Stop applying to remote jobs that are already dead.
Every listing shows the evidence: when we last checked it, how, and when it was posted and closed.

All listings

Paxos via Ashby

Security Engineer, Detection and Response

United States Level not stated
still open verified 2d ago posted 89d ago seen 3h ago
Apply at jobs.ashbyhq.com

This is the employer's own posting, not a copy on a job board.

What we know

Is it still open?

Confirmed still open

Last checked 2d ago — checked against the employer's own applicant tracking system, which is the company answering directly.

We re-read the employer's own applicant tracking system and the posting was still there. That is the company answering directly.

Check this listing's status as JSON

How old is it?

Posted 89d ago

The date the source published, not the day we noticed it (2026-07-13). Last seen at its source 3h ago.

We have tracked this listing since 3 Sep 2026 (37 days). The employer's own board has carried it every time we have read it, most recently 3 hours ago.

Is it remote?

Remote - United States

That is the location the employer filed this posting under. Quoted as written — we do not re-word the source's own location.

Who may apply?

United States

The description states no restriction of its own. This is the source's own tag.

Pay not stated

Similar roles pay $150k–224.8k/yr

Middle 50% of 4024 listings that do state pay — Engineering · all levels · United States · USD/year. This employer has published no salary; this is what comparable listings we hold disclose, never converted between currencies or periods. How this is calculated.

Skills named in the ad

Incident ManagementKnowledge BaseSIEMTicketing

Recognised terms only, from a fixed vocabulary — this is what CV matching compares against.

Carried by 1 source

The listing

Applying to Paxos? Our only careers site is paxos.com/careers, and we only recruit via @paxos.com email. Details below.
___

About Paxos

Today’s financial infrastructure is archaic, expensive, inefficient and risky — supporting a system that leaves out more people than it lets in. So we’re rebuilding it.

We’re on a mission to open the world’s financial system to everyone by enabling the instant movement of any asset, any time, in a trustworthy way. For over a decade, we’ve built blockchain infrastructure that tokenizes, custodies, trades and settles assets for the world's leading financial institutions, like PayPal, Venmo, Mastercard, Interactive Brokers and Charles Schwab.

About the team
The Security team at Paxos protects the cloud infrastructure, crypto systems, endpoints, and network that our regulated financial platform runs on. You'll join the Detection and Response function, working alongside our 24x7 SOC, which handles first-line triage, and partnering with Product Security teams to validate that our coverage holds up against real attacker techniques.

About the role

The Detection and Response Engineer at Paxos serves as a builder of the detections, hunts, and automations that protect our cloud infrastructure, crypto systems, endpoints, and network. You will write detections as code and automate response, and act as a purple teamer, emulating attacks alongside our Product Security teams to confirm our detections work. Our 24x7 SOC handles first-line triage, so your focus is the detection engineering, threat hunting, and validation that make our coverage effective. Strong hands-on investigation skills are expected, but they support this work rather than define it.

What you'll do

  • Detection Coverage & Quality: Ship production-grade detections as code with measurable signal improvements—reducing false positives and closing gaps identified in purple team exercises.

  • Validated Defenses: Run purple team exercises with other teams to confirm detection effectiveness and identify blind spots.

  • Threat Hunting Program: Execute proactive hunts based on threat intelligence and convert findings into new detections and documented IOCs/TTPs.

  • Operational Efficiency: Build automations to accelerate investigation and triage; create and maintain runbooks and incident write-ups that make response consistent and repeatable across the team.

  • Detection Stack: Identify gaps and integrate best-in-class tools that increase team effectiveness and visibility across endpoints, cloud, network, and signing systems.

About you

  • You bring 3+ years of experience in security operations, detection engineering, offensive security testing, or a related security engineering role, and you're comfortable owning tickets and incidents end-to-end within established runbooks, escalating clearly when you hit the edge of your knowledge.

  • You have hands-on experience investigating and responding to security threats across endpoints, cloud environments, and network telemetry, using existing tooling (SIEM, EDR, ticketing systems) effectively rather than needing to build it from scratch.

  • You bring strong analytical judgment and a calm, methodical approach to triaging alerts and driving incidents through resolution, and you flag gaps in process or coverage as you find them.

  • You have hands-on experience tuning detections in SIEM and EDR platforms to improve signal quality and reduce false positives, and can write or adapt detection rules from an existing template or pattern.

  • You have used adversary-emulation or purple-team tooling to validate that your detections actually fire, and you understand common attack paths well enough to know what a given detection should — and shouldn't — catch.

  • You are a builder who looks for opportunities to automate repetitive work, including using AI and scripting (Python/Bash) to speed up investigations.

  • You communicate clearly within your immediate team, contribute meaningfully to post-incident write-ups, and act on feedback that sharpens your investigative and detection work.

  • You are prepared to participate in an on-call rotation and document incidents clearly and effectively to support continuous improvement.

Important Notice for Paxos Applicants
Fraudulent accounts sometimes pose as Paxos recruiters on LinkedIn and other platforms, and fake websites sometimes impersonate our careers site. These scammers attempt to deceive applicants into paying for job opportunities or providing personal financial information.

To verify a legitimate Paxos opportunity:

  • Our only official careers site is paxos.com/careers

  • We only use @paxos.com email addresses

  • We never ask for payment or financial details to apply, interview, or work here

  • For technical roles, we do not perform a coding interview without prior screening by our engineering team

Thanks for your interest in Paxos!

Apply at jobs.ashbyhq.com