WorkaemКарьерная платформа
  • Вакансии
  • Компании
  • Зарплаты
  • Офферы
  • Сервисы
  • Блог
  • Работодателям
Workaem

Карьерная платформа для IT-специалистов: вакансии напрямую с карьерных страниц 300+ компаний, из телеграм-каналов, с международных площадок и от работодателей напрямую. Разбор условий, детектор мёртвых вакансий, AI-инструменты для резюме. Базовые функции бесплатны.

Подпишись, присылаем лучшие вакансии недели
Или читай канал в телеграме
Соискателям
Все вакансииЗа границейУдалёнка в долларахКомпании с РУ основателямиЗарплатыОфферыВозможностиСоветыСоздать резюмеТренировка интервью
По технологиям
Вакансии PythonВакансии JavaScriptВакансии ReactВакансии JavaВакансии GoВакансии Docker
По профессиям
РазработкаДизайнQA / ТестированиеАналитикаProduct / Project ManagerМаркетинг
Работодателям
Разместить вакансиюТарифыБаза кандидатовСвязаться с нами
Кабинет
РегистрацияВойтиЛичный кабинетМои откликиСохранённыеУведомления
Компания
О проектеПредложенияКонтактыБлогКонфиденциальностьУсловия использования
© 2026 Workaem. Все права защищены.КонфиденциальностьУсловияОферта
Made by IT, for IT 💛
Senior Threat Engineer
ВердиктОписаниеИнструментыКомпанияПохожие
  1. Главная
  2. /
  3. Вакансии
  4. /
  5. Senior Threat Engineer

Coalition, Inc.·UK·9 авг.

Senior Threat Engineer

🌍 УдалённоSeniorПолная занятость🌐 Глобал
Зарплата не указана
52
Есть о чём спросить
Навык востребован (engineer). Но вилки нет, про деньги придётся договариваться с нуля.
Нажмите на сигнал, чтобы увидеть, на чём он основан

Наша компания

Coalition is the world's first Active Insurance provider designed to help prevent digital risk before it strikes. Founded in 2017, Coalition combines comprehensive insurance coverage and innovative cybersecurity tools to help businesses manage and mitigate potential cyberattacks. Opportunities to make an impact with bold thinking are real—and happening daily at Coalition.

Чем предстоит заниматься

A Senior Threat Engineer builds and improves systems, logic, and workflows that allow Coalition’s Wirespeed Verdict Engine to make high-precision security decisions at scale
Disclaimer: This is not a traditional SOC analyst role
Success in this position is not defined by working one alert at a time, but by figuring out how to handle thousands of similar situations better, faster, and more consistently through automation, patterning, and engineering. Key focus will be studying how investigations should work, identifying repeatable decision points, and turning that thinking into detections, enrichment, triage logic, and automated response workflows
As a senior member of the team, you'll be expected to take ownership of complex problem areas, exercise strong judgment in ambiguous situations, and help shape how the broader Threat Engineering function operates. This role is for someone who can bridge threat detection, engineering, and customer experience. Its ideal for someone who is more interesting asking, “How should this entire class of problem be solved?” rather than, “How do I close the next alert in the queue?”
If you are excited by designing systems that scale expert judgment, improving both customer outcomes and operational efficiency, and doing work that looks very different from a conventional analyst job, this role is for you
Design, build, and improve the detection, decisioning, and response workflows that power the Wirespeed Verdict Engine
Own complex threat detection and workflow problem spaces from investigation concept through implementation, validation, and iteration
Translate investigative thinking and threat research into scalable detections, enrichment, triage logic, and automated decisions that improve speed, accuracy, reliability, and customer outcomes
Analyze operational data to identify false positives, false negatives, latency issues, and opportunities to improve how entire categories of work are handled
Continuously raise the ceiling of what the system can do autonomously, reducing manual review while improving service quality and consistency
Support especially complex or novel cases when needed, then feed those lessons back into the system so similar situations can be handled better in the future
Keep the customer experience front and center by ensuring Wirespeed outputs are clear, helpful, accurate, and appropriately calibrated to the customer’s situation
Identify patterns in customer pain, confusion, or friction and use those insights to improve verdict logic, response content, and overall product behavior
Partner closely with product, engineering, and security teams to improve platform capabilities, data quality, and operational leverage
Help define best practices, operating principles, and technical standards for Threat Engineering work
Document detection concepts, workflow logic, and operating principles so the team can scale knowledge
Provide technical leadership through strong execution, sound judgment, and mentorship of less experienced teammates

Наши требования

Experience working in high-volume security operations environment
Significant experience with detection and response tooling such as SIEM, EDR, SOAR, case management, and telemetry enrichment systems
Familiarity writing scripts or queries to support investigations, automation, or workflow analysis
Experience improving operational quality through experimentation, measurement, and continuous iteration
Experience in workflow design, detection engineering, automation, or security product development
Experience mentoring fellow engineers, setting technical direction, or influencing how a team approaches detection and response problems
Significant experience in cybersecurity operations such as threat detection and response, detection engineering, incident response, threat hunting, or SOC operations
You look for repeatable patterns, clear decision logic, and ways to scale good judgment through automation rather than repeated manual work
Strong investigative and analytical skills, with the ability to turn ambiguous signals and messy operational problems into practical detection logic and workflow improvements
Experience building, tuning, or maintaining automations, detections, playbooks, rules, or enrichment pipelines in security tooling
Demonstrated ability to independently own complex technical or operational problem areas, step into ambiguity, and drive them to better outcomes
Interest in work that is different from a traditional analyst role: improving how work gets done rather than only executing it yourself
Strong written and verbal communication skills, including the ability to document logic and explain threats, tradeoffs, and outcomes clearly to customers and internal partnersAbility to work closely with product, engineering, and security stakeholders
Comfort using data to evaluate detection quality, workflow performance, and where the system needs improvement
Preference for simple, scalable solutions and willingness to reduce unnecessary complexity or manual work

Мы предлагаем

100% medical coverage, including outpatient care
Life insurance
25+ paid holidays
Annual home office stipend
7% employer pension contribution
Mental and physical health wellness programs like Headspace, Wellhub
Competitive compensation and opportunity for advancement
Why Coalition?
Work at Coalition is centered on the joint mission to Protect the Unprotected. We have built a remote-first, highly inclusive culture that welcomes people from diverse backgrounds. We trust each other to take responsibility, share ownership of outcomes, and put in the work together to protect businesses from digital risk. Coalition’s exceptional growth stems from its ability to address real-world problems for organizations of all sizes while remaining true to our founding values of character, humility, responsibility, purpose, authenticity, and inclusion
We’re always looking for collaborative, inquisitive individuals to join #OurCoalition
Visit our Newsroom >
Privacy Notice
Safe Hiring Notice
All legitimate communication from Coalition comes from .com emails, and open roles are listed only on our Careers page. We never ask for payment, banking details, or personal identification before an offer is accepted through our secure systems. If you believe you’ve been a victim of fraudulent recruiting, follow guidance from the Federal Trade Commission (FTC)
Anti-Discrimination Notice
To all recruitment agencies: Coalition does not accept unsolicited agency resumes. Do not forward resumes to our email alias, employees, or other physical or virtual organization locations. Coalition is not responsible for any fees related to unsolicited resumes

Технологии и навыки

engineer
security
automation
C
Coalition, Inc.
UK

ГрейдSenior
ЗанятостьПолная занятость
РегионВеликобритания
ФорматУдалённо
ИсточникСкрыто
Опубликовано9 авг.
Все вакансии компании

AI-помощник

под эту вакансию
Войди, чтобы AI оценил твоё соответствие вакансии и написал сопроводительное письмо

Похожие вакансии

Machine Learning Engineer III, Routing CostMapboxAlliances Field EngineerCanonicalCloud Field EngineerProДоступна только зарегистрированнымDedicated Linux Desktop & Devices Support EngineerProДоступна только зарегистрированным
Мы против мошенников на площадке: если тебя просят заплатить, продиктовать код или установить непонятное приложение, прекращай общение и сразу пиши нам (чат с основателем или форма обратной связи).