Benchling→
Detection and Response Engineer at Benchling in San Francisco, CA
Entry LevelHybridFull-timeSan Francisco, CA$136k–$166k/yr
Skills
detectionresponsedetection engineeringdigital forensicsincident responseattacker tactics techniquesprocedurescloud environmentsautomationpythontechnical innovationinfluence
Job Description
Summary: Benchling is a leading AI platform for biotech R&D, focused on revolutionizing the industry with structured scientific data and AI integration. The role of Security Response Engineer involves building a comprehensive security program, investigating security events, and enhancing incident response processes to protect sensitive data.
Responsibilities:
- Investigating security events across the organization using your experience and knowledge in multiple security domains (log analysis, digital forensics, or malware analysis)
- Creating, deploying and maintaining high signal threat detections based on your understanding of threat actor TTPs
- Enhancing incident response processes through documentation and research into best practices
- Coordinating multi-functional incident response during security incidents, assisting partner teams during non-security incidents
- Researching new detection mechanisms for attack vectors and techniques relevant to our space and presenting findings to both internal and external audiences
- Evaluating external tooling, developing new automation and tooling
Required Qualifications:
- 1+ years experience in Detection and Response (Detection Engineering, Digital Forensics, Incident Response)
- Strong communicator with both words and data - you have experience communicating to a wide variety of stakeholders under varying conditions
- Experience as an incident responder responsible for leading multi-team incidents
- Technical innovation skills (you enjoy finding technical solutions, learning new technology, evangelizing security and privacy)
- Ability to move forward projects in ambiguous situations through influence and not authority
- Practical experience with attacker tactics, techniques, and procedures
- Comfortable with complexity in the short term but can build towards simplicity in the long term
- Some experience with cloud environments and automation
- Relevant development experience in at least one scripting language, preferably Python
Required Skills: Detection, Response, Detection Engineering, Digital Forensics, Incident Response, Attacker tactics techniques, procedures, Cloud environments, Automation, Python, Technical innovation, Influence