Sr. Engineer, Intelligence, Detection, and Response
ZapierAbout the role
About Zapier
We're humans who simply think computers should do more work.
At Zapier, we’re not just making software—we’re building a platform to help millions of businesses globally scale with automation and AI. Our mission is to make automation work for everyone by delivering products that delight our customers. You’ll collaborate with brilliant people, use the latest tools, and leverage the flexibility of remote work. Your work will directly fuel our customers’ success, and as they grow, so will you.
Job Posted: 08/15/2025
Location: Remote – West Coast (NAMER)
Hi there!
Zapier is on a mission to democratize automation while keeping the security and privacy of millions of users at the forefront. The Intelligence, Detection, and Response (IDR) team plays a central role in protecting our systems, data, and customers.
We’re looking for an IDR Engineer who can lead and grow two connected areas: vulnerability management and detection engineering. In this position, you’ll set the vision for how we identify and remediate risks, create and refine security detections, help manage our SIEM, and step in to run complex incidents. The role combines program leadership with deep technical work, and its impact will reach across multiple teams and functions.
About You
Strategic Vision: You can define and deliver a program from the ground up, setting direction, executing plans, and tracking results.
Collaboration: You collaborate with teams across engineering, platform, and security to close gaps and strengthen our defensive posture.
Technical Skills: You write Python code, craft and tune detection logic, and work hands-on with SIEM platforms to improve coverage and accuracy.
Eye for Improvement: You design processes that work across the company, automate repetitive tasks, and use metrics to guide improvements.
Incident Experience: You can lead complex incident investigations, coordinating response and ensuring learnings turn into long-term fixes.
Good Communicator: You tailor your message for engineers, leaders, and other stakeholders to make security actions clear and achievable.
Remote-Ready: You use asynchronous communication effectively with a globally-distributed team, and know how to keep projects moving without constant meetings.
Things You’ll Do
Develop the vulnerability management program: setting strategy, selecting tools, and building workflows for identification, prioritization, and remediation.
Write and maintain high-quality detections, including Python-based scripts, enrichment logic, and automated alert pipelines.
Help manage and improve our SIEM, ensuring detections are relevant, accurate, and cover the right areas.
Run and contribute to security incidents, taking the lead on critical events and supporting investigations from start to finish.
Automate key operational tasks related to vulnerability tracking, detection tuning, and response actions.
Engineer solutions that provide teams with tools, dashboards, and clear guidance to enable faster and more effective remediation.
Report on progress with metrics like time to remediation, detection-to-response speed, and alert fid
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s