Resume and JobRESUME AND JOB
Coinbase logo

Senior Detection Engineer, Insider Threat

Coinbase

Senior Detection Engineer, Insider Threat

Coinbase logo

Coinbase

full-time

Posted: September 18, 2025

Number of Vacancies: 1

Job Description

Responsibilities

  • Building and implementing detections, preventions, security controls, and automations to not only deter insider threats but improve holistic security posture
  • Testing and maintaining security tooling, particularly for endpoint detection and investigation
  • Collaborating cross-functionally with Security, Infrastructure, IT, and Legal to obtain necessary technical information and to evaluate and advise them of downstream impacts of their builds/deployments
  • Linking disparate information such that it can be aggregated, visualized, and interpreted for indications of threat (via query builds, table joins, etc.)
  • Assisting with investigations as needed (this may involve rapidly building tools or extending capabilities to aid response efforts).

Required Qualifications

  • You have experience designing and implementing Insider Threat technologies (such as Security Information Event Management - SIEM, User Behavioral Analytics - UEBA, Data Loss Prevention - DLP) and an understanding of investigations and/or the intelligence cycle
  • You are comfortable manipulating logs, tables, and data lakes to engineer custom detections and dashboards
  • You’ve mastered SQL and coding languages like Python and regularly manipulate logs to create custom alerts and automations with SOAR
  • You are comfortable working cross-functionally with infrastructure, IT, and response teams to design and implement technical controls
  • You are actively aware of the insider threat landscape, and understand the legal, regulatory, and ethical considerations of working with sensitive information and situations
  • You are discreet, thoughtful, and seek to coordinate systemic, cross functional solutions to mitigate risk
  • You are adept at translating complex problems into ‘byte-sized’, readily implemented (and preferably automated) solutions
  • You have excellent verbal and written communication skills. Other team members ask for your input to communicate clearly and concisely and you are comfortable composing briefs and assessments consumed by leadership and training others
  • You prefer to play as a team and are equally comfortable as the ‘novice’ or the ‘expert’
  • You know that people aren’t stupid, but everyone makes mistakes. Your high degree of empathy means that your coworkers trust you to help tackle their security problems, because you never come across as judgmental or condescending.
  • You bring 5-10 years or more of combined experience in security/technology or other analytic roles

Preferred Qualifications

  • Unicorns welcome! You would bring a diverse perspective to the team: for example, maybe you took an unconventional route to get into your current security career.
  • You’re familiar with blockchains, cryptocurrency, and onchain projects (or at least a good story about how you thought about investing in Bitcoin in 2014 but decided not to).
  • You love crafting metrics that make the intangible tangible
  • You’ve got experience in one or more of the following areas: incident response, data protection, risk management, counterintelligence, fraud detection, intellectual property theft, access and identity management, or IT engineering

Required Skills

  • designing and implementing Insider Threat technologies (SIEM, UEBA, DLP)
  • understanding of investigations and/or the intelligence cycle
  • manipulating logs, tables, and data lakes
  • SQL
  • coding languages like Python
  • creating custom alerts and automations with SOAR
  • working cross-functionally with infrastructure, IT, and response teams
  • awareness of insider threat landscape
  • legal, regulatory, and ethical considerations
  • verbal and written communication skills
  • team collaboration
  • empathy
  • 5-10 years of experience in security/technology or analytic roles

Benefits

  • bonus eligibility
  • equity eligibility
  • benefits (including medical, dental, and vision)

Salary Range

$122400 - $136000 GBP

Locations

  • UK Zone 1 (Job Requisitions Only), United States (Remote)

Salary

122,400 - 136,000 GBP / yearly

Skills Required

  • designing and implementing Insider Threat technologies (SIEM, UEBA, DLP)intermediate
  • understanding of investigations and/or the intelligence cycleintermediate
  • manipulating logs, tables, and data lakesintermediate
  • SQLintermediate
  • coding languages like Pythonintermediate
  • creating custom alerts and automations with SOARintermediate
  • working cross-functionally with infrastructure, IT, and response teamsintermediate
  • awareness of insider threat landscapeintermediate
  • legal, regulatory, and ethical considerationsintermediate
  • verbal and written communication skillsintermediate
  • team collaborationintermediate
  • empathyintermediate
  • 5-10 years of experience in security/technology or analytic rolesintermediate

Required Qualifications

  • You have experience designing and implementing Insider Threat technologies (such as Security Information Event Management - SIEM, User Behavioral Analytics - UEBA, Data Loss Prevention - DLP) and an understanding of investigations and/or the intelligence cycle (experience)
  • You are comfortable manipulating logs, tables, and data lakes to engineer custom detections and dashboards (experience)
  • You’ve mastered SQL and coding languages like Python and regularly manipulate logs to create custom alerts and automations with SOAR (experience)
  • You are comfortable working cross-functionally with infrastructure, IT, and response teams to design and implement technical controls (experience)
  • You are actively aware of the insider threat landscape, and understand the legal, regulatory, and ethical considerations of working with sensitive information and situations (experience)
  • You are discreet, thoughtful, and seek to coordinate systemic, cross functional solutions to mitigate risk (experience)
  • You are adept at translating complex problems into ‘byte-sized’, readily implemented (and preferably automated) solutions (experience)
  • You have excellent verbal and written communication skills. Other team members ask for your input to communicate clearly and concisely and you are comfortable composing briefs and assessments consumed by leadership and training others (experience)
  • You prefer to play as a team and are equally comfortable as the ‘novice’ or the ‘expert’ (experience)
  • You know that people aren’t stupid, but everyone makes mistakes. Your high degree of empathy means that your coworkers trust you to help tackle their security problems, because you never come across as judgmental or condescending. (experience)
  • You bring 5-10 years or more of combined experience in security/technology or other analytic roles (experience)

Preferred Qualifications

  • Unicorns welcome! You would bring a diverse perspective to the team: for example, maybe you took an unconventional route to get into your current security career. (experience)
  • You’re familiar with blockchains, cryptocurrency, and onchain projects (or at least a good story about how you thought about investing in Bitcoin in 2014 but decided not to). (experience)
  • You love crafting metrics that make the intangible tangible (experience)
  • You’ve got experience in one or more of the following areas: incident response, data protection, risk management, counterintelligence, fraud detection, intellectual property theft, access and identity management, or IT engineering (experience)

Responsibilities

  • Building and implementing detections, preventions, security controls, and automations to not only deter insider threats but improve holistic security posture
  • Testing and maintaining security tooling, particularly for endpoint detection and investigation
  • Collaborating cross-functionally with Security, Infrastructure, IT, and Legal to obtain necessary technical information and to evaluate and advise them of downstream impacts of their builds/deployments
  • Linking disparate information such that it can be aggregated, visualized, and interpreted for indications of threat (via query builds, table joins, etc.)
  • Assisting with investigations as needed (this may involve rapidly building tools or extending capabilities to aid response efforts).

Benefits

  • general: bonus eligibility
  • general: equity eligibility
  • general: benefits (including medical, dental, and vision)

Target Your Resume for "Senior Detection Engineer, Insider Threat" , Coinbase

Get personalized recommendations to optimize your resume specifically for Senior Detection Engineer, Insider Threat. Takes only 15 seconds!

AI-powered keyword optimization
Skills matching & gap analysis
Experience alignment suggestions

Check Your ATS Score for "Senior Detection Engineer, Insider Threat" , Coinbase

Find out how well your resume matches this job's requirements. Get comprehensive analysis including ATS compatibility, keyword matching, skill gaps, and personalized recommendations.

ATS compatibility check
Keyword optimization analysis
Skill matching & gap identification
Format & readability score

Tags & Categories

Engineering - SecurityCryptocurrencyBlockchainFinanceCryptoWeb3Engineering - Security

Related Jobs You May Like

No related jobs found at the moment.

Coinbase logo

Senior Detection Engineer, Insider Threat

Coinbase

Senior Detection Engineer, Insider Threat

Coinbase logo

Coinbase

full-time

Posted: September 18, 2025

Number of Vacancies: 1

Job Description

Responsibilities

  • Building and implementing detections, preventions, security controls, and automations to not only deter insider threats but improve holistic security posture
  • Testing and maintaining security tooling, particularly for endpoint detection and investigation
  • Collaborating cross-functionally with Security, Infrastructure, IT, and Legal to obtain necessary technical information and to evaluate and advise them of downstream impacts of their builds/deployments
  • Linking disparate information such that it can be aggregated, visualized, and interpreted for indications of threat (via query builds, table joins, etc.)
  • Assisting with investigations as needed (this may involve rapidly building tools or extending capabilities to aid response efforts).

Required Qualifications

  • You have experience designing and implementing Insider Threat technologies (such as Security Information Event Management - SIEM, User Behavioral Analytics - UEBA, Data Loss Prevention - DLP) and an understanding of investigations and/or the intelligence cycle
  • You are comfortable manipulating logs, tables, and data lakes to engineer custom detections and dashboards
  • You’ve mastered SQL and coding languages like Python and regularly manipulate logs to create custom alerts and automations with SOAR
  • You are comfortable working cross-functionally with infrastructure, IT, and response teams to design and implement technical controls
  • You are actively aware of the insider threat landscape, and understand the legal, regulatory, and ethical considerations of working with sensitive information and situations
  • You are discreet, thoughtful, and seek to coordinate systemic, cross functional solutions to mitigate risk
  • You are adept at translating complex problems into ‘byte-sized’, readily implemented (and preferably automated) solutions
  • You have excellent verbal and written communication skills. Other team members ask for your input to communicate clearly and concisely and you are comfortable composing briefs and assessments consumed by leadership and training others
  • You prefer to play as a team and are equally comfortable as the ‘novice’ or the ‘expert’
  • You know that people aren’t stupid, but everyone makes mistakes. Your high degree of empathy means that your coworkers trust you to help tackle their security problems, because you never come across as judgmental or condescending.
  • You bring 5-10 years or more of combined experience in security/technology or other analytic roles

Preferred Qualifications

  • Unicorns welcome! You would bring a diverse perspective to the team: for example, maybe you took an unconventional route to get into your current security career.
  • You’re familiar with blockchains, cryptocurrency, and onchain projects (or at least a good story about how you thought about investing in Bitcoin in 2014 but decided not to).
  • You love crafting metrics that make the intangible tangible
  • You’ve got experience in one or more of the following areas: incident response, data protection, risk management, counterintelligence, fraud detection, intellectual property theft, access and identity management, or IT engineering

Required Skills

  • designing and implementing Insider Threat technologies (SIEM, UEBA, DLP)
  • understanding of investigations and/or the intelligence cycle
  • manipulating logs, tables, and data lakes
  • SQL
  • coding languages like Python
  • creating custom alerts and automations with SOAR
  • working cross-functionally with infrastructure, IT, and response teams
  • awareness of insider threat landscape
  • legal, regulatory, and ethical considerations
  • verbal and written communication skills
  • team collaboration
  • empathy
  • 5-10 years of experience in security/technology or analytic roles

Benefits

  • bonus eligibility
  • equity eligibility
  • benefits (including medical, dental, and vision)

Salary Range

$122400 - $136000 GBP

Locations

  • UK Zone 1 (Job Requisitions Only), United States (Remote)

Salary

122,400 - 136,000 GBP / yearly

Skills Required

  • designing and implementing Insider Threat technologies (SIEM, UEBA, DLP)intermediate
  • understanding of investigations and/or the intelligence cycleintermediate
  • manipulating logs, tables, and data lakesintermediate
  • SQLintermediate
  • coding languages like Pythonintermediate
  • creating custom alerts and automations with SOARintermediate
  • working cross-functionally with infrastructure, IT, and response teamsintermediate
  • awareness of insider threat landscapeintermediate
  • legal, regulatory, and ethical considerationsintermediate
  • verbal and written communication skillsintermediate
  • team collaborationintermediate
  • empathyintermediate
  • 5-10 years of experience in security/technology or analytic rolesintermediate

Required Qualifications

  • You have experience designing and implementing Insider Threat technologies (such as Security Information Event Management - SIEM, User Behavioral Analytics - UEBA, Data Loss Prevention - DLP) and an understanding of investigations and/or the intelligence cycle (experience)
  • You are comfortable manipulating logs, tables, and data lakes to engineer custom detections and dashboards (experience)
  • You’ve mastered SQL and coding languages like Python and regularly manipulate logs to create custom alerts and automations with SOAR (experience)
  • You are comfortable working cross-functionally with infrastructure, IT, and response teams to design and implement technical controls (experience)
  • You are actively aware of the insider threat landscape, and understand the legal, regulatory, and ethical considerations of working with sensitive information and situations (experience)
  • You are discreet, thoughtful, and seek to coordinate systemic, cross functional solutions to mitigate risk (experience)
  • You are adept at translating complex problems into ‘byte-sized’, readily implemented (and preferably automated) solutions (experience)
  • You have excellent verbal and written communication skills. Other team members ask for your input to communicate clearly and concisely and you are comfortable composing briefs and assessments consumed by leadership and training others (experience)
  • You prefer to play as a team and are equally comfortable as the ‘novice’ or the ‘expert’ (experience)
  • You know that people aren’t stupid, but everyone makes mistakes. Your high degree of empathy means that your coworkers trust you to help tackle their security problems, because you never come across as judgmental or condescending. (experience)
  • You bring 5-10 years or more of combined experience in security/technology or other analytic roles (experience)

Preferred Qualifications

  • Unicorns welcome! You would bring a diverse perspective to the team: for example, maybe you took an unconventional route to get into your current security career. (experience)
  • You’re familiar with blockchains, cryptocurrency, and onchain projects (or at least a good story about how you thought about investing in Bitcoin in 2014 but decided not to). (experience)
  • You love crafting metrics that make the intangible tangible (experience)
  • You’ve got experience in one or more of the following areas: incident response, data protection, risk management, counterintelligence, fraud detection, intellectual property theft, access and identity management, or IT engineering (experience)

Responsibilities

  • Building and implementing detections, preventions, security controls, and automations to not only deter insider threats but improve holistic security posture
  • Testing and maintaining security tooling, particularly for endpoint detection and investigation
  • Collaborating cross-functionally with Security, Infrastructure, IT, and Legal to obtain necessary technical information and to evaluate and advise them of downstream impacts of their builds/deployments
  • Linking disparate information such that it can be aggregated, visualized, and interpreted for indications of threat (via query builds, table joins, etc.)
  • Assisting with investigations as needed (this may involve rapidly building tools or extending capabilities to aid response efforts).

Benefits

  • general: bonus eligibility
  • general: equity eligibility
  • general: benefits (including medical, dental, and vision)

Target Your Resume for "Senior Detection Engineer, Insider Threat" , Coinbase

Get personalized recommendations to optimize your resume specifically for Senior Detection Engineer, Insider Threat. Takes only 15 seconds!

AI-powered keyword optimization
Skills matching & gap analysis
Experience alignment suggestions

Check Your ATS Score for "Senior Detection Engineer, Insider Threat" , Coinbase

Find out how well your resume matches this job's requirements. Get comprehensive analysis including ATS compatibility, keyword matching, skill gaps, and personalized recommendations.

ATS compatibility check
Keyword optimization analysis
Skill matching & gap identification
Format & readability score

Tags & Categories

Engineering - SecurityCryptocurrencyBlockchainFinanceCryptoWeb3Engineering - Security

Related Jobs You May Like

No related jobs found at the moment.