Security Engineer

Há 6 dias


Brasília, Brasil Nerdy Tempo inteiro
Security Engineer - Detection & Response

Overview: You are an AI-powered Security Engineer responsible for identifying and responding to malicious or suspicious activity across our environment with speed and confidence. This role leads the engineering work behind these capabilities—designing scalable systems to detect threats and trigger automated responses. You will integrate AI into detection and response workflows to accelerate rule development, streamline enrichment, and reduce investigation time, with human validation ensuring precision and alignment.

As a cloud-first SaaS company relying on a broad portfolio of SaaS tools, we generate large volumes of event data across identity, endpoint, infrastructure, and collaboration systems. The scale and complexity of this telemetry demand improved detection engineering and automation.

This is a platform engineering role focused on building and operating a modern detection pipeline integrated with security automation workflows. You will use Python, structured data, and widely adopted frameworks for mapping adversary behaviors and response logic to drive faster, more effective security outcomes. This role is not a support or triage position but a strategic contributor to our security infrastructure.

About Nerdy:

At Nerdy (NYSE: NRDY) - the company behind Varsity Tutors - we’re redrawing the blueprint of learning. Our Live + AI platform fuses real-time human expertise with proprietary generative-AI systems, setting a new bar for measurable academic impact at global scale. We recruit the kind of technologists and operators you’d bet on as solo founders - people who turn ambiguous problems into shipping code, iterate faster than markets move, and compound their advantage with every data point. In an era where great employees can deliver 10-times the leverage of the merely good, we back those who play to win.

Fortune favors the bold. Join us.

How we compete:

  • AI-Native at every level From the CEO to day-one hires, everyone builds and ships with generative AI. If you’re not wielding AI, you’re not done.
  • Entrepreneurial velocity Move at founder speed, prototype in hours, and measure in real user outcomes. Slow teams die.
  • Free-market rigor Ideas rise or fall on merit and results - no committees, no politics, no cap on upside.
  • Full-stack ownership You design, build, and run what you ship; accountability is a feature, not a bug.
  • Reward for contribution Pay rises with impact, not years. Outstanding results earn outsized rewards. We evaluate both what you achieve and how you achieve it: living our leadership principles and using AI effectively are formally measured and rewarded.
  • Relentless exploration Push the frontier of generative AI in live learning and - because only the paranoid survive - questioning every legacy assumption along the way.
  • Is Apolitical You stay focused on mission-aligned outcomes, not distractions or unrelated causes.

If you’re a technically minded builder who thrives on open competition, personal responsibility, and the chance to redefine how the world learns - while continually stretching the limits of what generative AI can do - come do the most ambitious and rewarding work of your career here. Learn more at Nerdy.

Responsibilities:

  • Implement and operate detection systems, including a scalable cloud-native SIEM platform supporting ingestion from identity, endpoint, SaaS, and infrastructure sources.
  • Develop and maintain detection coverage maps aligned to MITRE ATT&CK techniques, threat modeling, and incident history.
  • Leverage AI to accelerate detection rule creation, enrichment, and triage insights, and conduct AI-assisted threat hunting to surface novel behaviors and codify them as deterministic detections.
  • Build detection observability tools and dashboards to monitor rule effectiveness, alert volumes, and system performance.
  • Design and implement SOAR workflows and automated response playbooks with built-in observability, rollback, and reliability controls.
  • Leverage AI within SOAR for adaptive enrichment, workflow generation, and documentation, while continuously tuning automation based on incident outcomes.
  • Lead incident response activities as part of the incident commander rotation, and drive continuous improvement of runbooks and playbooks using lessons learned and AI support for timelines and summaries.
  • Collaborate cross-functionally with engineering and business stakeholders to embed detection and response into system design, operational processes, and organizational priorities.

Qualifications:

  • 5+ years in security engineering, detection engineering, or threat-focused automation roles.
  • Strong knowledge of MITRE ATT&CK framework, detection logic, and IOC/IOA patterns.
  • Familiarity with MITRE D3FEND for defense-in-depth and response playbook design.
  • Strong Python scripting skills for integrations, enrichment logic, and playbook development.
  • Experience working with structured data formats such as JSON, YAML, logs, and metrics.
  • Familiarity with SaaS logging constraints and cloud-native telemetry, preferably AWS.
  • Understanding of event-driven architecture and API-driven integrations.
  • Demonstrated ability to use AI tools to accelerate scripting, generate or translate detection rules, or assist with enrichment workflows, always with human validation for accuracy.
  • Comfortable working autonomously and cross-functionally to deliver reliable detection outcomes.

Preferred:

  • Experience building or maintaining detection pipelines using Elastic, Panther, or similar platforms.
  • Experience with detection-as-code practices, managing detection logic as version-controlled code with testing and CI/CD.
  • Experience writing detection rules in formats such as Sigma, including contributing to open-source or internal detection libraries.
  • Experience with MITRE frameworks: ATT&CK, D3FEND, and ATLAS (AI-related attacks).
  • Experience with OWASP guidance on application telemetry and detection (e.g., AppSensor, Logging Cheat Sheet).

Benefits and Additional Information:

  • Competitive USD Compensation: Market-leading rate paid in U.S. dollars.
  • 100% Remote (Home Country Only): Work from anywhere in your home country—no relocation required.
  • Flexible Time Off: Flexible PTO to recharge on your terms.
  • Local Holiday Pay: Paid holidays according to your nation.
  • Continuous Learning: Access to learning resources and programs for you and your household.
  • Supercharge with AI: Access to AI tools to boost productivity.
  • Feedback-Rich, Collaborative Culture: Regular training and peer reviews in a collaborative environment.
  • Make a Global Impact: Contribute to a platform used by learners around the world.
#J-18808-Ljbffr
  • It Security Engineer

    55 minutos atrás


    Brasília, Brasil Rocket.Chat Tempo inteiro

    OverviewYou will report to our Head of Security and join the Security team.On TheOrg you can view the complete structure of our organisation, including information about every team member, hiring managers and the size of each department.The IT Security Engineer plays a key role at the intersection of cybersecurity and IT operations.This position supports...


  • Brasília, Brasil Rain Tempo inteiro

    OverviewSenior Application Security Engineer role at Rain Rain is the fastest-growing earned wage access (EWA) fintech in the U.S., serving 3.5 million employees and backed by top investors like QED and Prosus. We have raised nearly $400M in funding—including the largest Series A in fintech history—and just closed our Series B to fuel our next stage of...


  • Brasília, Brasil Rain Tempo inteiro

    Overview Senior Application Security Engineer role at Rain Rain is the fastest-growing earned wage access (EWA) fintech in the U.S., serving 3.5 million employees and backed by top investors like QED and Prosus. We have raised nearly $400M in funding—including the largest Series A in fintech history—and just closed our Series B to fuel our next stage...


  • Brasília, Brasil FullStack Labs Tempo inteiro

    OverviewPart-time Security Engineer - Remote - Latin America. Join our talent network and connect with U.S. clients for flexible, project-based development work as a Part-time Security Engineer. About FullStackFullStack is the most transparent IT talent network, connecting highly skilled individuals with top global companies and Silicon Valley startups for...

  • Part-time Security Engineer

    1 semana atrás


    Brasília, Brasil FullStack Labs Tempo inteiro

    OverviewPart-time Security Engineer - Remote - Latin America. Join our talent network and connect with U.S. clients for flexible, project-based development work as a Part-time Security Engineer. About FullStackFullStack is the most transparent IT talent network, connecting highly skilled individuals with top global companies and Silicon Valley startups for...

  • Reverse Engineer

    2 semanas atrás


    Brasília, Brasil Ranger Technical Resources Tempo inteiro

    Android Reverse Engineer Position Summary: Our partner, a leading cybersecurity provider specializing in Extended Detection and Response (XDR) solutions, is seeking a highly skilled Android Reverse Engineer to join a dynamic security team focused on identifying malicious behaviors and vulnerabilities in Android applications. As an engineer, you will...

  • Endpoint Security Architect

    3 semanas atrás


    Brasília, Brasil beBeeSecurity Tempo inteiro

    Overview of the Role We seek a seasoned Endpoint Security Architect to maintain and secure 600+ corporate devices across our global organization. This remote position requires an expert in endpoint management with strong focus on automation, efficiency, and reducing contact time while ensuring compliance across multiple security frameworks. You will report...

  • Senior Endpoint Engineer

    3 semanas atrás


    Brasília, Brasil Pathlock Tempo inteiro

    Position Overview We are seeking a Senior Endpoint Engineer to join our endpoint management team in maintaining and securing 600+ corporate devices across our global organization. This remote position requires a technical expert with a strong focus on automation, efficiency, and reducing contact time while ensuring compliance across multiple security...

  • Manager Endpoint Engineers

    2 semanas atrás


    Brasília, Brasil Pathlock Tempo inteiro

    Position Overview We are seeking a Manager of Endpoint Engineers to lead our endpoint management team in maintaining and securing 600+ corporate devices across our global organization. This remote position requires a leader with a relentless focus on automation, efficiency, and reducing contact time while ensuring compliance across multiple security...


  • Brasília, Brasil Pathlock Tempo inteiro

    Position Overview We are seeking a Manager of Endpoint Engineers to lead our endpoint management team in maintaining and securing 600+ corporate devices across our global organization. This remote position requires a leader with a relentless focus on automation, efficiency, and reducing contact time while ensuring compliance across multiple security...