Senior Security Engineer

Posted 16 Hours Ago
Easy Apply
Be an Early Applicant
Gurugram, Haryana
Hybrid
3-5 Years Experience
Fintech • Information Technology • Payments • Productivity • Software • Travel • Automation
Travel & expense made easy.
The Role
As a Senior Security Engineer, Detection and Response, responsible for handling day-to-day security incidents, building and expanding detection capabilities, proactively hunting for threats, and ensuring compliance with security standards.
Summary Generated by Built In

As a Senior Security Engineer, Detection and Response you will be responsible for handling day to day security incidents, and for the creation, tuning, validation, and correlation for detections to ensure that we have effective detections in place against an ever-changing threat landscape. This role is hands-on, carrying the responsibility of running the day-to-day security operations tasks including management of SIEM, detection engineering platform and helping incident response. 

Reporting into the Director of Security Engineering, the ideal candidate will maintain and enhance a consistent and reliable operational security environment and take a proactive security monitoring approach.This role has high visibility and requires a technical individual who can partner with stakeholders and cross-functional teams (Engineering, Product, SRE, IT, Legal, etc) and has the ability to adapt in a dynamic security landscape.

What You’ll Do:

  • Responsible for building and expanding detection capabilities across a variety of platforms
  • Responsible for security event monitoring, management and response, workflows and tasks
  • Improve security monitoring and operational tasks by developing measurement capabilities and metrics to track and communicate performance, coverage and risk
  • Evaluate existing SIEM rules, filters, events and use cases and adapt them to meet the business requirements
  • Participate in a security on-call rotation where you’ll triage and remediate security alerts.
  • Proactively hunt for threats within the network, identify suspicious activity, and leverage SIEM , EDR and other security tools to detect, investigate, and mitigate threats in real time.
  • Mature security operations; drive integration of new log sources, tools and services
  • Create, maintain and manage a library of automated playbooks to address new threats and tactics employed by attacker
  • Ensure compliance to SLA, process adherence and process improvisation to achieve operational objectives
  • Build and maintain tools to proactively monitor and respond to emerging threats
  • Assist the Security Incident Response Program with related matters resulting from security investigations
  • Participate in key security initiatives as the Subject Matter Expert to ensure alignment with strategies and roadmap
  • Develop standard operating procedures and other appropriate documentation to enforce quality and consistency of services being delivered
  • Support ongoing security compliance, audit, and certification programs (e.g., PCI, HIPAA, SOC2)

What We’re Looking For:

  • Bachelor's degree in Information Security, Computer Science, Computer Engineering, or equivalent work experience
  • Minimum 3 years of consistent detection & response experience performing triage/incident response in enterprise SaaS environments
  • Expert knowledge of the cyber threat landscape – able to articulate and incorporate into program understanding of major threat categories, motivations, and intent of adversaries against enterprise assets
  • Experience in at least one programming language, Python, Go, C, C++. Alternatively deep expertise using low-code automation tools or SOAR platforms is a plus.
  • Experienced in driving monitoring and automation in cloud environments, preferably knowledge of AWS.
  • Strong understanding of advanced persistent threats, attacker methodologies, attack lifecycle, cyber kill chain, and the MITRE framework.
  • Understanding of digital forensics techniques and closely related areas.
  • Exceptional collaboration skills and communication skills, with the ability to engage with partners and stakeholders with a variety of perspectives and technical understanding
  • GIAC security certification such as GCIA, GCIH, GREM, GPEN (or equivalent), multiple preferred
    SaaS / FinTech / anti-fraud experience a plus
  • Automation first mindset is a plus

Top Skills

C
C++
Go
Python

What the Team is Saying

Anna
Roshni
Brian
 Adamas Victória
Jordan
The Company
HQ: Palo Alto, CA
3,000 Employees
Hybrid Workplace
Year Founded: 2015

What We Do

Navan is the all-in-one super app that makes travel and expense easy so you can focus on being there, not getting there. Say goodbye to spending hours on the phone trying to change your flight or saving stacks of receipts to manually input expenses. From EAs and finance teams to travel managers and employees, Navan empowers people to focus on the things that matter most to them — all while providing companies with real-time visibility, savings, and control.

Navan’s investors include visionaries like Andreessen Horowitz, Lightspeed Ventures, Greenoaks, Zeev Ventures, and entrepreneurs Lee Fixel, Adam Bain, and Elad Gil. In Oct 2022, Navan announced its Series G upround at a post-money valuation of $9.2B to help accelerate future growth plans.

In April 2023, Navan expanded in the Indian market with the acquisition of Tripeur, a modern, people-centric corporate travel and expense management company. The group’s fifth acquisition in under two years, Tripeur joined the Navan Group alongside Spanish meetings and events specialists, Atlanta Events & Corporate Travel Consultants; Berlin-based modern travel management company, Comtravo; leading Scandinavian travel agency Resia AB; and London-based high-touch TMC, Reed & Mackay.

Why Work With Us

At Navan, we’re never satisfied with the status quo, and we know breakthrough ideas come from diverse perspectives. We are committed to cultivating a workplace that reflects the diversity of the customers we serve while fostering leadership and innovation.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

Navan Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

In-person connections is the foundation of Navan, the connections forged through face-to-face interactions improve company culture and what we can achieve together. We operate on a hybrid working model, which we define as three days a week in-office.

Typical time on-site: 3 days a week
HQPalo Alto, CA
Amsterdam, NL
Austin, TX
Bengaluru, IN
Berlin, DE
Dallas, TX
Gurugram, IN
Lisbon, PT
London, GB
New York, NY
Paris, FR
Salt Lake City, UT
San Francisco, CA
Sydney, AU
Tel Aviv-Yafo, IL
Learn more

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account