Jobs and Careers
OC

Senior Security Engineer (Threat and Vulnerability) - Hybrid

Octane
New York City, United Statesfull_timeVerifiedPosted 18 Jul 2025
💰 $195,000/yr($138,000/yr$195,000/yr)

About the role

Octane® is revolutionizing recreational purchases by delivering a seamless, end-to-end digital buying experience. We connect people with their passions by combining cutting-edge technology and innovative risk strategies to make lifestyle purchases - like powersports vehicles, RVs, and OPE - fast, easy, and accessible.

Octane adds value throughout the customer journey: inspiring enthusiasts with our editorial brands, including Cycle World® and UTV Driver®, instantly prequalifying consumers for financing online, routing customers to dealerships for an easy closing, and supporting customers throughout their loan with superior loan servicing.

Founded in 2014, we’re a company with 550+ employees and over 30 OEM and 4,000 dealer partners.

Octane is seeking an experienced Senior Security Engineer specialized in Threat and Vulnerability. This role is responsible for designing, implementing, and maintaining a Security Operations Center (SOC) and Incident Response program to enhance the company’s security posture. The position involves developing and integrating security technologies such as SIEM, SOAR, and threat intelligence platforms, as well as maintaining integrations with key security tools. The role includes designing alerts, metrics, and dashboards to monitor security incidents, collaborating with cross-functional teams to investigate security threats, and mentoring junior engineers on best practices. Additionally, the role requires expertise in cloud security, automation, and infrastructure protection, along with hands-on experience responding to security incidents. Ideal candidates have at least seven years of experience in security operations, strong scripting and integration skills, and familiarity with tools like Datadog, Splunk, and Terraform. Relevant security certifications are a plus. 

Responsibilities: 

  • Design, implement, and maintain a comprehensive Security Operations Center (SOC) and Incident Response program to improve the security posture of the company
  • Develop, integrate, and automate security technologies such as SIEM, SOAR, and Threat Intelligence platforms to enhance security signal sources and incident response capabilities
  • Develop and maintain integrations with security tools such as IdP, SASE, and EDR. Aggregate security signals such as end-user and production environment logs
  • Design and implement alerts, metrics, runbooks, and dashboards to track security posture and incident response efforts
  • Develop and maintain relationships with key stakeholders across the engineering department to ensure effective collaboration and communication
  • Mentor and coach junior engineers on the team and across the engineering organization on SOC and Incident Response best practices
  • Respond to security incidents and injection requests in a timely and efficient manner, and support the team's after-hours on-call schedule
  • Collaborate with Engineering, IT, and other teams to investigate potential security issues, review logs for evidence of compromise, and lead security-related tasks
  • Design and implement security architectures and solutions to protect infrastructure and workload environments
  • Stay up-to-date with evolving security threats and technologies, and apply that knowledge to improve the company's security posture

Requirements:

  • 7+ years of experience in Security Operations, Incident Response, or a related field
  • 4+ years of experience designing, building, and running secure, fault-tolerant systems in cloud or virtualized environments
  • Advanced knowledge of security technologies such as SIEM, SOAR, EDR, firewalls, and Threat Intelligence platforms
  • Experience with scripting languages such as Python, PowerShell, or Bash
  • Experience integrating tools using REST API connections
  • Collaborated with distributed engineering teams and experience with cross-functional collaboration
  • Background in security architecture and design, including experience with cloud security and infrastructure security
  • Experience with security operations tools such as Datadog, Splunk, ELK
  • Previously utilized infrastructure as code tools such as Terraform or Cloudformation/CDK
  • Experience designing and leading the incident response process for security incidents
  • Relevant certifications such as CEH, SANS, CISM, CISSP are a plus
  • Relevant security-focused degrees and certifications are preferred

Compensation

The role described above offers a base salary of $138,000 to $195,000. Your offer will be based on the alignment of your qualifications with the requirements of the job, location, and internal equity.  In addition to the above-mentioned salary, Total Rewards include a corporate bonus program, stock option packa

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Octane

View company profile →