Security Software Engineer II, Detection and Response
About this role
Pinterest is hiring a Security Software Engineer II to build detection and response capabilities that protect the platform's infrastructure and employees from evolving threats. You'll develop alerts, manage logging pipelines, create internal security tools, and hunt for threats while leveraging AI to enhance efficiency and accuracy.
What you'll do
- Build alerts and automation workflows to detect and respond to security threats
- Manage logging pipelines and onboard new data sources to expand detection coverage
- Develop internal tools to automate detection and response capabilities
- Respond to security alerts and participate in on-call incident response rotation
- Hunt for previously undetected threats in the environment
- Collaborate with cross-functional security teams
What they're looking for
- Intrusion detection and incident response in cloud-first environments
- SIEM query writing for alerting, response, and threat hunting
- Knowledge of attacker lifecycle and common attack techniques
- Hands-on experience with EDR, Osquery, firewall logs, and telemetry sources
- Operating system internals (macOS, Linux, or Windows)
- Scripting and automation (Python, Go, Ruby)
- Networking fundamentals and network security
- AI evaluation and critical verification of AI-assisted work
Benefits
- Remote work flexibility with office collaboration 1-2 times per 6 months
- Equity eligibility
- Opportunity to work on high-impact security problems at scale
- Collaborative environment with cross-team partnerships
- Access to AI tools to enhance productivity
Opens the official application on the employer’s site. No login required.
Pinterest builds a large-scale platform serving millions of users, with infrastructure spanning security, database systems, and mobile products, supported by data systems and advertising technology. The company is hiring Software Engineers II and experienced engineers across security, infrastructure, iOS development, and data engineering to enhance platform capabilities, improve detection and response systems, optimize performance, and leverage AI-driven solutions.
- Website
- pinterest.com
Likely interview questions
- Walk us through your experience building SIEM queries for detection and alerting. Can you describe a specific alert you've created and how you validated its effectiveness?
- Tell us about a time you investigated a security incident using multiple telemetry sources like EDR, firewall logs, and Osquery. What was your approach and what did you discover?