Whatnot logo

Threat Detection and Response Engineer

Whatnot

On-site
San Francisco, CA
Full-time
Senior
5+ yrs
$175k–$260kPosted 36m ago

Real job — pulled straight from Whatnot’s careers page · Verified August 28, 2026 · No reposts.

Job description

Whatnot is hiring a Threat Detection and Response Engineer — a full-time, based in San Francisco, CA role ($175k–$260k). Apply directly on Whatnot's careers page below.

Threat Detection and Response Engineer

Department: Engineering

Location: San Francisco, CA, New York, NY, Los Angeles, CA, Seattle, WA

Compensation: $175K – $260K

Employment Type: FullTime

🚀 Join the Future of Commerce with Whatnot!

Whatnot is the largest live shopping platform in North America and Europe to buy, sell, and discover the things you love. Whether it's trading cards, fashion, electronics, or live plants, our sellers are building real businesses across hundreds of categories. We're building live commerce at a scale that's never been done in the West, and there's no playbook to copy. The people here are shaping how an entirely new industry develops.

As a remote co-located team, we're inspired by our values and anchored in hubs across the US, UK, Ireland, Poland, Germany, and Australia. We move fast, stay close to our users, and focus on the work that drives the most impact.

We're one of the fastest growing marketplaces and were recently named the #1 Best Startup Employer in America by Forbes. Check out the latest Whatnot updates on our news and engineering blogs and join us as we enable anyone to turn their passion into a business and bring people together through commerce.

💻 Role

  • Apply comprehensive knowledge and a thorough understanding of Incident Response concepts, principles, and technical capabilities

  • Collaborate across Information Security and business partners to ensure effective, precise, and rapid response

  • Act as the point of escalation from within the Incident Response team to drive all cyber incidents

  • Identify new detection opportunities, create playbooks, and support new technology implementations to defend against evolving threats

  • Maintain awareness and understanding of the current threat landscape. Analyze threat intelligence with the aim to mitigate potential risks

  • Report the overall health of the SOC via metrics, OKRs, and risk indicators to leadership

  • Provide Incident Response (IR) support when analysis suspects security incidents to help contain and eradicate threats;

    • Perform incident triage, incident response, and forensic investigations across endpoints and cloud environments

    • Conduct technical examinations of computer-based evidence including logs, packet captures, SIEM & IDS events, disk forensics, malware analysis, and more

    • Document incidents from initial detection through final resolution, and present the findings

  • Investigate, document, and report on cyber security issues

  • Create and continuously improve standard processes, operating procedures, and incident response playbooks

👋 You

Curious about who thrives at Whatnot? We’ve found that low ego, a growth mindset, and leaning into action and high impact goes a long way here.

As our next Threat Detection and Response Engineer, you should have a minimum of 5+ years of relevant experience in security, preferably in a large enterprise environment, plus:

  • Bachelor’s degree in Computer Science, Information Security, a related field, or equivalent work experience.

  • 5+ years’ experience in cyber incident response, or a similar cyber field, including experience with security principles, and defense-in-depth techniques

  • Experience and understanding of security concepts, SOAR(Tines), EDR, NDR and SIEM (Chronicle) technologies

  • Experience with multiple Cloud Service Providers (AWS, GCP)

  • Excellent written communication skills with the ability to document, communicate, and report security incidents, as well as the status of the implementation and effectiveness of cybersecurity controls with product and business leaders

  • Expected to perform on-call duties

🎁 Benefits

  • Generous Holiday and Time off Policy

  • Health Insurance options including Medical, Dental, Vision

  • Work From Home Support

    • Home office setup allowance

    • Monthly allowance for cell phone and internet

  • Care benefits

    • Monthly allowance for wellness

    • Annual allowance towards Childcare

    • Lifetime benefit for family planning, such as adoption or fertility expenses

  • Retirement; 401k offering for Traditional and Roth accounts in the US (employer match up to 4% of base salary) and Pension plans internationally

  • Monthly allowance to dogfood the app

    • All Whatnauts are expected to develop a deep understanding of our product. We're passionate about building the best user experience, and all employees are expected to use Whatnot as both a buyer and a seller as part of their job (our dogfooding budget makes this fun and easy!).

  • Parental Leave

    • 16 weeks of paid parental leave + one month gradual return to work *company leave allowances run concurrently with country leave requirements which take precedence.

💛 EOE

Whatnot is proud to be an Equal Opportunity Employer. We value diversity, and we do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, parental status, disability status, or any other status protected by local law. We believe that our work is better and our company culture is improved when we encourage, support, and respect the different skills and experiences represented within our workforce.

Get Threat Detection and Response Engineer jobs like this

New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.

Email me new jobs
Workstreet logo

Senior Engineer, Cloud Security

Remote · US-eligible
✓ From careers page· 2h ago
Workstreet logo

Cloud Security Engineer

Remote · Philippines-eligible
✓ From careers page· 2h ago
Neurophos logo

Lead Security Engineer

$180k–$235kAustin, TX
✓ From careers page· 3h ago
Sezzle logo

Security Infrastructure Engineer Intern (Remote)

Remote · Colombia-eligible
✓ From careers page· 4h ago

Frequently asked questions

What is the salary for Threat Detection and Response Engineer at Whatnot?

The estimated salary range for Threat Detection and Response Engineer at Whatnot is $175,000 - $260,000 USD per year.

What skills are required for Threat Detection and Response Engineer at Whatnot?

The required skills for Threat Detection and Response Engineer at Whatnot include: SIEM, AWS, GCP.

What is the seniority level for Threat Detection and Response Engineer at Whatnot?

Threat Detection and Response Engineer at Whatnot is a Senior level position.

How do I apply for Threat Detection and Response Engineer at Whatnot?

You can view the full description and apply for Threat Detection and Response Engineer at Whatnot on EchoJobs: https://echojobs.io/job/whatnot-threat-detection-and-response-engineer-wgiaw.