London, United Kingdom Remote (Global) Full-time

doxy.me is hiring a Security Engineer, Detection & Response

About the Role

What You'll Do

Lead the development and management of detection systems from concept through deployment and refinement. You'll research emerging threats, write detection logic as code, and deploy rules through automated pipelines, ensuring high accuracy and low noise over time.

Develop and maintain telemetry pipelines that capture critical signals across applications, infrastructure, and identity layers. Use these insights to detect suspicious behavior and strengthen monitoring capabilities.

Improve detection quality by correlating events across multiple sources, reducing false alerts and increasing confidence in security outcomes. When incidents occur, lead investigations, support containment, and guide post-event reviews.

Design and implement automated response workflows that integrate directly with cloud and identity platforms. Collaborate with engineering teams during design phases to embed security through proactive threat modeling and early detection planning.

Help define and maintain security monitoring standards, incident response procedures, and operational runbooks to ensure consistent, repeatable processes across the organization.

Requirements

  • Proven experience developing and deploying detection rules using a code-based approach
  • Strong programming ability in Python or TypeScript, with fluency in SQL for analyzing security data
  • Hands-on experience with AWS and cloud-native architectures
  • Familiarity with observability tools such as Datadog for monitoring and alerting
  • Knowledge of adversary tactics and techniques, including use of the MITRE ATT&CK framework
  • Experience working with CI/CD systems and software development practices
  • Understanding of threat modeling and application security principles

Preferred Qualifications

  • Prior work in incident response and digital forensics
  • Experience with identity and access management platforms

Benefits

  • Flexible work model — choose remote work or office locations at regional hubs
  • Competitive compensation package
  • Support for professional training and industry certifications
  • Clear paths for career growth in a scaling organization
  • Medical, vision, and dental insurance coverage
  • 401k matching program
  • Unlimited paid time off
Required Skills
PythonTypeScriptSQLAWSDatadogCI/CDMITRE ATT&CKdetection-as-codecloud securitysecurity monitoringthreat detectionsecurity automation PythonTypeScriptSQLAWSDatadogCI/CDMITRE ATT&CKdetection-as-codecloud securitysecurity monitoringthreat detectionsecurity automation
Your first international client?

Don't lose them over invoicing

Clients ghost freelancers with unprofessional invoicing. Glopay gives you a real EU company partnership so they take you seriously from invoice #1.

Instant EU company partnership
Invoice builder with your branding
Automated payment reminders
Real-time payment tracking
Get EU company now
Ready in 24 hours
About company
doxy.me
At Doxy.me, we're on a mission to connect the world to the future of healthcare. With the trust of over one million providers we are one of the largest Telehealth platforms in the world — but we're not done there. We're HIPAA-regulated and trusted with sensitive patient data across 180+ countries — protecting that trust is why our security team exists. Blending innovative technology and world-class design, we enhance the patient-provider experience and extend the reach of healthcare to every corner of the globe. Our team is motivated by making a difference in the world and pushing the boundaries of what is possible. If you want to change the world by impacting the lives of millions while having fun with a great team, come join us!
All jobs at doxy.me Visit website
Job Details
Department Technology
Category security
Posted a month ago