Summary
Paxos is on a mission to open the world’s financial system to everyone by enabling the instant movement of any asset. As a Security Operations Engineer, you will be responsible for protecting the organization by detecting, investigating, and containing threats across various infrastructures, while also improving workflows and automations.
Responsibilities
- Triage, investigate, and respond to security alerts across endpoints, cloud infrastructure, and network telemetry
- Take a builder’s mindset to the role by automating repetitive workflows and using AI to increase speed, scale, and effectiveness
- Execute containment and remediation actions for confirmed incidents, while following and continuously improving established runbooks
- Tune and maintain SIEM and EDR detections to reduce false positives, strengthen signal quality, and close coverage gaps
- Apply threat intelligence, including IOCs and TTPs, to active investigations and ongoing monitoring
- Participate in the on-call rotation and contribute clear, actionable post-incident documentation
Skills
- 3+ years of experience in security operations, detection and response, or a related security engineering role
- Experience investigating and responding to security threats across endpoints, cloud environments, and network telemetry
- Strong analytical judgment and a calm, methodical approach to triaging alerts and driving incidents through resolution
- Hands-on experience with SIEM and EDR platforms, including tuning detections to improve signal quality and reduce false positives
- Ability to automate repetitive work, including using AI to improve speed and scale
- Comfortable applying threat intelligence, including IOCs and TTPs, to investigations and proactive monitoring
- Prepared to participate in an on-call rotation and can document incidents clearly and effectively to support continuous improvement
Qualifications
Must Haves
- 3+ years of experience in security operations, detection and response, or a related security engineering role
- Experience investigating and responding to security threats across endpoints, cloud environments, and network telemetry
- Strong analytical judgment and a calm, methodical approach to triaging alerts and driving incidents through resolution
- Hands-on experience with SIEM and EDR platforms, including tuning detections to improve signal quality and reduce false positives
- Ability to automate repetitive work, including using AI to improve speed and scale
- Comfortable applying threat intelligence, including IOCs and TTPs, to investigations and proactive monitoring
- Prepared to participate in an on-call rotation and can document incidents clearly and effectively to support continuous improvement