SECURITY INTELLIGENCE ENGINEER

Grammarly
Full-time
San Francisco
$214,000 – $310,000/year
Posted on 5 months ago

Job Description

We're looking for a Security Engineer to join our Security Intelligence Team to achieve our ambitious goals. This role will contribute to our Security Intelligence team as an experienced, hands-on practitioner across offensive security, threat intelligence, threat hunting, and detection engineering. You'll plan, execute, and debrief complex security operations, leveraging those insights to enhance our threat mitigation capabilities and build robust, automated security tooling across all Grammarly environments.

Responsibilities

  • Plan, execute, and debrief offensive security operations, translating insights into enhanced defensive capabilities
  • Build and maintain automated threat detection systems, AI-driven alert triage solutions, and security intelligence pipelines
  • Conduct threat hunting and detection engineering, developing detection-as-code, hunting-as-code, and intelligence-as-code capabilities
  • Research and develop cutting-edge security automation and AI-powered security solutions
  • Operate without traditional scope limitations, following attacker kill chains to uncover security gaps
  • Lead complex security investigations, including insider threat scenarios and sophisticated attack campaigns
  • Maintain incident response capabilities and serve as part of the Incident Command on-call schedule
  • Develop and deliver threat intelligence that informs security decisions
  • Embed attacker mindset thinking throughout the organization
  • Develop and own major workstreams like Insider Threat Attack Simulation, Deception Operations, and Automated Threat Intelligence

Requirements

  • 3-8+ years of relevant experience in security engineering
  • Expertise across multiple disciplines including offensive security, threat intelligence, threat hunting, or detection engineering
  • Strong automation and development skills in Python, Go, or similar languages
  • Experience building production security tooling
  • Deep knowledge of AWS cloud security architecture
  • Experience with CI/CD security integration, identity and access management concepts, and security orchestration
  • Background in AI/ML applications for security
  • Proven incident response leadership and complex security investigation experience
  • Research mindset with an ability to identify novel attack vectors
  • Thrives in ambiguous environments and can deliver meaningful results at a rapid pace
  • Strong intuition for security risk prioritization and ability to translate technical findings into business impact
  • Embodies EAGER values—ethical, adaptable, gritty, empathetic, and remarkable
  • Inspired by MOVE principles: move fast and learn faster; obsess about creating customer value; value impact over activity; and embrace healthy disagreement rooted in trust

Benefits

  • No benefits