Bastion is looking for a Security Engineer, Detection & Response to be the second member of our security team. In this hands-on, high-impact role, you will help build the foundational programs for incident response and threat detection in a fast-paced environment.
What You'll Do
- Develop and tune log-based detections across our AWS infrastructure, application stack, and CI/CD pipelines using CloudTrail, GuardDuty, and custom telemetry.
- Define detection coverage goals and lead threat modeling efforts across systems and services.
- Build and maintain incident response playbooks and participate in real-world incident investigations.
- Educate Bastion employees on secure engineering and operational practices through tailored trainings and documentation.
- Integrate security best practices into Bastion’s infrastructure-as-code and CI/CD workflows to reduce risk by design.
What We're Looking For
- Bachelor’s degree in Computer Engineering or a related field.
- 3+ years of experience in a Detection & Response or Security Operations role, preferably in a high-growth or startup environment.
- Proficiency in writing and tuning detections using log-based monitoring platforms (e.g., Datadog, Panther, custom pipelines).
- Hands-on experience with AWS security architecture and services (e.g., CloudTrail, IAM, Security Hub, KMS).
- Strong scripting or software development skills in at least one language: Python, Go, Rust, or TypeScript.
- Experience participating in or leading incident response investigations and postmortems.
Nice to Have
- Experience in Web3 security, including blockchain infrastructure.
- Exposure to regulatory or compliance frameworks such as SOC 2 or ISO 27001.
- Experience implementing security controls in CI/CD pipelines and infrastructure-as-code environments (e.g., Terraform, GitHub Actions).
Technical Stack
- AWS, CloudTrail, GuardDuty, IAM, Security Hub, KMS
- Datadog, Panther
- Python, Go, Rust, TypeScript
- Terraform, GitHub Actions
Team & Environment
You will be the second security team member.
Bastion provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.





