Logo for Movable Ink

Security Detection Engineer

Key Facts

Remote From: 
Full time
110 - 130K yearly
English

Other Skills

  • Non-Verbal Communication
  • Distributed Team Management
  • Analytical Skills
  • Detail Oriented
  • Troubleshooting (Problem Solving)
  • Self-Motivation

Roles & Responsibilities

  • 2+ years of experience in security operations, detection engineering, or SIEM-focused role
  • Hands-on experience writing and tuning SPL queries in Splunk
  • Familiarity with MITRE ATT&CK framework and common attack techniques
  • Experience with cloud platforms (AWS or GCP) and understanding of cloud-specific threats

Requirements:

  • Build, tune, and maintain detection rules and alerts in Splunk to identify security threats, suspicious activity, and policy violations
  • Reduce alert fatigue by continuously improving detection logic to minimize false positives while maintaining coverage
  • Monitor and develop detections for cloud security events across AWS and GCP using our CSPM tooling (Prisma Cloud)
  • Collaborate with the Security team to develop detection strategies based on threat intelligence and the MITRE ATT&CK framework

Job description

Movable Ink scales content personalization for marketers through data-activated content generation and AI decisioning. The world’s most innovative brands rely on Movable Ink to maximize revenue, simplify workflow and boost marketing agility. Headquartered in New York City with close to 600 employees, Movable Ink serves its global client base with operations throughout North America, Central America, Europe, Australia, and Japan.

Movable Ink is hiring a Security Detection Engineer to strengthen our security monitoring and detection capabilities. To succeed in this role, you'll combine deep technical curiosity with a methodical approach to threat detection, helping protect our platform and the hundreds of enterprise customers who depend on it. This is a hands-on opportunity to own and evolve our detection engineering practice, working closely with our Security Engineering team. You'll play a critical role in ensuring we can identify and respond to security threats quickly—whether they target our employees, infrastructure, or cloud environments.

Responsibilities:

  • Build, tune, and maintain detection rules and alerts in Splunk to identify security threats, suspicious activity, and policy violations
  • Reduce alert fatigue by continuously improving detection logic to minimize false positives while maintaining coverage
  • Monitor and develop detections for cloud security events across AWS and GCP using our CSPM tooling (Prisma Cloud)
  • Collaborate with the Security team to develop detection strategies based on threat intelligence and the MITRE ATT&CK framework
  • Investigate alerts and escalate confirmed incidents according to our incident response procedures
  • Set up and configure automation scripts and tooling for alert triage, ticket creation, and incident workflows
  • Create dashboards and reports to provide visibility into security posture and detection effectiveness
  • Document detection logic, runbooks, and response procedures
  • Support EDR (CrowdStrike) monitoring and investigate endpoint-related alerts
  • Identify opportunities to use Splunk for operational and product monitoring beyond pure security use cases

Qualifications:

  • 2+ years of experience in a security operations, detection engineering, or SIEM-focused role
  • Hands-on experience writing and tuning SPL queries in Splunk
  • Familiarity with common attack techniques and the MITRE ATT&CK framework
  • Experience with cloud platforms (AWS or GCP) and understanding of cloud-specific threats
  • Exposure to EDR platforms (CrowdStrike preferred) and CSPM tools
  • Understanding of log sources such as Okta, Google Workspace, endpoint logs, and network traffic
  • Strong analytical and troubleshooting skills with attention to detail
  • Clear written and verbal communication skills; ability to document findings and escalate effectively
  • Self-motivated and comfortable working autonomously with a distributed team

The base pay range for this position is $110,000-$130,000/year, which can include additional bonus depending on the position ultimately offered, in addition to a full range of medical, financial, and/or other benefits. The base pay offered may vary depending on job-related knowledge, skills, and experience.

Studies have shown that women, communities of color, and historically underrepresented people are less likely to apply to jobs unless they meet every single qualification. We are committed to building a diverse and inclusive culture where all Inkers can thrive. If you’re excited about the role but don’t meet all of the abovementioned qualifications, we encourage you to apply. Our differences bring a breadth of knowledge and perspectives that makes us collectively stronger.

We welcome and employ people regardless of race, color, gender identity or expression, religion, genetic information, parental or pregnancy status, national origin, sexual orientation, age, citizenship, marital status, ethnicity, family or marital status, physical and mental ability, political affiliation, disability, Veteran status, or other protected characteristics. We are proud to be an equal opportunity employer.

Security Engineer Related jobs

Other jobs at Movable Ink

We help you get seen. Not ignored.

We help you get seen faster — by the right people.

🚀

Auto-Apply

We apply for you — automatically and instantly.

Save time, skip forms, and stay on top of every opportunity. Because you can't get seen if you're not in the race.

AI Match Feedback

Know your real match before you apply.

Get a detailed AI assessment of your profile against each job posting. Because getting seen starts with passing the filters.

Upgrade to Premium. Apply smarter and get noticed.

Upgrade to Premium

Join thousands of professionals who got noticed and hired faster.