About The Position

Thumbtack is seeking a Cybersecurity Senior Analyst to join their Security Engineering team. This role focuses on enabling innovation by making security the easiest path. The team partners with Product, Engineering, Platform, and Data teams to shape system design and evolve Thumbtack's security posture. The Cybersecurity Senior Analyst will be responsible for building and operating a detection and response capability that is fast, high-fidelity, and increasingly automated. This involves daily security operations, tuning the SIEM, partnering with an MDR provider, and automating response workflows. The role requires a combination of hands-on security operations and an engineering mindset, with opportunities to support broader security programs like GRC, third-party risk, and vulnerability management.

Requirements

  • 6+ years of experience in security operations, detection & response, or a related security engineering discipline.
  • Deep hands-on experience operating and tuning a SIEM, including detection engineering and log pipeline management.
  • Experience managing or working closely with an MDR/MSSP partner, including escalation design and holding vendors accountable to quality and SLAs.
  • Strong incident response skills across cloud-native environments (AWS and/or GCP), SaaS applications, endpoints, and identity systems.
  • Fluency with AI tools in daily security work, and the adaptability to evolve detections, processes, and tooling to address novel and emerging threats, including AI-related risks.
  • Scripting and automation proficiency (e.g. Python), with experience building SOAR playbooks, detection-as-code, or similar automation.
  • Risk-based, analytical thinking: the judgment to prioritize what matters, tune out noise, and articulate trade-offs between coverage, fidelity, and effort.
  • Working familiarity with adjacent security domains, including GRC and compliance frameworks (e.g. SOC 2, PCI DSS), third party risk assessment, and vulnerability management, with the flexibility to support them as needed.
  • Excellent written and verbal communication skills, including clear incident communications, and the ability to collaborate effectively with a distributed, primarily US-based team.

Responsibilities

  • Own day-to-day security operations: monitoring, triage, and investigation of security alerts across our production, corporate, and SaaS environments.
  • Manage and continuously improve our SIEM: log source onboarding, parsing and normalization, detection rule development and tuning, and cost/coverage optimization.
  • Manage our MDR (Managed Detection & Response) partnership: escalation workflows, SLAs, detection feedback loops, and quality of response.
  • Lead security incidents end-to-end: triage, scoping, containment, eradication, recovery, and blameless post-incident reviews.
  • Build automation that reduces manual toil and response times: SOAR playbooks, detection-as-code pipelines, enrichment integrations, and response scripting.
  • Conduct proactive threat hunting informed by threat intelligence and knowledge of Thumbtack’s environment.
  • Define, track, and report on operational metrics (e.g. MTTD, MTTR, alert fidelity, coverage against ATT&CK) and use them to drive improvement.
  • Apply AI tools to accelerate security operations, and continuously adapt our detections, processes, and tooling to address evolving and novel threats, including AI-related risks.
  • Partner with Security Engineering, Platform, IT, and Compliance to close detection gaps and improve our overall security posture.
  • Support the broader security program as needed: GRC (audit support, evidence collection, control monitoring), endpoint security, network security, third party risk reviews, vulnerability management (scanning, triage, and remediation coordination), etc.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service