Sigma is seeking a Senior Security Engineer II to join their Security Engineering team. The role will involve developing and maintaining a comprehensive adversary response strategy, leading threat modeling sessions, and building detections and automations to prevent security threats.
Requirements
- Minimum 7+ years in security with at least 5+ years deeply focused on detection engineering, incident response, or threat hunting in cloud-native environments
- Bachelor’s or Master’s degree in Computer Science, Cyber Security, or a related field
- Hands-on proficiency in securing AWS/GCP/Azure + modern Identity Stack
- Strong coding ability to build automations, security pipeline, detection as code etc.
- Deep understanding of cloud IAM attack paths, token/session abuse, API threats, and data exfiltration patterns
- Experience designing and operating telemetry pipelines (normalization, correlation, data quality, schema strategy)
- Strong incident response leadership for high-severity events in production environments
- Deep familiarity with threat intelligence frameworks (MITRE ATT&CK) and the ability to convert raw intel into actionable detection/prevention strategies
- Proven experience running incident response tests, breach and attack simulations (BAS), or red/blue team exercises
- Deep expertise in security tooling across SIEM, EDR, CNAPP, WAF, CASB, and Data Security platforms and judgment to know when to buy vs build
Benefits
- Equity
- Generous health benefits
- Flexible time off policy
- Paid bonding time for all new parents
- Traditional and Roth 401k
- Commuter and FSA benefits
- Lunch Program
- Dog friendly office