deep technical expertise, a strong understanding of adversary TTPs, is an expert at translating compliance requirements into detection strategy and has a passion for continuous improvement in detection coverage and quality. As a Cybersecurity Engineer Lead - Detection Engineer, you will play a pivotal role in advancing arenaflex' security posture through a range of critical responsibilities... Responsibilities • Lead the strategy and roadmap for detection engineering and alerting across security platforms (SIEM, EDR, SOAR, etc.) • Break down complex cybersecurity threats and technical challenges into clear, actionable detection strategies - mapped to frameworks like MITRE ATT&CK and validated through simulation. • Drive the deployment and continuous improvement of detection capabilities by establishing clear metrics for success, ensuring that each solution is designed end-to-end-from initial detection generation through seamless delivery to SOC engineer. • Lead enterprise-wide detection engineering initiatives, overseeing the development and deployment of advanced detection-as-code solutions across environments. • Collaborate with cross-functional teams, ensuring seamless coordination and partnership across various disciplines. Your efforts will focus on aligning diverse stakeholders and resources toward common detection and compliance objectives. • Data-driven detection improvements through tuning, false positive reduction, and visibility gap analysis across platforms • Measure effectiveness of detections through metrics such as MTTD, false positive rates, and coverage gaps Requirements • Bachelor's degree in a relevant field or 8+ years of equivalent work experience in cybersecurity engineering related roles. • 6-8 years of experience working in an information technology discipline. • 6-8 years of infrastructure / information security experience. • 4+ years of experience in Detection Engineering • Strong hands-on experience with SIEM platforms at scale • Proven ability to build, tune, and maintain custom threat detection rules using threat intel and enrichment data • Experience in building and managing detection-as-code workflows using version control and arenaflex/CD pipeline • Advanced knowledge of cybersecurity principles, frameworks, tools and best practices • Experienced supporting regulatory compliance environment such as PCI • Strong problem-solving and decision-making abilities in high-pressure situations. • Excellent communication and collaboration skills, with the ability to work effectively with cross-functional teams and stakeholders. • Certifications such as CISSP, GCDA, GMON, or others focused on cybersecurity Benefits • As a arenaflex partner, you (and your family) will have access to medical, dental, vision, basic and supplemental life insurance, and other voluntary insurance benefits. • Partners have access to short-term and long-term disability, paid parental leave, family expansion reimbursement, paid vacation from date of hire, sick time (accrued at 1 hour for every 25 hours worked), eight paid holidays, and two personal days per year. • arenaflex also offers eligible partners participation in a 401(k) retirement plan with employer match, a discounted company stock program (S.I.P.), arenaflex equity program (Bean Stock), incentivized emergency savings, and financial well-being tools. • Additionally, arenaflex offers 100% upfront tuition coverage for a first-time bachelor's degree through Arizona State University's online program via the arenaflex College Achievement Plan, student loan management resources, and access to other educational opportunities. • You will also have access to backup care and DACA reimbursement. • arenaflex will comply with any applicable state and local laws regarding employee leave benefits, including, but not limited to providing time off pursuant to the Colorado Healthy Families and Workplaces Act, and in accordance with its plans and policies. • This list is subject to change depending on collective bargaining in locations where partners have a certified bargaining representative. • For additional information regarding partner perks and more detailed information about benefits, go to starbucksbenefits.com. • If you are working in CA, CO, IL, LA, ME, MA, NE, ND or RI, you will accrue vacation up to a maximum of 120 hours (190 in CA) for roles below director and 200 hours (316 in CA) for roles at director or above. • For roles in other states, you will be granted vacation time starting at 120 hours annually for roles below director and 200 hours annually for roles director and above. Apply tot his job Apply tot his job

Back to blog

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...