As a Lead Engineer, you will design, develop and maintain an established SIEM platform spanning 1 frontend application and 7 backend services by deploying durable interfaces using modern patterns including React & TypeScript. You will mentor junior and senior engineers through design reviews, hands on pair programming, and collaborative problem solving. You will own and evolve the technical architecture of the SIEM platform across both the established full-stack application AND the in-flight integrations and feature sets built to support Google SecOps. You will operate with a high degree of autonomy, consistently delivering outcomes with minimal oversight. You will use technical decision authority as you partner with cross-functional teams to design, build, and deliver new or migrated security detection features and tools on Google SecOps, leading design reviews and resolving ambiguity from conflicting requirements through the process. You will develop and support full-stack application features, including backend APIs (e.g., Node.js/Express), integrations with Google SecOps, and services that power detection and investigation workflows. You will drive alignment both upstream and downstream as you partner with Threat Detection & Operations, Cyber Threat Intelligence, CSIRT, and platform engineering teams to design and improve detection and investigation capabilities. You will own reliability, scalability and performance targets as you troubleshoot and resolve issues across existing systems while participating in on-call rotations and contributing to improvements in observability, resilience, and operational tooling. You will develop and maintain state management, data-fetching, and asynchronous workflows (e.g., background processing, job scheduling) to support complex user interactions and long-running operations. You will write high-quality, maintainable code and participate in code reviews and testing practices to uphold engineering standards and facilitate knowledge-share. You will contribute to CI/CD pipelines and mechanisms (e.g., Docker Swarm), supporting reliable and repeatable releases. You will use telemetry, user feedback, and platform metrics to improve application performance, usability, and reliability. In this role, you are a hands-on technical contributor responsible for designing, building, and operating critical SIEM application experiences that power security investigations, IOC workflows, and detection authoring at Target. While remaining a deeply hands-on engineer, you are accountable for the technical direction, system health, and overall effectiveness of the SIEM Platform, including its integrations with SecOps and the engineers contributing to its success. You work across the full stack writing clean, scalable, and maintainable code while optimizing for performance and reliability. You develop React/TypeScript interfaces alongside Node.js/Express APIs, asynchronous processing (e.g., Temporal/Bull), and integrations with Google SecOps and internal systems—while building a deep understanding of analyst workflows, system architecture, and failure modes. You troubleshoot issues across the application stack, from user-facing experiences through APIs, background jobs, and external dependencies, driving problems from signal to root cause and implementing durable fixes through improved observability, testing, and automation. You independently deliver features from design through production while operating within CI/CD pipelines and containerized environments. You are expected to navigate and improve a large, evolving codebase, consistently produce high-quality, well-reviewed code, and collaborate closely with partner teams to align on priorities, unblock delivery, and continuously improve the reliability, usability, and effectiveness of the SIEM platform. Core responsibilities of this job are described within this job description. Job duties may change at any time due to business needs.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Education Level
Associate degree
Number of Employees
5,001-10,000 employees