At LinkedIn, our approach to flexible work is centered on trust and optimized for culture, connection, clarity, and the evolving needs of our business. This role may be remote or hybrid. At LinkedIn, hybrid roles are performed both from home and from a LinkedIn office on select days, as determined by the business needs of the team. Remote roles are performed from the designated home work location upon time of hire, and any changes to this home work location requires a review of remote status and approval. This role can be remote anywhere in the United States or can be hybrid in LinkedIn’s Mountain View office location. LinkedIn’s Information Security organization protects our members, data, and platforms by building resilient security controls, detecting threats early, and partnering across engineering to reduce risk at scale. The Detection Engineering team sits at the center of LinkedIn’s threat detection ecosystem. We partner closely with Incident Response, Threat Intelligence, Red and Purple Teams, Product Security, Identity & Access Management, and Cloud Security to identify, contextualize, and detect adversary activity across the enterprise. Beyond developing and maintaining high-fidelity detections, we drive the security telemetry strategy through log onboarding, schema design and normalization, automation, threat hunting, incident response support, and audit enablement. Our mission is to continuously improve LinkedIn’s ability to detect, investigate, and respond to evolving threats with speed and precision. As a Staff Security Engineer on the Detection Engineering team, you will define and drive LinkedIn’s detection strategy across endpoint, identity, cloud, and SaaS environments. You will architect, build, and operate high-signal detection capabilities using modern detections-as-code practices, telemetry modeling, and data-driven effectiveness measures, including precision, recall, signal-to-noise ratio, and detection latency. You will work from adversary tactics, techniques, and procedures (TTPs) to design resilient detection coverage, partnering with Red and Purple Teams to validate effectiveness through adversary emulation and attack simulation. As a technical leader, you will establish engineering standards, influence security architecture, mentor fellow engineers through design and code reviews, and drive strategic investments that improve detection fidelity, scalability, and operational efficiency. This is a hands-on staff-level role focused on technical leadership, architecture, and execution.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Education Level
Associate degree