Postman Logo

Postman

Detection and Response Engineer

Reposted 2 Days Ago
Be an Early Applicant
Hybrid
San Francisco, CA
125K-145K
Mid level
Hybrid
San Francisco, CA
125K-145K
Mid level
As a Detection and Response Engineer, you'll monitor security alerts, conduct forensic investigations, manage incidents, and develop detection rules to enhance overall security.
The summary above was generated by AI
Who Are We?

Postman is the world’s leading API platform, used by more than 40 million developers and 500,000 organizations, including 98% of the Fortune 500. Postman is helping developers and professionals across the globe build the API-first world by simplifying each step of the API lifecycle and streamlining collaboration—enabling users to create better APIs, faster.

The company is headquartered in San Francisco and has offices in Boston, New York, and Bangalore - where Postman was founded. Postman is privately held, with funding from Battery Ventures, BOND, Coatue, CRV, Insight Partners, and Nexus Venture Partners. Learn more at postman.com or connect with Postman on X via @getpostman.

P.S: We highly recommend reading The "API-First World" graphic novel to understand the bigger picture and our vision at Postman.

The Opportunity

We are seeking an experienced Security Engineer, Detection & Response to join our dynamic security team. In this role, you will provide Level 2 support to our managed Security Operations Center (SOC), monitoring and analyzing security alerts and emerging threats across our corporate, cloud and production environments to identify and respond to potential security incidents and critical vulnerabilities.

You’ll work closely with the broader Security and IT team and other engineering teams to develop a strong understanding of our ecosystem to enable you to act effectively as an Incident Commander when required, and coordinate incident resolution with cross-functional teams to ensure 24/7 coverage. This understanding will aid you in your threat hunting and forensic investigations to uncover indicators of compromise and patterns of malicious activity, as well as fine-tune and develop additional detection rules, configurations, custom playbooks and automations tailored to our environment in collaboration with our managed SOC.

In the area of vulnerability management, you will monitor security advisories and threat intelligence feeds, and drive automation to strive for containment. Your collaboration with cross-functional teams will be essential in proactively detecting and responding to security threats and ensuring the overall security of our digital assets.

What You’ll Do
  • Security Operations Duties:
    • Provide Level 2 support to a managed SOC and support monitoring security alerts and events from various sources, including corporate tools, WAF, security information and event management (SIEM) systems, and AWS to identify potential security incidents, intrusions and vulnerabilities
    • Conduct threat hunting and perform forensic investigations to identify indicators of compromise (IOCs) and patterns of malicious activity.
    • Coordinate and manage incident resolution with cross-functional teams, including acting as Incident Commander during incidents to help provide 24/7 coverage with other team members.
    • Support Cloud Detection & Response platforms to enable various automated notification and containment workflows.
  • Detection Engineering :
    • Fine-tune and develop detection rules, configurations, and automations based on new threats, lessons learned, or environmental changes.
    • Work with the managed SOC to develop custom playbooks.
    • Where possible, write scripts and develop custom tools to automate the detection and response processes. Adhere to SSDLC best practices when writing scripts or developing tools.
    • Identify any gaps in logging coverage to ensure we maintain the highest visibility into any threats to our environment 
    • Manage Cloudflare security products for web application security, including WAF rules and DDoS protection.
    • Collaborate with cross-functional teams to proactively detect and respond to potential security threats and ensure the overall security of our organization's digital assets.
  • Vulnerability Management:
    • Monitor security advisories, threat intelligence feeds, and vendor updates for critical threats to drive action back into the enterprise/product organization.
About You
  • Education & Experience:
    • Bachelor’s degree in Computer Science, Information Security, or a related field.
    • Minimum of 3 years of experience in a SOC analyst or security operations role.
  • Technical Skills:
    • Proficiency in programming and relevant scripting languages such as Python, JavaScript, Bash, and PowerShell.
    • Experience with AWS security services and best practices.
    • Familiarity with Cloudflare, SentinelOne, Okta, and related security tools.
    • Understanding of network protocols, firewalls, and intrusion detection systems.
  • Soft Skills:
    • Strong analytical and problem-solving abilities.
    • Excellent communication skills, both written and verbal.
    • Ability to work independently and as part of a team.

Preferred Qualifications:

  • Certifications such as CISSP, CEH, and AWS Certified Security Specialty.
  • Experience with infrastructure as code tools (e.g., Terraform).
  • Knowledge of DevSecOps practices and CI/CD pipelines.
  • Familiarity with regulatory compliance standards (e.g., GDPR, ISO 27001).

Coding Requirements

Proficient in either Python or JavaScript (or both) to be able to write/maintain:

  • AWS Lambda functions that act as glue between APIs and services
  • Command-line scripts/utilities that aid in incident investigations (e.g., parsing logs, up to and including large datasets)

The reasonably estimated base salary for this role ranges from $138,000 to $158,000, plus a competitive equity package. Actual compensation is based on the candidate's skills, qualifications, and experience.

What Else?

In addition to Postman's pay-on-performance philosophy, and a flexible schedule working with a fun, collaborative team, Postman offers a comprehensive set of benefits, including full medical coverage, flexible PTO, wellness reimbursement, and a monthly lunch stipend. Along with that, our wellness programs will help you stay in the best of your physical and mental health. Our frequent and fascinating team-building events will keep you connected, while our donation-matching program can support the causes you care about. We’re building a long-term company with an inclusive culture where everyone can be the best version of themselves. 

At Postman, we embrace a hybrid work model. For all roles based out of San Francisco Bay Area, Boston, Bangalore, Hyderabad, and New York, employees are expected to come into the office 3-days a week. We were thoughtful in our approach which is based on balancing flexibility and collaboration and grounded in feedback from our workforce, leadership team, and peers. The benefits of our hybrid office model will be shared knowledge, brainstorming sessions, communication, and building trust in-person that cannot be replicated via zoom.

Our Values

At Postman, we create with the same curiosity that we see in our users. We value transparency and honest communication about not only successes, but also failures. In our work, we focus on specific goals that add up to a larger vision. Our inclusive work culture ensures that everyone is valued equally as important pieces of our final product. We are dedicated to delivering the best products we can.

Equal opportunity

Postman is an Equal Employment Opportunity and Affirmative Action Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender perception or identity, national origin, age, marital status, protected veteran status, or disability status. Headhunters and recruitment agencies may not submit resumes/CVs through this website or directly to managers. Postman does not accept unsolicited headhunter and agency resumes. Postman will not pay fees to any third-party agency or company that does not have a signed agreement with Postman.

Top Skills

AWS
Bash
Cloudflare
JavaScript
Okta
Powershell
Python
Sentinelone
Terraform

Similar Jobs at Postman

Yesterday
Hybrid
San Francisco, CA, USA
270K-320K
Senior level
270K-320K
Senior level
Software
Lead and scale the enterprise product marketing strategy at Postman, guiding a team to communicate value to enterprises, executing go-to-market strategies, and elevating market perception.
Top Skills: HighspotSalesforce
2 Days Ago
Hybrid
San Francisco, CA, USA
190K-210K
Senior level
190K-210K
Senior level
Software
As a Senior Product Designer, you will design user experiences that enhance Postman's developer tools, utilizing insights and collaboration across teams to drive product growth.
Top Skills: APIsMockupsPrototypesSaaSUser ResearchUx Design
2 Days Ago
Hybrid
San Francisco, CA, USA
250K-280K
Senior level
250K-280K
Senior level
Software
Lead Partner Engineer at Postman will define partner engineering strategy, support API collaboration, and drive success across the Postman Ecosystem through technical guidance and community engagement.
Top Skills: AIAPIsCloud PlatformsSaaS

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account