Responsibilities
- Lead the design and implementation of advanced systems for threat detection, intelligence, and incident response.
- Help define the long-term technical strategy for detection and response capabilities.
- Establish and maintain high standards in security operations and engineering practices.
- Collaborate with cross-functional teams to solve complex security challenges and strengthen system resilience.
- Develop foundational detection mechanisms and scalable response architectures.
- Take a central role in enhancing detection frameworks and response protocols to improve overall security posture.
- Lead the creation of automated detection tools and prioritize risk mitigations based on threat analysis and coverage gaps.
- Work with engineering groups to provide data for offensive security testing and deploy effective countermeasures.
- Guide the design and evolution of centralized logging and security information and event management (SIEM) systems.
- Write and maintain code for security automation workflows.
- Evaluate detection system designs for accuracy, reliability, and performance.
- Mentor security engineers and advocate for layered detection strategies.
- Serve as a primary technical resource for threat intelligence and incident handling.
- Ensure product development aligns with internal security policies and external trust expectations.
- Support incident investigations by analyzing attacker behavior and predicting future tactics.
- Collaborate with product and legal teams to integrate recognized incident response standards into development processes.
- Generate meaningful threat insights by analyzing and correlating indicators of compromise using tools like Splunk and CrowdStrike.
- Assess potential customer impact from security threats and engage with industry partners for intelligence exchange.
Responsibilities
- Shape and deliver advanced detection engineering, threat intelligence, and incident response solutions supporting HubSpot’s growing platform.
- Influence the technical direction of detection and response capabilities.
- Implement best-in-class security practices and help attain high standards for operational excellence.
- Tackle challenging problems and partner closely with cross-functional peers to make a tangible impact on defenses and resilience.
- Build robust detection foundations and scalable response systems.
- Play a leading role in building strong detection foundations and response frameworks to advance HubSpot’s security posture.
- Drive the development of automated detection systems and prioritize mitigations based on current threats and coverage gaps.
- Partner with engineering teams to supply data for purple team exercises and implement practical solutions that mitigate risks.
- Guide architectural decisions for corporate security logging infrastructure and SIEM.
- Contribute code to security automations.
- Review designs for detection reliability.
- Provide technical mentorship to engineers and champion detection-in-depth.
- Act as a key point of contact for threat intelligence and incident response expertise.
- Ensure HubSpot’s products meet internal guardrails and external customer trust needs.
- Support incident response efforts by aiding in investigations, understanding bad actor behaviors, and proactively anticipating future actions.
- Work with product managers and legal/privacy partners to ensure incident response standards like NIST and SANS are woven into the lifecycle.
- Produce actionable intelligence by filtering and correlating data from indicators of compromise (IOCs) using platforms like Splunk and CrowdStrike.
- Evaluate customer impact on threats and maintain relationships with industry contacts for intelligence sharing.